Blue Team 🛡️ • Red Team ⚔️ • Infrastructure 🖥️ • Homelab 🔬
I'm an ASIR student and SMR graduate focused on systems, networking and cybersecurity.
I enjoy building practical environments where I can understand both sides of security: how systems are attacked and how those attacks can be detected, investigated and mitigated.
My work combines:
- 🛡️ Defensive security / Blue Team
- ⚔️ Offensive security / Red Team
- 🖥️ Systems administration
- 🌐 Networking
- 🔬 Homelab environments
- ⚙️ Automation and troubleshooting
Currently preparing CompTIA Security+ and continuing to develop practical projects around SOC operations, infrastructure monitoring, network security and automation.
Sysmon · Suricata · Cowrie · Atomic Red Team · MITRE ATT&CK · SIEM · IDS
TCP/IP · DNS · DHCP · NAT · DMZ · SSH · Network Monitoring
Python — Basic · SQL · GitHub
Virtualized SOC environment designed for attack simulation, telemetry collection, detection engineering and incident investigation.
- Segmented environment with Kali Linux, Windows 11 and Ubuntu Server
- Endpoint telemetry with Sysmon
- Centralized logging with Splunk
- Network monitoring with Suricata
- Honeypot deployment with Cowrie
- Adversary simulation using Atomic Red Team
- Detection and analysis mapped to MITRE ATT&CK
- Incident investigation with timelines, IOCs and mitigation recommendations
Stack:
Splunk · Sysmon · Suricata · Cowrie · Atomic Red Team · MITRE ATT&CK · VMware
Internal management platform currently used in production by administrative staff and field technicians.
Developed and maintained individually as a full-stack project.
Main features:
- Work planning and technician assignment
- GPS-based time tracking
- Reverse geocoding
- PDF work reports with digital signatures
- Push notifications
- User roles and access control
- Mobile app for iOS and Android
- OTA application updates
- Production deployment on Synology infrastructure
Stack:
Django 5.1 · PostgreSQL 16 · React Native · Expo · Docker · Synology
Raspberry Pi deployed as a permanent 24/7 security and monitoring node inside my home network.
- DNS filtering with Pi-hole
- Device discovery with NetAlertX / Pi.Alert
- Service availability monitoring
- Network dashboards and alerting
- Dockerized services
- Remote Linux administration through SSH
Stack:
Raspberry Pi · Linux · Pi-hole · Docker · NetAlertX · Uptime Kuma · Grafana · Prometheus
Integration with my Home Cyber Range / Mini SOC to centralize additional network telemetry and security monitoring.
🚧 Work in Progress
Development of a computer-vision based video surveillance and access-control system.
Planned architecture includes:
- Real-time video processing
- Person and face detection
- Recognition of registered users
- Security event generation
- USB / IP camera support
- Event and user management
- Data persistence
- Administration dashboard
Stack:
Python · OpenCV · Computer Vision · SQL · Git/GitHub
Additional projects include:
- Nagios Infrastructure Monitoring Lab
- osTicket Help Desk Lab
- BadUSB / HID Injection labs
- Flipper Zero experiments
- PowerShell reconnaissance
- Cisco Packet Tracer labs
- NAT / DMZ / Proxy network scenarios
More documentation coming soon.
- 🛡️ Security Analyst Level 1 (SAL1) — TryHackMe
- 🔎 SOC Level 1 — TryHackMe
- 🧪 Incident Response and Systems Forensics — IBM
- 🔐 Security Operations and Management — IBM
- 🐧 Linux I / Linux Essentials — Cisco
- ☁️ AWS Academy Cloud Foundations
- 🧠 Cybersecurity Fundamentals — IBM
CompTIA Security+
learning="CompTIA Security+"
focus=("Cybersecurity" "Systems" "Networks")
interests=("Blue Team" "Red Team")
current_projects=("AI Video Surveillance" "Homelab Expansion")
status="Always building, testing and learning"#📫 Contact
- LinkedIn: Andy Llanos
- GitHub: AndYLndR
- Email: 14nd3r@proton.me
