SIEM & Detection
- Splunk
- Exabeam
- Microsoft Sentinel
- Detection Engineering
- MITRE ATT&CK
Senior Security Engineer · LATAM
Six years cutting noise, response time, and manual ops in 24/7 MSSP environments. Splunk, CrowdStrike, AWS — and a 25-analyst SOC that triages itself.
About
Senior Security Engineer with 6+ years designing, optimizing, and scaling detection and response in MSSP environments across Latin America.
I've shipped SIEM architecture (Splunk, Exabeam), EDR integrations (CrowdStrike, Defender), AWS/Azure security posture, and Python/Terraform/SOAR automation that runs in production every day.
Today I lead 25 analysts across Panama and Colombia. 24/7 coverage for 50+ enterprise clients. 30,000+ alerts triaged every month.
Featured work
Three pieces from the last 12 months — DFIR forensic analysis, agentic AI in detection, and autonomous SOC operations.
DFIR · Forensic report
Forensic walk-through of a ClickFix infection chain abusing chimefusion.com. IOCs, payload staging, persistence, and detection content.
Read articleAgentic SOC
Agentic SOC processing alerts autonomously: noise cut by 30%+, triage time down 20%. 25 analysts, 2 countries, 50+ enterprise clients.
Read articleRobotics · Voice · WhatsApp
Curiosity experiment turned autonomous apartment exploration. The architecture, the lessons — and the security frame you can't ignore.
Read articleExperience
A non-linear path. Each role compounded into the next.
Sofistic Cybersecurity (a Cuatroochenta company)
Sofistic Cybersecurity
Sofistic Cybersecurity
Sofistic Cybersecurity
Ministerio de Trabajo y Desarrollo Laboral
Tooling & capabilities
Certifications · 43+
Cloud, detection, offensive — vendors that ship the tools I run in production every day.
Education
2014 — 2018
Universidad del Istmo, Panama
2018 — 2019
Universidad Autónoma de Chiriquí
Speaking
Jan 2021
BSides Panama
Wi-Fi attack surface, automated WPA2 cracking, AI-assisted handshake analysis. Volunteer talk.
Contact
Open to senior detection engineering, cloud security, and security automation roles in remote global teams.