Cybersecurity Engineer · Purple Team · Zero-Trust Architecture
📍 Dakar, Sénégal 🇸🇳 · Open to opportunities
Purple Team specialist — I think like an attacker and defend like a blue teamer. I build production-grade security labs, develop offensive tools, and document real-world attack-defense scenarios. Currently focused on AD exploitation, SIEM deployment, and enterprise network hardening.
Production-grade hardened enterprise network with Purple Team operations
- Zero-Trust Architecture — FortiGate HA cluster with sub-second failover
- Wazuh SIEM + XDR — Real-time threat detection and active response
- 8 fully documented attack scenarios (recon → privilege escalation)
- 19,000+ lines of documentation — architecture, configs, findings, mitigations
Stack: FortiGate · EVE-NG · Wazuh · Kali · OpenLDAP · Nginx 🔗 View IRON-GRID
Enterprise Purple Team lab on VMware ESXi — AD, pfSense VLAN segmentation, Wazuh SIEM, full Red/Blue Team scenarios with detection rules & MITRE ATT&CK mapping
- 3-VLAN segmented network (Kali/Red, Windows AD, Ubuntu SOC) behind pfSense
- Active Directory environment with intentional misconfigurations for realistic attack chains
- Wazuh SIEM ingesting Windows Security events, Sysmon, and syslog across all zones
- 3 of 7 scenarios documented end-to-end (Red Team execution + Blue Team detection + MITRE mapping): Recon & Password Spraying, Kerberoasting, AS-REP Roasting
- Privilege Escalation, LLMNR Poisoning, Persistence and Web Exploitation scenarios in active development
Stack: VMware ESXi · pfSense · Windows Server 2022 · Wazuh · Impacket · NetExec 🔗 View CyberRange-ESXi
All-in-one penetration testing toolkit deployed on Kubernetes
- JWT Analyzer — detect alg:none, expired tokens, weak secrets
- Web Recon — IP, WHOIS, DNS enum, header analysis
- Packet Sniffer — real-time capture with protocol detection
- PostgreSQL-backed scan history
Stack: Python · Flask · PostgreSQL · Docker · Kubernetes 🔗 View PentestKit
| Category | Tools |
|---|---|
| Offensive | Kali · Nmap · Impacket · NetExec · Metasploit · Burp Suite · Hydra · Scapy |
| Defensive | Wazuh · FortiGate · UFW · Fail2Ban · CIS Benchmark |
| Networking | Cisco IOS · pfSense · VLAN · OSPF · SD-WAN · IPSec |
| Development | Python · C · Bash · Flask · PostgreSQL · Docker |
| Infrastructure | VMware ESXi · EVE-NG · Kubernetes · Linux |
| Analysis | Wireshark · tcpdump · Splunk · OpenSSL |
| Cert | Issuer | Status |
|---|---|---|
| Cybersecurity Analyst | ✅ Obtained | |
| Cybersecurity Analyst | IBM | ✅ Obtained |
| CPS — CCNA · Windows Server · FortiGate · VMware ESXi · VoIP · Network Security | Groupe SEMOS | ✅ Obtained |
| Python Essentials 1 & 2 · IT Essentials | Cisco | ✅ Obtained |
| eJPT | eLearnSecurity | ⏳ Next |
| BTL1 | Security Blue Team | 📅 Planned |
| Security+ / CySA+ | CompTIA | 📅 Planned |
| OSCP | Offensive Security | 📅 Planned |
"Security is not about building walls — it's about understanding attacks so you can defend effectively."