Hello, i'm Mathews, Cloud Security Architect with 10 years of experience in Cloud Security, SIEM/SOAR, IDS/IPS, and NGFW technologies, specializing in threat detection, incident response, and security automation.
End-to-end support of Multi-cloud Security Architecture using Cloud native and non cloud native soltions in Azure, AWS and GCP for SIEM/SOAR/CNAPP/CSPM/CASB/CIEM.
Complete management of Perimeter Security infrastructure like Intrusion Detection/Prevention Systems, Next Generation Firewalls (Palo Alto), Firewalls, Proxy, VPN.
Delivering security trainings, consulting for security solutions, webhosting, custom bot development for Telegram/Discord, Matrix rooms, Private VPN/Proxy.
Designed, deployed, configured, and managed Azure Sentinel for 1200+ log sources, including Entra ID, Azure Firewall, Key Vaults, Azure Databases, Microsoft Defender XDR, Defender for Cloud, Windows & Linux servers, improving overall log management efficiency by 25% due to centralized monitoring and streamlined configuration.
Designed, deployed, configured, and managed the migration of Azure Sentinel for 1500+ log sources from an existing SIEM solution, including Entra ID, Azure Firewall, Key Vaults, Azure Databases, Microsoft Defender XDR, Defender for Cloud, Windows & Linux servers. This migration resulted in a 25% improvement in overall log management efficiency due to centralized monitoring and streamlined configuration.
Designed, deployed, configured, and managed the continuous operation and maintenance of Azure Sentinel for multiple Fortune 500 clients. This involved overseeing 2000+ log sources from various systems including Entra ID, Azure Firewall, Key Vaults, Azure Databases, Microsoft Defender XDR, Defender for Cloud, and Windows & Linux servers, ensuring optimized performance, proactive issue resolution, and the continuous improvement of security operations.
Architected and deployed Microsoft Defender for Cloud's advanced Cloud Security Posture Management (CSPM) capabilities across Azure, AWS, and GCP for enterprise clients, enabling unified visibility, proactive risk management, and continuous compliance monitoring. Leveraged the enhanced CSPM plan with integrated workload protection to secure diverse cloud services and ensure alignment with multiple regulatory frameworks.
Designed and implemented Azure Native Cloud Workload Protection capabilities across Azure and multi-cloud environments, enabling proactive threat detection, attack surface reduction, and secure management of sensitive assets. Delivered full-stack protection across virtual machines, containers, databases, APIs, and integrated key Azure services such as Key Vault and Event Hubs.
Led strategic implementation of Microsoft Security technologies across large enterprise environments, delivering measurable improvements in security posture, threat detection, and operational efficiency. Focus areas included endpoint protection, Office 365 security, phishing awareness, and identity governance for clients in highly regulated industries such as pharmaceuticals and manufacturing.
Led the design, deployment, and lifecycle management of enterprise on-premises and perimeter security solutions, including IPS/IDS, network access control, traffic analytics, and next-generation firewall technologies. Delivered improved threat visibility, reduced attack surface, and enhanced operational resilience across hybrid infrastructures.
Worked as a Senior Security Analyst in a 24x7 Security Operations Center (SOC), responsible for real-time threat monitoring, incident response, and proactive threat hunting using a broad spectrum of industry-leading security tools. Provided tactical and strategic insights into security events to improve the organization’s threat detection and response maturity.
Developed and maintained a Telegram Group Management bot integrated with GenAI technologies such as ChatGPT to automate group interactions, enhance user engagement, and deliver real-time content. The bot supports multiple intelligent and utility-based features tailored for active and large Telegram communities.
Available for long-term, full-time roles
Available for scoped, one-time projects
Available for short-term or flexible tasks
Enhance online privacy with a self-hosted OpenVPN or WireGuard VPN. Follow this guide for a secure & reliable setup, ditching public VPNs.
Read More
Tutorial for creating a Selfhosted SOCKS5 Proxy in a few seconds using a free and OpenSource script.
Read More
How to self-host A.I LLMs like Llama, Mistral etc. locally using OpenSource tools and how to run uncensored models locally and customize them.
Read More