:#########: ############: #### ####
############### ##############: #### ####
####: :#### #### #### #### ####
####: :#### #### ####: #### ####
#### #### ####::::::##### ################
#### #### #############: ################
####: :#### ####:::::: #### ####
####: :#### #### #### ####
############### #### #### ####
:#########: #### #### ####
root@oph:~$ ./whoami --full
Hussein Dheyaa
SOC Analyst · Threat Hunter · Incident Responder
- Degree
- B.E. Cybersecurity — Middle Technical University
- College
- Electrical and Electronic Technology
- Location
- Baghdad, Iraq
- Focus
- Alert triage, DFIR, threat hunting, CTF design
- Stack
- Splunk · Elastic · Snort · ATT&CK · Kali · Docker
- GPA
- 4.0 — 95%
01 — whoami
Summary
Blue team analyst with hands-on experience triaging alerts in Splunk and running investigations in ELK/Kibana. I came to defense from the offensive side — a couple of years of CTF work in web exploitation, cryptography, and reverse engineering — so I tend to read an alert by asking how I would have caused it. Comfortable working in Kali and Docker, with ongoing practical training in DFIR and threat hunting. I also build CTF challenges, not just solve them.
02 — field work
Experience
-
Trainee
–Ministry of Interior — Cybersecurity Directorate · Baghdad, Iraq
- Placed 1st out of 1200 participants in the programme’s final Capture The Flag competition. announcement
- Network security fundamentals: TCP/IP analysis, packet inspection with Wireshark, and firewall configuration.
- System hardening for Linux and Windows: access control, service reduction, and logging.
- Offensive and defensive techniques: reconnaissance and exploitation with Nmap and Metasploit, incident response, and digital forensics.
-
Security Researcher Internship
–Middle Technical University — Cybersecurity Engineering Department · Baghdad, Iraq
- Network assessments: packet inspection, traffic analysis, firewall configuration.
- Hardened Linux and Windows systems using Wireshark, Nmap, and Metasploit.
- Automated routine security and network scanning tasks with Python.
-
B.E. in Cybersecurity
–Middle Technical University — College of Electrical and Electronic Technology · Baghdad, Iraq
- Coursework: Network Defense, Digital Forensics, Ethical Hacking & Penetration Testing, Cybersecurity Governance, Artificial Intelligence, Web Applications Security.
- GPA 4.0 — grade A (95%).
03 — verified
Certifications
Every badge links straight to its issuer’s verification page.
- Security Analyst Level 1SAL1 TryHackMe · Jul 2026‹ verify ›
- SOC Level 1SOC1 TryHackMe · Jul 2026‹ verify ›
- Certified Incident RespondereCIR INE · Aug 2026‹ verify ›
- Certified Cybersecurity Educator ProfessionalCCEP Red Team Leaders · Apr 2026‹ verify ›
- ISO/IEC 27001 Information Security AssociateISO 27001 SkillFront · Aug 2026‹ verify ›
- CS50x & CS50 CybersecurityCS50 Harvard University · Sep 2024‹ verify ›
04 — toolkit
Skills
Languages
- Python
- SQL
- C / C++
Blue Team
- Splunk
- Elastic / Kibana
- Snort
- MITRE ATT&CK
- Wireshark
- DFIR
Red Team
- Nmap
- Burp Suite
- Metasploit
- Web Exploitation
- Cryptography
- Reverse Engineering
AI Security
- Prompt Injection
- LLM Jailbreaking
Platform
- Kali Linux
- Docker
- Windows Hardening
05 — build log
Projects
-
SOC Training & Phishing Simulation Platform
Lead ArchitectMulti-vector security awareness platform (phishing, smishing, vishing, whaling) with campaign telemetry, resilience scoring, and exportable audit reports. Led architecture and a team of three; deployed via Docker with managed Postgres.
Next.js · TypeScript · PostgreSQL · Prisma · Docker -
“wctfsv” Web CTF Solver
CreatorModular CLI toolkit for authorized web pentesting: SQLi/XSS detection, directory and subdomain enumeration, header/cookie/source analysis, and a chained scan mode with JSON reporting. Multi-threaded, with auth and custom-header support.
Python · Kali Linux -
“Cyberpath” Learning Roadmap Builder
CreatorSingle-page app generating personalised, shareable cybersecurity learning roadmaps across six tracks, scaled to the learner’s experience, pace, and budget. URL-encoded state, dependency-free PDF export, WCAG 2.2 AA.
Vanilla JavaScript · CSS · HTML — zero dependencies