I am a SOC Analyst (Tier 1) with over 5 years of hands-on experience in security operations, specializing in alert triage, log analysis, and event investigation. I have practical experience integrating diverse systems into the IBM QRadar SIEM platform and developing custom detection rules to identify various attack techniques.
My incident response activities align with the NIST framework, ensuring structured and effective handling of security events. I have implemented and managed security solutions such as Snort (IDS) and FortiGate (Next-Generation Firewall), and I regularly conduct vulnerability assessments using Nessus and OpenVAS.
I apply industry-recognized frameworks including the Cyber Kill Chain, Pyramid of Pain, and MITRE ATT&CK to classify threats, understand adversary behavior, and enhance detection strategies.
In addition to cybersecurity operations, I have a solid networking foundation with hands-on experience in Cisco switches and routers, implementing networks using the hierarchical design model. My technical background also includes Windows Server administration, working with Active Directory, Group Policy, DHCP, DNS, and related services.
I completed professional training at Telecom Egypt (WE), where I gained practical exposure to MSAN and GPON cabinets, FTTH deployments, and ISP infrastructure operations.
Currently, I am a cybersecurity instructor on Udemy, teaching over 25,000 students worldwide and helping aspiring professionals build practical, real-world security skills.
I have earned several certifications, including CCNA, MCSA, NSE4, Linux Administration (1), CEH, eCIR, and IBM QRadar.
I am passionate about continuous learning, advancing my expertise, and helping organizations strengthen their security posture.
Feel free to connect with me at: ? mahmoudhassanelsaied08@gmail.com