// core competencies
Skills
- Windows 10/11 & Windows Server (AD, GPO)
- Linux — Ubuntu, Fedora (CLI, services, permissions)
- macOS — entitlement auditing, codesign tooling
- VMware Workstation, VirtualBox, Proxmox
- VM provisioning, snapshots, disaster recovery testing
- Managed 15+ VMs across lab and production environments
- TCP/IP, DNS, DHCP, VLANs, VPNs, subnetting
- Wireshark, Nmap, endpoint hardening, privilege auditing
- Firewall rules, IDS/IPS concepts, NTFS/Linux permissions
- PowerShell — sysadmin automation, GPO enforcement, user provisioning
- Python — data processing, Flask apps, ML pipelines
- Bash — Linux task automation, audit tooling, shell scripting
- Jira, Zendesk — ticketing and ITSM workflows
- RDP, SSH, VNC — remote access and administration
- Centralized log monitoring, SOC dashboards, SIEM basics
// professional history
Work Experience
Cloud Windows Systems Administrator
CSUN
Feb 2026 – Present
- Supporting enterprise Windows and cloud infrastructure through guided training and supervised operations.
- Assisting with system monitoring, reviewing dashboards, logs, and alerts, and documenting observed issues.
- Shadowing administrators during server maintenance, configuration changes, and deployments.
- Creating and updating technical documentation and SOPs while tracking tasks in departmental systems.
AI Data Trainer
Handshake AI · Remote
Dec 2025 – Present
- Reviewed 600+ system-generated outputs across multiple project cycles applying quality and accuracy criteria.
- Maintained ~97% guideline adherence in a fully remote, asynchronous environment.
- Completed 15–25 structured evaluations per hour while meeting accuracy and documentation standards.
- Identified recurring inconsistencies in automated responses, contributing to improved output reliability.
Technical Systems Specialist
Independent IT Consultant
Aug 2018 – Present
- Delivered Tier 1–2 technical support for a 50+ user base across Windows, Linux, and macOS platforms.
- Managed full user lifecycles including automated account provisioning, RBAC, and standardized deployments.
- Optimized virtualized infrastructure managing 15+ VMs with snapshot and validation testing for high availability.
- Executed security-focused administration: NTFS/Linux permission audits, log analysis, and baseline hardening.
// lab work & builds
Projects
Full-Stack Insurance Quote Platform
- Built with React, NestJS, PostgreSQL, and JWT authentication.
- Integrated a Python ML pricing service (FastAPI, XGBoost) for premium estimation.
- Managed PostgreSQL schemas and maintained architecture documentation throughout.
Enterprise IT Infrastructure Lab
- Configured Domain Controller, DNS, and role-based file shares secured with NTFS and share permissions.
- Deployed GPOs for baseline hardening (password complexity, audit settings, drive maps).
- Automated user creation and drive mapping via PowerShell; documented troubleshooting playbooks.
SkillSynth — Hackathon Project
- Built React/Next.js front-end integrated with Ollama + Pinecone retrieval and PostgreSQL user state.
- Delivered a functioning MVP in 24 hours focused on UX and real-time interactions.
- Documented architecture and deployment steps for reproducibility.
Linux Privilege Escalation Lab
- Discovered and exploited 5+ local misconfigurations: SUID binaries, writable /etc/passwd, sudo escapes.
- Designed 3 advanced escalation chains including setcap Netcat bind shell and writable systemd service exploits.
- Modeled lab on red-team post-exploitation methodology to teach defenders detection opportunities.
Python Keylogger + Remote C2 Server
- Implemented a modular Python keylogger and Flask-based C2 server to demonstrate persistence and exfiltration gaps.
- Verified 200+ keystroke events in an isolated Linux Mint VM; included automated cleanup scripts.
- Used findings to improve defensive detection ideas: Sysmon, process baselines, and network indicators.
SQL Security Lab
- Built two Flask apps (secure vs. vulnerable) to demonstrate SQL injection risks and mitigations.
- Implemented 3 PostgreSQL security layers: authentication, RBAC, and Row-Level Security (RLS).
- Executed 50+ sample queries and tracked performance via pg_stat_statements.
macOS Entitlement Audit
- Built Bash tooling around macOS codesign/plutil to extract and parse app entitlements, reducing manual audit time ~80%.
- Analyzed entitlements from popular binaries (Chrome, Zoom, Postman, VS Code) and indexed 1,000+ plist entries.
- Created pattern-matching rules to flag high-risk entitlements and produce remediation notes.
// academic background
Education
2026 – Present
California State University, Los Angeles
M.S. Information Systems
Los Angeles, CA
Expected 2026
California State University, Northridge
B.S. Computer Information Technology
Northridge, CA
2023
Los Angeles Mission College
A.S. Cybersecurity · A.S. Computer Programming
Sylmar, CA
// certifications
Certifications
CompTIA A+
CompTIA
- Hardware troubleshooting, PC assembly, and component-level diagnostics.
- OS installation and configuration across Windows, Linux, and macOS.
- Mobile device support, networking fundamentals, and help desk best practices.
CompTIA Network+
CompTIA
- TCP/IP model, subnetting, VLANs, routing, and switching fundamentals.
- Wireless standards, network troubleshooting, and infrastructure design.
- Network security concepts including firewalls, IDS/IPS, and VPN configurations.
CompTIA Security+
CompTIA
- Threats, attacks, and vulnerabilities across enterprise environments.
- Identity management, PKI, cryptography, and secure network architecture.
- Incident response procedures and risk management frameworks.
CompTIA CySA+
CompTIA
- Threat intelligence, behavioral analytics, and SOC workflow operations.
- Log analysis, SIEM usage, and detection of anomalous activity.
- Vulnerability management and security recommendations from scan data.
CompTIA Cloud Essentials+
CompTIA
- Cloud service models (IaaS, PaaS, SaaS) and deployment strategies.
- Cloud risk, governance, and compliance considerations for business.
- Migration planning and evaluating cloud vs. on-prem tradeoffs.
ISC2 Certified in Cybersecurity
ISC2
- Security principles, access controls, and business continuity concepts.
- Network security, physical security, and incident response fundamentals.
- Foundation for advanced ISC2 credentials (SSCP, CISSP pathway).