SOC Operations Lab
Production-grade home SOC on VMware Workstation: multi-phase detection engineering lab with real attack telemetry. ARTEMIS architecture spans pfSense firewall, AD DC, Windows workstation, and integrated security stack.
Cybersecurity Portfolio
ISO/IEC 27001:2022 Lead Auditor SOC Operations GRC Ethical Hacking
BSc Information Security & Forensics
Background
ISO/IEC 27001:2022 Lead Auditor (Mastermind, April 2026) with hands-on experience supporting National Treasury security operations in Nairobi. I combine SOC operations, network security, and practical GRC exposure with Forage simulations from Datacom, Mastercard, Deloitte, AIG, PwC, and Tata. Focus on governance frameworks, risk assessment, and security controls design.
I am hands-on with Splunk, TheHive, Wireshark, Nmap, Metasploit, Autopsy, SIEM workflows, and Python scripting. I apply risk-based thinking informed by the Data Protection Act 2019 and Computer Misuse and Cybercrimes Act 2018 in project documentation and investigation reporting.
Practical
Production-grade home SOC on VMware Workstation: multi-phase detection engineering lab with real attack telemetry. ARTEMIS architecture spans pfSense firewall, AD DC, Windows workstation, and integrated security stack.
ISO/IEC 27001:2022 ISMS template suite — 10-document MSSP client onboarding package. Covers all 93 Annex A controls, Kenya DPA 2019, risk assessment, SoA, policies, procedures. Production-ready for SME deployment.
Autonomous multi-agent offensive security tool. Generates real attack telemetry against the SOC Lab for detection engineering and ISMS documentation. Built on LangGraph for orchestrated attack simulation.
Expertise
Academic
Professional
Forage
Forage
Forage
Forage
Forage
Forage
The National Treasury, Nairobi
Credentials
Evidence
Comprehensive documentation of investigations, risk assessments, detection engineering, and job simulation results. All materials stored in Google Drive with full credential trails.
SIEM detection rules, threat hunting queries, incident reports, and log analysis documentation.
View FolderRisk assessments, ISMS frameworks, Statement of Applicability, and compliance documentation.
View FolderDatacom risk register, PwC consulting analysis, Mastercard phishing report, and all Forage deliverables.
View FolderProject reflections, detection engineering methodology, MITRE ATT&CK mappings, and learning outcomes.
View FolderLeadership
Nairobi, Kenya
Get in Touch
Open to junior cybersecurity roles, internship opportunities, and security collaborations. Based in Nairobi, Kenya. Let's connect.
theondeda@gmail.com github.com/Archer7Mi linkedin.com/in/michaelndeda +254 711 677 140