DETECTION ENGINEERING / SIEM
From log sources to useful detections
End-to-end SIEM deployments and detection use cases for enterprise security operations.
Liquid C2 MENA (formerly SecureMisr) · March 2017 – December 2019
The challenge
Enterprise SIEM deployment, log-source integration, threat hunting, and incident investigation.
My contribution
- Delivered SIEM deployments from log onboarding through use-case development.
- Built detection use cases mapped to MITRE ATT&CK.
- Led threat hunting and incident investigations across enterprise environments.
Results & outcomes
- 50% improvement in event detection.
- 35% reduction in false positives.
Selected work summarized from my professional experience. Client-sensitive implementation details are not included.