
METHOD
How I work
I start with a specific question, narrow its scope, build something testable and document my decisions, including hypotheses that do not hold up. I follow the same approach when investigating an alert.
- Based in
- Burgos, Spain · open to relocation within Spain / EU
- Education
- Computer Engineering · University of Burgos
- Focus
- Blue Team / SOC, supported by software development
- Certification
- TryHackMe Security Analyst Level 1 (SAL1) ↗
SKILLS
Tools
Detection and analysis
Splunk · Elastic · SPL/KQL · Sigma · Wireshark · Sysmon · MITRE ATT&CK
Systems and networks
Linux · Windows · Active Directory · TCP/IP · DNS · HTTP
Development
Python · TypeScript · SQL · Docker · GitHub Actions · Next.js
JOURNEY
Milestones
Degree in Computer Engineering
University of Burgos.
TryHackMe
Over 220 rooms (hands-on exercises) completed, top 2% worldwide (Sep 2026) and the SOC Level 1 path.
View profile ↗EcoVid · Final-year project
Hyperspectral imaging to detect and quantify copper on vine leaves.
View in my CV →SOC-Simulator
A personal SOC lab with 30 triage, investigation and response scenarios using synthetic telemetry.
Open case file →SAL1 certification
TryHackMe Security Analyst Level 1 (SAL1): TryHackMe's practical SOC analyst certification, with triage and investigation simulations.
View certifications →Seeking my first role as a Tier 1 SOC Analyst
I am looking for my first opportunity as a junior SOC analyst to keep learning detection, investigation and incident response.