About
I work where security operations, governance, and engineering meet.
I'm Swaraj Singh, a cybersecurity practitioner interested in making security work clearer, more repeatable, and easier to act on.
My current work spans threat investigation, risk and compliance programmes, and automation for security teams.
Current direction
Areas of focus
- 01
Security operations
Threat hunting, alert triage, incident response, and translating technical findings into useful escalation context.
- 02
Governance and risk
Practical policy, control mapping, audit support, and risk documentation grounded in how systems are actually operated.
- 03
Security engineering
Small, reusable tools that make vulnerability research, evidence collection, and remediation workflows easier to repeat.
Toolkit
- MITRE ATT&CK
- Microsoft Sentinel
- Splunk
- NIST CSF 2.0
- ISO 27001
- Python
- PowerShell
- Terraform
- Docker
- Checkov
