I’m a Cybersecurity graduate student, researcher, and teaching assistant with a strong background in computer science, defensive security, and applied security research. My main interests are blue team operations, detection engineering, SOC automation, and using LLMs to reduce analyst toil.
I enjoy building practical security tooling, research prototypes, and educational labs that connect theory with real-world security operations.
- 🎓 M.S. in Cybersecurity — University of South Florida (Expected Dec 2026)
- 🔬 Research Assistant — Rapid7 Cyber Threat Intelligence Lab
- Human-centered cybersecurity
- SOC workflows & detection engineering
- LLM-assisted security analysis
- 🧑🏫 Teaching Assistant — Hands-On Cybersecurity (Linux, networking, web security)
- 🛡️ Detection engineering using Sigma Rules, Sysmon, Windows logs, Elastic
- 🤖 Applying LLMs (Gemini, local models) to blue team workflows
- Human-centered cybersecurity
- SOC automation and analyst augmentation
- Detection engineering and telemetry modeling
- LLM-assisted security workflows
- Adversary behavior modeling using MITRE ATT&CK
- Blue Team & Detection Engineering
- Security Operations Centers (SOCs)
- Windows & Linux telemetry
- Cloud & infrastructure security
- Secure coding & applied cryptography
- Cybersecurity education and tooling
- Python, Java, JavaScript, SQL, Bash
- Sigma Rules, Sysmon, Elastic
- Firewalls, Vulnerability Assessment
- OWASP ZAP, Web Application Security
- Linux (Ubuntu, Kali), Docker, Proxmox
- React, Node.js, Express, Flask
- MongoDB, PostgreSQL
- AWS, Azure
- IAM, logging & monitoring
- Cloud networking
(See pinned repositories for more)
-
Cybersecurity Home Lab
Virtualized attack & defense environment using Proxmox, Windows, Linux, Sysmon, and network segmentation. -
DontBite – Chrome Phishing Detector
Gmail extension using the Gemini API to detect phishing emails with policy-based actions (Hackabull 2025). -
EERIS Expense Reporting System
Secure full-stack web application with role-based access, admin dashboards, and expense analytics. -
LLM-Assisted Security Research
Prototypes for translating PoCs, MITRE ATT&CK techniques, and telemetry into detection-ready artifacts.
- CompTIA Security+
- Rapid7 InsightIDR Certified Specialist
- Cisco Junior Cybersecurity Analyst
- Azure Data Fundamentals
- NDG Linux Essentials
- Whitehatters Computer Security Club (WCSC)
- SHPE @ USF — Director in Technology
- ACM Member
- Hackathon participant & volunteer
- 🇨🇴 Colombian · 🇺🇸 Based in Tampa, FL (open to relocation)
- Passionate about teaching and mentoring
- I enjoy turning complex security problems into structured systems and workflows
- LinkedIn: https://www.linkedin.com/in/ds-cs2020
- Email: [email protected]
- GitHub: https://github.com/monosalgado