Skip to content
View awt-tom's full-sized avatar
😁
😁

Highlights

  • Pro

Block or report awt-tom

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
awt-tom/README.md

πŸ‘‹ Hi, I'm Tom

🏒 Security Consultant @ Yellow Arrow

Focused on Microsoft Security, XDR, and cloud-native defense.


πŸ” What I Do

  • Specialize in Microsoft Defender, XDR, Sentinel, and KQL
  • Build and refine detections, automations and SecOps workflows
  • Explore and write about the latest in cyber security and threat intelligence

🌱 Currently Learning

  • Kusto Query Language (KQL) at an advanced level
  • Deep-diving into Microsoft security architectures and SOC optimization

🀝 Collaboration

I'm open to collaborating on:

  • Community-driven Microsoft Security projects
  • Detection engineering, threat hunting ideas, and learning resources

πŸ“ Latest Writing

I share blogs on Microsoft Security, Defender, Sentinel, and blue team topics:
➑️ https://securitywithtom.com


πŸ“« Get in Touch

Feel free to reach out if you have questions, ideas, or want to work together!

Pinned Loading

  1. awt-tom awt-tom Public

    Config files for my GitHub profile.

  2. mass-yaml-to-json mass-yaml-to-json Public

    This PowerShell script automates the process of downloading YAML analytic rule files from the Azure Sentinel GitHub repository, converting them to JSON format, and saving them locally in their orig…

    PowerShell 3