// core skills
// case log
| # | Case Name | Platform | Category | Verdict | Report |
|---|---|---|---|---|---|
| 001 | THM Phishing Sim — 5-Alert Queue | TryHackMe SOC Sim | Phishing / Email Analysis | 3 TP · 2 FP | → View |
| 002 | BOTSv1 — APT Defacement & Cerber Ransomware | Splunk BOTSv1 | APT / Ransomware | 2 Scenarios · Full Kill Chain | → View |
| 003 | THM — Network Traffic Analysis | TryHackMe | Network Forensics | In Progress | → View |
// about
CCDL1-certified SOC analyst based in Cairo.
Focused on blue team operations, threat detection, and incident response.
Open to SOC L1 roles in Cairo and GCC.
// background
Experience
Security Operations Trainee — NTI
Splunk, Wireshark, SecurityOnion, Boss of the SOC challenge, IDS/IPS
IT Intern — Abukir Petrol
Active Directory, TCP/IP, VLAN, firewall rules, endpoint security
Education
B.Eng. Computer Engineering
Arab Academy for Science, Technology and Maritime Transport / University of Northampton · GPA 3.0 · Class of 2026
Tools
Splunk · Wireshark · Suricata · Zeek
SecurityOnion · VirusTotal · Packet Tracer
AWS (EC2, S3, IAM, CloudWatch)
Python · Bash · Git