Cyber Security & Risk · Detection · Cloud · GRC
First-Class BSc (Hons) Web Development & Cybersecurity · MBA 2026
I build and document defensive security work — detection logic, incident write-ups, and risk assessments — and I explain what it means to the people who sign the budget.
That second half is deliberate. My BSc is technical (cloud security, network communications, database security, OWASP). My MBA is strategic risk and governance. Day-to-day I own contract compliance and KPI governance for a national client account, which means I already do the unglamorous part of security properly: evidence, audit trails, and holding a control to a standard.
Targeting: SOC Analyst (Tier 1) · Cyber Risk & Assurance · GRC Analyst · UK, hybrid or on-site
- CompTIA Security+ (SY0-701) — exam booked for August 2026
- Detection-as-code: converting my lab detections into portable Sigma rules and mapping coverage against MITRE ATT&CK
- MBA dissertation: digitalisation and firm performance in UK manufacturing — quantitative, Orbis dataset
Each repo below has a full write-up: the objective, what I built, what I found, and what I'd do differently.
| Project | What it demonstrates | Stack | Status |
|---|---|---|---|
| SOC Home Lab & Detection Engineering | Deployed Wazuh SIEM & Sysmon on Windows endpoint, executed Atomic Red Team simulations (T1059, T1087, T1518), and engineered custom XML and Sigma detection rules for account discovery. | Wazuh · Sysmon · Atomic Red Team · Sigma · MITRE ATT&CK | ✅ Complete |
| ISO 27001 Risk Assessment — UK Manufacturing SME | Full risk assessment for a 45-person haulage & logistics firm pursuing certification under customer mandate. Scope definition, 15-asset inventory with CIA classification, risk register, Annex A gap analysis, board-level summary. | ISO 27001:2022 · UK GDPR · Risk scoring | ✅ Complete |
| Alert Triage Playbooks + SOAR Automation | Automated enrichment and case creation for a phishing alert path — cut manual triage steps from 9 to 3. Documented the runbook a Tier 1 analyst would actually follow. | Shuffle · TheHive · Python · VirusTotal API | 🚧 In Progress |
| Capability | Evidence |
|---|---|
| SIEM log analysis & alert triage | SOC Home Lab · TryHackMe SOC Level 1 |
| Detection engineering (Sigma, ATT&CK mapping) | SOC Home Lab |
| Risk assessment, ISO 27001 / NIST CSF | ISO 27001 Risk Assessment · MBA Strategic Risk |
| Cloud security posture & configuration review | BSc Cloud Computing module |
| Web app security (OWASP Top 10) | BSc dissertation |
| Compliance governance & KPI reporting | Professional — Cox Automotive Europe |
| Credential | Status |
|---|---|
| CompTIA Security+ (SY0-701) | In progress — exam August 2026 |
| TryHackMe — SOC Level 1 path | In progress · profile |
| BSc (Hons) Web Development & Cybersecurity | First Class Honours, 2025 |
Wazuh · Splunk · Microsoft Sentinel (KQL) · Sigma · MITRE ATT&CK · Sysmon · Wireshark · Nmap · Burp Suite · TheHive · Shuffle · Azure · AWS · Python · Bash · SQL · C# · ISO 27001 · NIST CSF
Founded and ran the University of Northampton AI Society, running workshops on AI ethics and emerging technology risk — relevant now that prompt injection and LLM-assisted social engineering are live threat categories rather than academic ones.
Worked as a freelance translator across legal and corporate material in English, Romanian and Hungarian, under confidentiality obligations.
Open to junior cyber security roles across the UK.
Full right to work in the UK · Get in touch