cat ~/experience

  1. SentinelOne

    MDR Analyst

    aug 2026 → present

    same as below, but more automation.

    Associate MDR Analyst

    aug 2025 → aug 2026

    front line detection and response across windows, linux and macos. real & contemporary threats: fileless execution, social engineering chains, infostealers, botnets, cryptominers, supply chain compromises, and the occasional ransomware incident.

    • first responder on the axios npm supply chain compromise: flagged it in environment and mapped the whole chain, from poisoned dependency to c2
    • respond to pre-ransomware (stop) and ransomware (.akira, .booba, .termite, .qilin)
    • take apart second stage payloads (vidar, lumma, redline, rabbit, custom winpy modules) for persistence, credential theft, and exfil
    • clickfix and fileless execution: living off the land through finger, certutil, mshta, cmdkey, and webdav for remote dll loading
    • hunt windows and macos infostealers: gootloader, atomic macos stealer (amos), and macsync stealer with its signed swift droppers
    • triage botnets and cryptomining: mirai, xmrig, and usb-borne worms like tangerine turkey
  2. Monash University

    Cyber Security Systems Analyst

    feb 2025 → jul 2026

    detection, response, and automation across the monash group. building detection capability and the plumbing behind it, and mentoring the people using it.

    • lead major incident investigations and coordinate response across teams
    • design and build detections
    • write and maintain security automations
    • assist in integrating security systems to sharpen detection and response
    • mentor junior analysts in incident response and operations
    • steer security posture and enterprise environment decisions

    Associate Cyber Security Analyst

    mar 2024 → feb 2025

    soc analyst for the monash group. triaging, investigating and remediating threats, with a side of firewall and network security work.

    • triage and respond to security incidents
    • run digital forensics and active incident response
    • review network acl requests
    • manage firewalls and write firewall policy
    • provide security oversight for network architecture
    • turn business requirements into security standards with stakeholders
  3. PwC

    Risk and Control Assurance, Associate Intern

    jun 2023 → dec 2023

    risk and controls intern. assessing controls across a range of industries, testing whether they actually held up, and telling clients what i found.

    • run risk assessments and control evaluations
    • spot control weaknesses and unaccounted for risks
    • test whether risk mitigation controls actually work
    • present findings and recommendations to clients
    • work with stakeholders on their business objectives

cat ~/education

  1. Monash University

    Bachelor of Business and Information Technology

    mar 2021 → nov 2024

    Majoring in Banking and Finance & Computer Networks and Security. GPA: 3.625, WAM: 82.000