cat ~/experience
SentinelOne
MDR Analyst
aug 2026 → presentsame as below, but more automation.
Associate MDR Analyst
aug 2025 → aug 2026front line detection and response across windows, linux and macos. real & contemporary threats: fileless execution, social engineering chains, infostealers, botnets, cryptominers, supply chain compromises, and the occasional ransomware incident.
- first responder on the axios npm supply chain compromise: flagged it in environment and mapped the whole chain, from poisoned dependency to c2
- respond to pre-ransomware (stop) and ransomware (.akira, .booba, .termite, .qilin)
- take apart second stage payloads (vidar, lumma, redline, rabbit, custom winpy modules) for persistence, credential theft, and exfil
- clickfix and fileless execution: living off the land through finger, certutil, mshta, cmdkey, and webdav for remote dll loading
- hunt windows and macos infostealers: gootloader, atomic macos stealer (amos), and macsync stealer with its signed swift droppers
- triage botnets and cryptomining: mirai, xmrig, and usb-borne worms like tangerine turkey
Monash University
Cyber Security Systems Analyst
feb 2025 → jul 2026detection, response, and automation across the monash group. building detection capability and the plumbing behind it, and mentoring the people using it.
- lead major incident investigations and coordinate response across teams
- design and build detections
- write and maintain security automations
- assist in integrating security systems to sharpen detection and response
- mentor junior analysts in incident response and operations
- steer security posture and enterprise environment decisions
Associate Cyber Security Analyst
mar 2024 → feb 2025soc analyst for the monash group. triaging, investigating and remediating threats, with a side of firewall and network security work.
- triage and respond to security incidents
- run digital forensics and active incident response
- review network acl requests
- manage firewalls and write firewall policy
- provide security oversight for network architecture
- turn business requirements into security standards with stakeholders
PwC
Risk and Control Assurance, Associate Intern
jun 2023 → dec 2023risk and controls intern. assessing controls across a range of industries, testing whether they actually held up, and telling clients what i found.
- run risk assessments and control evaluations
- spot control weaknesses and unaccounted for risks
- test whether risk mitigation controls actually work
- present findings and recommendations to clients
- work with stakeholders on their business objectives
cat ~/education
Monash University
Bachelor of Business and Information Technology
mar 2021 → nov 2024Majoring in Banking and Finance & Computer Networks and Security. GPA: 3.625, WAM: 82.000