How I Tuned a Noisy SOC Into a Measurable Detection Program
A practical write-up about correlations, false-positive reduction, and ATT&CK mapping in ELK + Wazuh.
A blog is useful when it teaches something specific, shows your thinking, and gives search engines fresh content to index.
A practical write-up about correlations, false-positive reduction, and ATT&CK mapping in ELK + Wazuh.
A recruiter-first guide to keywords, proof, metrics, and project storytelling.
How infrastructure experience strengthens incident response and SIEM engineering.