SECURITY OPERATIONS · INVESTIGATION & DETECTION
Email Security
& Threat Hunting
Investigated phishing and spoofing incidents, validated threats with DNS analysis and sandbox environments, and wrote targeted rules and Regex detections to identify malicious patterns.
Contributions, impact & lessons
Contributions. Analyzed sending patterns and targeted high-volume spam campaigns to block repeat attempts before messages reached inboxes.
Impact. Improved malicious-email detection, reduced employee exposure to malicious mass emails, and strengthened enterprise email security.
What I learned. How attackers use spoofing and phishing, how real-world incident investigation works, and why layered security controls matter. Sending patterns help reveal campaigns beyond individual messages.