For employers

Hire this AI Trainer

Sign in or create an account to invite AI Trainers to your job.

Invite to Job
M
Mohamed A.

Mohamed A.

SOC Blue Team Lab – PCAP Analysis, Forensics & SIEM Architect (IT Gate Academy eCIR/eCDFP/IBM QRadar SIEM)

Egypt flagCairo, Egypt

Key Skills

Software

Don't disclose

Top Subject Matter

Cybersecurity SOC (PCAP analysis, forensics, SIEM correlation)
Ethical hacking training (CEH V13)
Linux administration and security log analysis scripting

Top Data Types

Computer Code ProgrammingComputer Code Programming

Top Task Types

Red TeamingRed Teaming
ClassificationClassification
SegmentationSegmentation

Freelancer Overview

SOC Blue Team Lab – PCAP Analysis, Forensics & SIEM Architect (IT Gate Academy eCIR/eCDFP/IBM QRadar SIEM). Brings 1+ years of professional experience across complex professional workflows, research, and quality-focused execution. Core strengths include Wireshark, FTK Imager, and IBM QRadar SIEM. Education includes Bachelor of Science, Egyptian Chinese University (2026) and SOC Analyst Diploma, IT Gate Academy (2025). AI-training focus includes data types such as Computer Code and Programming and labeling workflows including Evaluation, Rating, and Red Teaming.

Labeling Experience

IT Intern - Schneider Electric

SegmentationSegmentation

Supported enterprise IT infrastructure activities while working alongside internal teams to understand OT and network security basics. Participated in sessions focused on industrial control systems and network segmentation concepts. Collected practical exposure to security-relevant infrastructure in a real-world environment under supervision. • Attended trainings and walkthroughs on ICS and network segmentation • Observed enterprise IT infrastructure setup and operational workflows • Assisted with review/understanding of security considerations in OT contexts • Documented observations to support learning and training outcomes

2025 - 2025

NSE4 FortiGate Firewall Lab Architect (policy/configuration practice)

ClassificationClassification

Designed firewall and network security policy configurations in a FortiGate lab to emulate real-world security operations. Implemented protection features such as web filtering, SSL inspection, application control, DoS protection, and QoS in the device configuration. Configured VPN and virtual domains and validated high-availability failover behaviour in the lab. • Configured firewall policies, VDOMs, and HA failover settings. • Enabled SSL inspection and web filtering to enforce content security controls. • Implemented application control, DoS protection, and QoS. • Set up SSL/IPsec VPN connectivity from scratch within the lab.

2024 - 2025

Linux Administration & Bash Scripting Lab Architect (Linux Admin I)

Don't disclose

Built and automated security-relevant configuration and analysis routines in a Linux administration lab. Used scripting to parse logs and investigate suspicious authentication activity from system logs. Hardened SSH and managed core Linux services to support secure operations. • Wrote Bash scripts for log parsing and automation. • Analysed auth.log and syslog patterns using grep/awk/sed. • Managed users/permissions and implemented SSH hardening. • Hosted web server content and configured Linux server networking.

2024 - 2025

CEH V13 – Ethical Hacking Lab Architect (Attack lifecycle practice)

Red TeamingRed Teaming

Designed and executed ethical hacking attack-lifecycle exercises in a controlled lab environment to practice attacker techniques and failure modes. Performed reconnaissance and scanning, followed by enumeration and exploitation steps using common tooling. Practised post-exploitation analysis and detection-evasion activities as part of the training. • Conducted footprinting, Nmap scanning, and service enumeration. • Used Metasploit for exploitation and performed password cracking with John the Ripper, Hashcat, and Hydra. • Analysed RAT artifacts and practised sniffing/session hijacking and DoS. • Practised web, wireless, and IDS-evasion techniques on Kali Linux.

2024 - 2025

SOC Blue Team Lab – PCAP Analysis, Forensics & SIEM Architect (IT Gate Academy eCIR/eCDFP/IBM QRadar SIEM)

Performed SOC blue-team style analysis on PCAP captures to identify and classify security-relevant events and anomalies for incident response practice. Used Wireshark to detect patterns such as port scans, brute-force attempts, ARP scans, C2 traffic, DNS tunneling, and HTTP/SMTP anomalies. Produced investigation outputs and followed structured CTF-style incident response reporting. • Analysed PCAPs and extracted network indicators of compromise for detection use. • Conducted Windows forensic workflows for disk imaging and evidence review. • Investigated security offenses and built correlation logic in a SIEM. • Created dashboards and AQL-based investigative queries to support alerting.

2024 - 2025

Education

E

Egyptian Chinese University

Bachelor of Science, Software Engineering

Bachelor of Science
2021 - 2026
I

IT Gate Academy

SOC Analyst Diploma, Security Operations and Network Administration

SOC Analyst Diploma
2024 - 2025

Work History

C

Cheiron Petroleum

IT Intern

Maadi
2025 - 2025
S

Schneider Electric

IT Intern

New Cairo
2025 - 2025