📍 Siġġiewi, Malta | 📞 +356 7734 4253 | 💼 DevOps Engineer @ Internet Vikings
SRE / Security Operations Engineer with over 6 years of experience working with reliable infrastructure and security monitoring across hybrid on-premises and cloud environments. Hands-on experience with Wazuh (Elasticsearch-based SIEM), Splunk, and Fortinet solutions, focusing on connecting logs, improving detection rules, and making systems run better.
Experience creating and improving security rules based on the MITRE ATT&CK framework to find threats more easily while reducing unnecessary alerts. Strong background in automating how logs are collected and improved using Python and PowerShell. Familiar with DevSecOps practices, including security testing and creating lists of software components (SBOM) within automated delivery pipelines.
Brings infrastructure expertise (VMware, GCP, Azure, physical server environments) into security operations to help improve monitoring, growth, and overall system strength.
current_role: DevOps Engineer @ Internet Vikings
location: Siġġiewi, Malta
phone: +356 7734 4253
email: wacelas@gmail.com
languages:
- Spanish (Native/Bilingual)
- English (Professional Working Proficiency)
expertise:
- Site Reliability Engineering
- Security Operations & SIEM Management
- Detection Engineering (MITRE ATT&CK)
- Infrastructure Automation & IaC
- Hybrid Cloud Architecture
- DevSecOps Integration
focus_areas:
- Wazuh/Elasticsearch SIEM deployment & tuning
- Security telemetry integration & log analysis
- Python-based automation for infrastructure
- Threat detection rule development
- Infrastructure as Code (Terraform, Packer, Saltstack)
- Physical server automation (Redfish, Foreman)June 2026 – Present
Leading new DevOps projects at Internet Vikings, using SRE and security operations skills to improve infrastructure reliability, automation, and how software is released.
December 2024 – June 2026
Security Engineering & Automation:
- Created a Python-based tool to connect on-premises VMware environments and Azure, allowing for central monitoring of configuration changes with Terraform
- Automated the setup of physical servers using Packer, Redfish, and Foreman, making hardware setup a consistent and automated process
- Set up automation to track and ensure security standards are met
SIEM & Detection Engineering:
- Managed Wazuh (Elasticsearch-based SIEM) for central log collection and analysis across mixed infrastructure
- Integrated Fluent Bit to improve structured log ingestion and performance optimization
- Developed and tuned detection rules aligned with the MITRE ATT&CK framework to enhance alert quality and reduce operational noise
- Set up data storage and keeping-policies to ensure information can be tracked and audited
Advanced Detection Initiative:
- Designed a test system for log analysis that connects log data with MITRE ATT&CK information to see which security threats are being found and where more monitoring is needed
- Used organized log data and rule-based logic to improve awareness of security events
July 2023 – December 2024
- Partnered with Dev and Ops teams to build out GCP environments following the Google Cloud Adoption Framework (CAF) for consistent, structured deployments
- Added security checks directly into the development process by managing automated scanning tools and setting up clear rules for policy enforcement
- Built and managed GitHub Actions to automate how software is delivered, making the process more reliable and secure
- Provided ongoing support for cloud resources, making sure the infrastructure follows security best practices
December 2021 – June 2023
- Helped create a central view of security across mixed environments using Splunk, New Relic, Wazuh, and FortiSIEM
- Connected security data from Fortinet and Sophos into central logging and monitoring systems
- Managed Windows and Linux servers, supporting the creation of standard system images, installing updates, and strengthening security
- Set up infrastructure using code with Terraform and Ansible, making system setup and management more consistent
July 2020 – December 2021
- Contributed to centralized visibility across hybrid environments using Splunk, New Relic, Wazuh, and FortiSIEM
- Integrated telemetry from Fortinet and Sophos security solutions into centralized logging and monitoring systems
- Managed Windows and Linux servers across hybrid environments, supporting golden image creation, patch management, and security hardening
- Implemented IaC using Terraform and Ansible, improving provisioning consistency and configuration management
March 2016 – January 2020
- Managed the IT department, leading the technology plan and infrastructure operations for local and cloud-based systems
- Designed and set up local infrastructure, including network parts and firewall solutions following high industry standards
- Managed different Windows and Linux systems, using Ansible to automate and standardize how systems are set up and managed
🎓 Informatic Engineer | Universidad Pontificia Bolivariana, Floridablanca
January 2004 — August 2011 | Graduate with High Honors
📚 Evaluation and Project Management | Universidad Industrial de Santander, Bucaramanga
June 2012 – August 2014
🏆 Certifications:
- Cloud and Infrastructure certifications
- Security and monitoring-related certifications
- DevOps and automation-related certifications
View all certifications on Credly



