01
Malware Analysis & Reverse Engineering
Unpack malicious behavior, inspect execution paths, and translate opaque samples into operationally useful findings.
Cybersecurity Engineer | Malware Analysis | Automation
Technical Depth for High-Stakes Security Work
I build analyst-facing systems, investigation workflows, and automation that turn ambiguous security problems into clear, repeatable action.
Operational security tooling
Investigation aids, triage systems, and enrichment workflows that reduce repetitive analyst effort.
Reverse engineering with practical outcomes
Translate suspicious behavior into detections, response context, and engineering decisions.
Infrastructure-aware security execution
Work across network telemetry, cloud-connected systems, and platform operations to improve resilience.
Core Strength
Reverse engineering, malware triage, and detection-focused tooling
Operating Range
Security operations, network engineering, and infrastructure automation
What Teams Get
Fast execution, automation-backed consistency, and clearer engineering output
Value Proposition
Technical depth, repeatable workflows, and outputs that teams can use immediately.
01
Unpack malicious behavior, inspect execution paths, and translate opaque samples into operationally useful findings.
02
Design analyst-facing workflows, AI-assisted triage systems, and detection pipelines that reduce repetitive investigation time.
03
Connect network telemetry, indicators, behaviors, and infrastructure into engineering outputs that improve reliability, detection, response, and decision support.
Featured Projects
Each project is a focused case study with clear problem framing and measurable utility.
An analyst-focused triage environment that reduces the time required to classify suspicious binaries and scripts.
A pipeline for unpacking heavily obfuscated JavaScript and extracting behavior relevant to detection and threat understanding.
A contained research environment for emulating IoT threats, observing device behavior, and validating security hypotheses.
A rule-driven code analysis engine for identifying risky patterns and surfacing high-value security findings early.
A correlation layer that links infrastructure, indicators, and behaviors into a usable analyst-facing threat picture.
Research
Short-form notes that show how analysis, deobfuscation, and automation patterns are documented.
A workflow for profiling obfuscated JavaScript, simplifying AST structure, recovering behavior, and converting findings into useful defensive output.
A structured workflow for moving from suspicious sample intake to evidence, behavioral conclusions, and defensive output.
Full notes, references, and encyclopedia contributions live on the dedicated research page.
Contact
The fastest path is email. If you prefer, use the form below and I will have the message details structured immediately in the email draft.