I approach cybersecurity as an investigation problem.
Every security question, whether it's a vulnerability, an alert, or a suspicious login, is ultimately a question about evidence: what happened, what it means, and what matters enough to act on.

Technology
SIEM, EDR, and vulnerability platforms are the instruments. Microsoft Sentinel, Defender for Endpoint, and Tenable form the core of how I collect and correlate telemetry.
Evidence
Conclusions are only as strong as the evidence behind them. I trace claims back to logs, telemetry, and reproducible queries instead of assuming.
Risk
Not every finding deserves equal attention. I weigh severity against exploitability, exposure, and asset criticality to prioritize what actually matters.
Automation
PowerShell and Python remove repetitive manual work from vulnerability validation and security operations, freeing time for the investigations that need human judgment.
Human Behavior
Attackers exploit process and people as often as they exploit code. Understanding behavior, both the attacker's and the user's, shapes better detection logic and better response.
A continuous loop, not a checklist.
Security work rarely ends at 'fixed.' Every response feeds back into how the next detection or remediation is prioritized.
A brief professional history.
Cyber Security Analyst (Vulnerability Management & SecOps Intern)
Log(N) Pacific

Cyber Security Analyst
WinWin Labs

Cyber Security Analyst
Monal Tech Pvt. Ltd.