sudosoc@portfolio:~$
YYYY-MM-DD HH:MM:SS UTC
AVAILABLE FOR RESEARCH ENGAGEMENTS · Q3 2026

Seif / sudosoc
Networking &
Cybersecurity

$ id --role="Network Security _"

Network & Cybersecurity student at El Sewedy University, interested in Network Security, SOC operations, Threat Intelligence, and Digital Forensics & Incident Response (DFIR). Continuously developing my skills through hands-on projects and continuous learning.

GitHub@sudosoc
// identity
Seif
v.2026
alias
sudosoc
role
Network & Cybersecurity
focus
Network Security · SOC · DFIR · Threat Intelligence
edu
B.Sc. Network & Cybersecurity — El Sewedy University of Technology
location
Remote / Egypt
AUDIT SCANCOMPLETE
??
projects
??
certs
??
tools
??
exp
$ whoami
→ curious. methodical. ships tools.
01 · Capabilities

Tooling & domains.

Programming Languages

05 / stacks
Scripting / Tooling

Python

offensive scripts, automation, parsers

Shell / Automation

Bash

glue, IR collectors, lab scaffolding

Web Application

PHP / Laravel

backend audits, API endpoints

Systems / Networking

Go

concurrent network utilities

Front-End

HTML / CSS / JS

interfaces, dashboards, proofs of concept

Security Domains

07 / disciplines
Infrastructure

Linux Systems Security

hardening · auditd · kernel surface

Infrastructure

Network Analysis & Forensics

pcap · protocol decoding · baselines

Blue Team

SOC Analysis

SIEM · triage · detection logic

Blue Team

Incident Response

containment · timeline · eradication

Blue Team

Digital Forensics

disk · memory · artefact analysis

Red Team

Network Pentesting

recon · exploit · post-exploitation

Red Team

Security Tooling Development

offensive scripts · custom payloads

Spoken Languages

02 / fluencies
Mother Tongue

Arabic

native fluency

Working

English

B2 · technical & professional

02 · Selected Work

Projects & research.

03 · Research & Publications

Long-form writing.

01 / Book · Volume I
336 pages · 2026
VOL. I

sudosoc: Web Vulnerabilities & OWASP Top 10

A comprehensive guide detailing web vulnerabilities, application security, and OWASP Top 10 concepts for SOC practitioners and Red Teamers.

Read Book
02 / SOC Case Study
Technical Report · long-form
RPT. 01

Incident Analysis: Domain Controller Compromise

A long-form technical investigation covering initial access, lateral movement, payload analysis, and persistence mechanisms within an enterprise network.

Read Report
04 · Credentials

Certifications.

IT Group Summer Internship — Egyptian Arab Land Bank
credential
Sep 2025

IT Group Summer Internship

Egyptian Arab Land Bank

A comprehensive 111-hour core enterprise training within the bank's IT group, focusing on corporate network infrastructure and banking operations.

Enterprise InfrastructureIT OperationsNetwork Admin
Cybersecurity SOC Diploma (Grade: 97%) — AMIT Learning
credential
Dec 2025

Cybersecurity SOC Diploma (Grade: 97%)

AMIT Learning

Rigorous specialized diploma covering defensive architecture, SIEM operations, log monitoring, and incident response.

SIEM SolutionsIncident ResponseLog AnalysisNetwork Security
View Capstone Report
Additional Coursework
Network Addressing & Basic Troubleshooting — Cisco Networking Academy
Network Addressing & Basic Troubleshooting
Cisco Networking Academy
Cyber Threat Management — Cisco Networking Academy
Cyber Threat Management
Cisco Networking Academy
5G Basics: What it's all about — HUAWEI ICT Academy
5G Basics: What it's all about
HUAWEI ICT Academy
Cybersecurity: Bug Hunter — Arab Group for Studies
Cybersecurity: Bug Hunter
Arab Group for Studies
Cybersecurity: Penetration Testing — Arab Group for Studies
Cybersecurity: Penetration Testing
Arab Group for Studies
Cybersecurity: Accounts & Info Security — Arab Group for Studies
Cybersecurity: Accounts & Info Security
Arab Group for Studies
05 · Direction

What's next.

Cloud Security Engineering.

Everything above already points here. Detection logic, network analysis, and tooling don't change in the cloud — the telemetry does. CloudTrail is a log. A VPC is a network. An IAM policy is an access control decision written down. New surface, not a new discipline.

  1. NOW
    AWS foundations & IAM
    Identity is the perimeter. Working through policy evaluation, assume-role chains, and privilege escalation paths in a lab account.
  2. NEXT
    Infrastructure as code
    Terraform. Security enforced at the pull request, not discovered in an audit.
  3. THEN
    Cloud detection rules
    Attack executed in lab, telemetry captured, rule authored, mapped to MITRE ATT&CK for Cloud, false positives documented.
  4. TARGET
    Cloud Detection & Response
    Where network analysis, incident response, and tooling development stop being separate interests.