Skip to content
View locallhosts's full-sized avatar

Block or report locallhosts

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
locallhosts/README.md

Hi, I'm Isaiah

Security Engineer · Application Security · Detection Engineering

I build security-focused software, security automation, and security systems for understanding, detecting, validating, and responding to real-world threats.

My work spans endpoint security, detection engineering, security operations, application security, identity and Zero Trust, cloud-native infrastructure, offensive security, and security research.

GitHub LinkedIn X


Security Engineering Focus

Area Focus
Endpoint & Linux Security eBPF, kernel telemetry, process monitoring, system behavior, endpoint visibility
Detection Engineering MITRE ATT&CK, Sigma, behavioral detections, adversarial testing, detection validation
Security Operations SIEM, SOAR, alerting, incident workflows, telemetry pipelines
Application & API Security Secure design, code review, authentication, authorization, API testing
Offensive Security Penetration testing, attack simulation, reconnaissance, exploitation, post-exploitation analysis
Vulnerability Research Vulnerability discovery, root-cause analysis, security testing, proof-of-concept development
Exploit Development Memory corruption, binary analysis, debugging, exploitation concepts, mitigation analysis
Identity & Zero Trust Workload identity, mTLS, SPIFFE/SPIRE, policy enforcement, posture-aware access
Network Security Network telemetry, protocol analysis, packet analysis, network detection
Cryptography & PKI Cryptographic primitives, TLS/mTLS, certificates, key management, PKI
Cloud & Kubernetes Security AWS, GCP, Azure, IAM, containers, Kubernetes workloads, infrastructure security
CI/CD & DevSecOps Secure pipelines, dependency security, supply-chain security, automated security testing
Security Automation Go, Python, Java, scripting, API integration, orchestration, security tooling
Security Architecture Threat modeling, trust boundaries, secure architecture, defense-in-depth
Security Validation Automated testing, regression testing, adversarial validation, benchmarking, evidence generation

Featured Security Projects

Linux Endpoint Detection & Response

An eBPF-based endpoint security platform combining kernel instrumentation, Go telemetry processing, behavioral detection, network visibility, operational controls, Prometheus metrics, and a SOC-oriented dashboard.

Focus: eBPF · Linux Security · EDR · Behavioral Detection · Network Telemetry · MITRE ATT&CK


Detection Engineering & Security Validation

A security detection engineering platform focused on attack simulation, adversarial testing, Sigma evaluation, detection validation, and repeatable security evidence.

Focus: Detection Engineering · Threat Simulation · Sigma · ATT&CK · Security Validation


Identity-Aware Zero Trust Access Proxy

A security-focused access gateway built around identity, cryptographic workload identity, mTLS, device posture, adaptive risk evaluation, policy enforcement, protected application access, and security auditing.

Security flow:

User / Workload
      ↓
Identity
      ↓
mTLS + JWT
      ↓
Device Posture
      ↓
Risk Evaluation
      ↓
Policy Engine
      ↓
ALLOW / DENY
      ↓
Protected Application
      ↓
Security Audit

Focus: Zero Trust · IAM · mTLS · SPIFFE/SPIRE · PKI · Vault · Policy Enforcement


Real-Time Security Telemetry & Detection

A streaming security analytics platform designed around high-throughput telemetry ingestion, stream processing, detection, and analytical storage.

Focus: SIEM · Kafka · Apache Flink · ClickHouse · Go · Python


Distributed Security Orchestration

A distributed SOAR platform demonstrating event sourcing, CQRS, durable security workflows, Kafka-based event processing, case sequencing, recovery, and automated response actions.

Focus: SOAR · Security Automation · Event Sourcing · CQRS · Kafka · Distributed Systems


Secure Platform Engineering · AI · OAuth

A full-stack management platform combining application engineering, authentication and authorization, OAuth integrations, AI-assisted workflows, analytics, management interfaces, CI/CD security, and containerized infrastructure.

Focus: Secure APIs · OAuth · AI Engineering · Kubernetes · CI/CD · Platform Security


Security Research & Technical Discovery

A security-focused research tool for discovering technically relevant GitHub peers and collaborators using technical signals rather than popularity metrics, with privacy-conscious and responsible-use controls.

Focus: Security Research · GitHub API · Python · Secure Web Applications · Responsible Automation


Engineering Stack

Languages

Go Python C C++ Rust TypeScript JavaScript Java Bash SQL

Security

eBPF MITRE ATT&CK Sigma YARA EDR Zero Trust SPIFFE/SPIRE OWASP Burp Suite Nmap Metasploit Wireshark SIEM SOAR

Infrastructure & Cloud

Linux Docker Kubernetes Terraform Vault AWS GCP Azure GitHub Actions Prometheus Apache Kafka Apache Flink ClickHouse PostgreSQL Redis


Engineering Approach

I approach security work as an engineering problem:

Understand → Design → Build → Test → Break → Validate → Improve → Document

I care about working implementations, measurable behavior, reproducible validation, clear security boundaries, and honest documentation of limitations.


Current Areas of Work

  • Endpoint and Linux security
  • eBPF and kernel telemetry
  • Detection engineering and adversarial validation
  • SIEM and SOAR architecture
  • Application and API security
  • Secure software architecture
  • Identity and Zero Trust
  • Cloud, Kubernetes, and container security
  • CI/CD and DevSecOps security
  • Security automation and orchestration
  • Vulnerability research and offensive security
  • Penetration testing and attack simulation
  • Exploit development and binary analysis
  • Malware analysis and reverse engineering
  • Network security and network telemetry
  • Cryptography and applied security
  • Security engineering for distributed systems
  • Security testing, validation, and security tooling

Security Research → Engineering → Validation

GitHub · LinkedIn · X

Popular repositories Loading

  1. RealEstate RealEstate Public

    PHP 2

  2. Africashopping Africashopping Public

    2

  3. votesystem votesystem Public

    JavaScript 2

  4. gender_age_detection gender_age_detection Public

    Python 2

  5. objectdetect objectdetect Public

    Python 2

  6. Capstone-Project-II Capstone-Project-II Public

    Jupyter Notebook 2