A SOC analyst and DFIR practitioner from Lahore — built through forensic investigations, cyber range training, and a genuine obsession with how digital crimes leave traces.
My path into cybersecurity started with a simple question: how do investigators prove what happened on a compromised system? That question pulled me into digital forensics, and forensics pulled me into security operations — because you can't respond to what you can't investigate.
Studying at Lahore Garrison University for a B.Sc. in Digital Forensics and Cybersecurity gave me the academic foundation. Everything else came from doing: 133 TryHackMe rooms, 7 CCFA forensic case reports, a CCFA certification, 7 Splunk SIEM projects, a Mastercard threat analysis internship, and a growing collection of tools and reports that prove the work, not just the credentials.
I'm drawn to the intersection of forensics and detection — the part of security where you have to think like both an investigator and an analyst at the same time. That combination is what I'm building toward professionally.
Grouped by domain — no arbitrary percentages. If it's listed, it's been used in a real lab, investigation, or project.
The baseline SOC certification — covering SIEM, IR, threat detection, and network security. First priority on the cert roadmap.
Microsoft Security Operations Analyst certification. Directly maps to Azure Sentinel and Microsoft Defender — tools used in modern SOC environments.
Actively building a custom forensics tool for real-time evidence collection, artifact parsing, and automated reporting. In development.
Certified Computer Forensics Analyst through eSecurity Institute. Completed July 2026 — validates all seven CCFA lab reports and the forensic investigation methodology.
Training completed. Working toward sitting the actual CISA exam to convert the Candidate status into a full certification.
The main goal. Open to Security Operations Analyst and DFIR practitioner roles — remotely or in-person. Ready to contribute from day one.