Skip to content
View umidguluzada's full-sized avatar

Block or report umidguluzada

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
umidguluzada/README.md

Hi there! 👋 I'm Umid

I am a dedicated Cyber Security student with a strong focus on Blue Team operations, Security Operations (SOC), and Network Defense. My technical journey is centered on building resilient systems and mastering the defensive side of cybersecurity.


🛡️ Technical Expertise & Skill Set

My training covers the entire spectrum of security operations, from low-level system hardening to cloud security and incident response:

  • Operating Systems & Hardening:
    • Windows: Architecture, AD/GPO configuration, PowerShell automation, Registry, and system-level security (BitLocker, AppLocker, Credential Dumping mitigation).
    • Linux: System administration, file system management, advanced permission handling (rwx), and security hardening (UFW/iptables).
  • Networking & Protocol Analysis:
    • Deep understanding of OSI/TCP/IP layers, routing, switching, and transport protocols.
    • Hands-on experience with network devices (Firewalls, NGFW, IDS/IPS), Wireshark packet inspection, and traffic analysis.
  • Security Operations (SOC) & SIEM:
    • SIEM implementation and log management (Wazuh, Splunk).
    • Log parsing, normalization, and correlation using Regex.
    • SOAR fundamentals and building automated incident response playbooks using Python.
  • Vulnerability & Risk Management:
    • Vulnerability assessment using OpenVAS and Nessus, CVSS scoring, and patch management strategies.
    • Understanding GRC frameworks (ISO 27001, NIST CSF) and data privacy compliance.
  • Digital Forensics & Incident Response:
    • Forensic workflow, chain of custody, and memory dump analysis (Volatility, Autopsy).
    • Execution of the Incident Response lifecycle, from triage to recovery, and threat hunting.
  • Cloud & Application Security:
    • Cloud security principles (AWS/Azure), IAM, and Cloud EDR.
    • Web Application Security (OWASP Top 10), Burp Suite testing, and email layer security (SPF/DKIM/DMARC).

📜 Certifications & Achievements

  • Cisco Networking Academy: Introduction to Cybersecurity
  • Cisco Networking Academy: Network Defense

🚀 Hands-on Projects & Lab Practice

I actively translate theoretical knowledge into practice through:

  • Network Security Labs: Configuring NGFW, performing Layer 2 attack simulations, and troubleshooting DHCP/ARP poisoning.
  • Malware Analysis: Detonation and sandboxing concepts, static/dynamic analysis of threats.
  • Adversary Emulation: Using Atomic Red Team to test detection capabilities via SIEM.

📫 Let's Connect

I am always eager to engage with the security community, share knowledge, and discuss future collaborations.

“Cybersecurity is not a final product, but a continuous process.”

Popular repositories Loading

  1. CyberDefense-Lab CyberDefense-Lab Public

    A complete Blue Team Cybersecurity Lab featuring pfSense, Suricata, and ELK Stack for network monitoring and threat detection.

    4

  2. umidguluzada umidguluzada Public

    1

  3. security-tools-reference security-tools-reference Public

    Research notes and documentation on cybersecurity and penetration testing tools.

    1