Skip to content
View phour44's full-sized avatar

Block or report phour44

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
phour44/README.md

Ibrahim A. Fayomi

Cybersecurity Analyst · Security Architecture · Networking · Detection & AI Security Engineering

I am a cybersecurity, architecture, and networking professional, and I build security tools. I co-founded Phour Global Limited / GuardWraith, a cybersecurity tech-solutions firm, where I help architect AI-native security tooling alongside my analyst and engineering work.

Open to opportunities - SOC Analyst · Security Engineer · Detection Engineering · Threat Hunting · Incident Response.

LinkedIn Website Certifications


What I do

Over the years, I have learned how systems actually work. I trace packets, analyse logs, harden infrastructure, study attack paths, and understand how one weak configuration can compromise an entire environment.

I secure systems against real-world threats, including cross-site scripting, privilege escalation, phishing, credential abuse, lateral movement, and DDoS. I monitor suspicious traffic, investigate abnormal behaviour, secure identities and access controls, and respond to incidents before they become disasters.

Massive volumes of data move every minute across networks, clouds, APIs, applications, authentication systems, and critical infrastructure. Every request, transaction, authentication, and packet depends on systems operating securely and reliably. That requires engineering, monitoring, precision, and constant vigilance from cybersecurity professionals like myself.

I make sure packets move securely, encrypted, and unsniffed across networks. I keep enterprise infrastructure available, systems protected, and data secured at rest and in transit against real threats. I make sure one bad configuration on a critical component does not disrupt or collapse an entire business, that threat actors do not move silently through networks unnoticed, and that incident response time stays low through tested Incident Response and Business Continuity plans.

I approach security from an offensive-informed defensive mindset. I perform legal penetration testing, vulnerability assessments, and attack simulations to identify and mitigate risks before attackers exploit them. I conduct threat hunting for advanced persistent threats (APTs) using industry-standard tools, threat intelligence, behavioural analytics, and MITRE ATT&CK-aligned methodologies, and I design AI-assisted security controls to detect indicators of compromise (IoCs), adversary TTPs, and emerging threats across enterprise environments.

My experience spans SOC operations, threat hunting, SIEM analysis, vulnerability management, network traffic analysis, incident response, and AI-assisted security automation across cloud, hybrid, and on-premises environments.


Recent work & engineering focus

I design and build the products in the PhourGlobal security ecosystem (check them out):

  • GuardWraith - Continuous-Monitoring SOC platform: SIEM, SOAR, XDR, threat intel, & a proprietary GhostAgent for events and logs telemetry and autonomous threat hunting and response.
  • IdentityWraith - Identity Attack Surface Management (IASM): IGA, PAM, ITDR, and CIEM across human and machine identities.
  • ControlOps - Continuous Governance, Risk, and Compliance: controls, evidence, drift, and audit readiness.

Alongside hands-on focus in:

  • Cloud & infrastructure security - IAM hardening, secure baselines, and monitoring across AWS and hybrid estates.
  • Threat detection & engineering - detection-as-code, behavioural analytics, and MITRE ATT&CK-aligned coverage.
  • Offensive security & vulnerability management - penetration testing, attack simulation, and risk-based remediation.
  • Human risk & forensics - phishing defence, email forensics, and malware analysis.
  • AI-assisted SecOps - using AI to accelerate triage, investigation, and detection of emerging threats.

Projects

Detection, monitoring & SIEM

Identity, cloud & infrastructure hardening

Offensive security & simulations

Malware analysis & forensics

Vulnerability & governance


Tooling

SIEM & monitoring

Splunk Elastic Stack Security Onion Wazuh Suricata

Offensive & analysis

Kali Linux Wireshark Nmap Nessus Nikto Bettercap sqlmap IDA Pro PEStudio Burp Suite

Platforms & code

AWS Active Directory Windows Server Linux pfSense Python TypeScript Bash

Frameworks & methodology

MITRE ATT&CK NIST ISO 27001 Incident Response


Certifications

CEH CHFI CC CCT


Connect

LinkedIn Website

📫 Reach me through phourglobal.com or LinkedIn.

Popular repositories Loading

  1. AWS-Cloud-Security-Baseline AWS-Cloud-Security-Baseline Public

    AWS cloud security baseline — IAM, S3 encryption, security groups, and CloudTrail monitoring.

    1

  2. Project--phour44 Project--phour44 Public

  3. phour44 phour44 Public

  4. cybersecurity-home-lab cybersecurity-home-lab Public

    Cybersecurity home lab — multi-VM environment (Windows, Linux, pfSense, Security Onion).

  5. Active-Directory-Security-Baseline Active-Directory-Security-Baseline Public

    Active Directory security baseline — domain controller hardening with baseline GPOs.

  6. Information-Security-Policy-Framework Information-Security-Policy-Framework Public

    Information security policy framework — acceptable-use, password, and access-control policies.