Specialized in Kubernetes forensics, runtime threat detection, and incident response operations. Expertise in Linux security, container security with Falco/eBPF, automated forensic analysis, and MITRE ATT&CK-based threat hunting for cloud-native environments.