Junior SOC Analyst · Blue Team / Security Operations
I turn operational discipline into auditable defensive work.
I combine incident ownership, multilingual operations and hands-on defensive engineering: source-backed triage, Linux and containers, network visibility, clear handovers, recovery and careful automation.
Each project states its purpose, current status and limits. No enterprise-SOC cosplay; just real, reviewable work and the next sensible improvement.
01
Flagship · Automation + threat intelligence
CyberDailyLog
An automated, source-backed daily Blue Team brief that collects public advisories, scores and curates defensive signals, validates its own outputs and publishes an auditable report.
Auditable daily pipeline
01CollectOfficial advisories + defensive sources
02ValidateSchema, freshness and source quorum
03PrioritiseCVE · KEV · EPSS · analyst context
04PublishChecked report + portfolio snapshot
24 h
rolling coverage
CVE
KEV + EPSS context
3/3
core source quorum
GitHub Actions pipeline with safe publishing
CVE, KEV, EPSS and official-source context
Human context and community signals kept separate
Clear methodology, limitations and analyst next actions
A reproducible Raspberry Pi 4 Blue Team lab with LITE and FULL deployments for service health, metrics, DNS security, hardening, tested recovery and incident notes.
8 GB
Raspberry Pi 4
1 TB
SSD storage
2
deployment modes
Prometheus, Grafana, Node Exporter and Uptime Kuma
Local-first exposure and least-privilege decisions
A multilingual portfolio treated as a small production system: recruiter-first content, accessible controls, content security policy, responsive QA and exact-artifact deployment.
One portable source, three compatible delivery paths
A transparent macro dashboard that connects liquidity, credit conditions, productive activity and market structure through an Austrian-economics lens, while keeping source health and model limits visible.
Useful junior skills, stated at the right altitude.
My value is not pretending to know everything. It is combining operational discipline, technical foundations and clear communication so senior people can trust what I hand over.
01TRIAGE
Defensive monitoring
Alert prioritisation, source validation, concise reporting, escalation thinking and documented next actions.
CVE · KEV · EPSS · Splunk/SPL foundations
02SYSTEMS
Linux & container operations
Service baselines, Docker deployments, health checks, logs, updates, backup validation and least privilege.
Linux · Bash · Docker · Prometheus · Grafana
03NETWORK
Network visibility
TCP/IP foundations, packet analysis, DNS security awareness, exposure review and defensible diagrams.
Preparing for AWS Cloud Practitioner with attention to IAM, shared responsibility, logging and cost awareness.
IAM · CloudTrail concepts · shared responsibility
06OPS
Operational communication
Customer-facing administration, IT support, documentation, sensitive-data handling, ownership and escalation.
Native English + Spanish · professional Catalan
Selected evidence
Depth without the certificate wall.
The current portfolio contains 37 verifiable learning records. These six are the quickest way to understand the defensive path; the full repositories remain available for deeper review.
My cybersecurity career is new; disciplined operations are not. These roles built the habits behind reliable triage, careful handovers and calm communication.
Relevant experience
2025 — NOW
Administration with practical IT responsibility
Property operations · Menorca
Coordinate incidents, suppliers and stakeholders; handle sensitive records; troubleshoot everyday systems; and keep a written trail when several issues compete for attention.
Triage · ownership · documentation · escalation
2023 — 2025
Airport customer operations
Jet2.com · Menorca Airport
Worked in a time-sensitive, multilingual environment where accurate information, calm decisions and clean escalation mattered to real passengers.
Live operations · customer impact · bilingual communication
2016 — 2021
Senior support work
Residential services · United Kingdom
Managed safeguarding, confidential information, shift handovers and incidents in a role where trust and precise records were non-negotiable.
Sensitive data · handovers · incident records
Education & development
2024
Cybersecurity, Ethical Hacking & Cloud
UpgradeHub · 350-hour full-time bootcamp
Hands-on foundations in ethical hacking, vulnerability analysis, digital forensics, incident response and cloud security.
ONGOING
Blue Team and cloud development
Security Blue Team · TryHackMe · AWS Skill Builder
Continuous lab work in network analysis, forensics, threat intelligence, Splunk foundations, Linux and AWS Cloud Practitioner preparation.
BACKGROUND
Sports Science
Formal education
Kept as academic background—not presented as a cybersecurity credential.
Native English + Spanish
Professional Catalan
EU + UK work rights
Remote-first from Menorca
About
A career transition built on operational habits.
I am moving into cybersecurity from customer-facing operations, administration and practical IT support. That background is not a detour: it taught me to document, prioritise, protect sensitive information and communicate when the situation is messy.
Outside work I build public security projects, run a defensive Raspberry Pi lab and study SOC, incident response, threat intelligence and AWS foundations. I also bring years of live-community experience as a Twitch Partner—useful training in calm communication, troubleshooting and reading a room.
01
Evidence over claims
If I say I built it, there should be a repository, report or lab note.
02
Useful over flashy
The next operational control matters more than another decorative badge.
03
Open, but careful
I value open source, privacy and reproducibility without publishing sensitive lab data.
Contact
Let’s talk about your security team.
I am seeking junior SOC, Blue Team and security operations roles. I am also open to security-adjacent IT operations or NOC positions where monitoring, incident ownership and escalation are central to the work.