Security Engineer / SOC Analyst / OT-ICS Security

Ahmed Qazafy Ibrahim

I work on defensive security, vulnerability research, industrial control systems, and practical tooling. This site is a public record of projects, writeups, and course material as they mature.

SOC OT/ICS SIEM DFIR Web Security Linux

Profile

Bridging Systems Engineering with Defensive Security.

01

Security Operations (SOC)

Specializing in SIEM/EDR orchestration and log forensics. Proven experience in hardening infrastructure, deploying Wazuh-based visibility, and managing multi-segment enterprise labs.

02

OT/ICS

Securing legacy industrial protocols through modern security baselines. Developer of Scrutics, an open-source tool for passive OT asset discovery and behavioral baselining in brownfield environments.

03

Research

Methodology-driven offensive research focused on business logic and authentication flows. Experienced in identifying and responsibly disclosing high-impact security gaps in US-facing healthcare SaaS environments.

Projects

Tools and systems.

Projects here are selected for engineering value: clear scope, reproducible behavior, and security relevance.

OT/ICS Tooling

Scrutics

Passive OT/ICS asset discovery and classification. Designed to observe network traffic without active probing, with protocol classification and asset inventory output.

Repository

Embedded / ML

Intelligent Driving System

Raspberry Pi based driver-state monitoring using computer vision, alert escalation, GPS/GSM emergency handling, and Firebase logging.

Repository

Writeups

Published notes and upcoming research.

Public material will stay concise and evidence-based.

Published

Intelligent Driving System project book

Full documentation for the embedded driver-state monitoring system, including system design, implementation, and test methodology.

Read writeup
Coming Soon

Scrutics technical notes

Passive OT discovery, classification logic, and brownfield deployment assumptions.

Coming Soon

Security lab notes

Detection engineering, SIEM workflows, and controlled enterprise lab scenarios.

Contact

Professional links.

Available for SOC analyst, security engineer, and OT/ICS security opportunities.