Building enterprise-grade security infrastructure for organizations across Central America. Threat detection, SIEM architecture, and SOC automation — from design to production.
I'm a Security Operations Engineer based in Costa Rica, building and operating security infrastructure for Techpro — a Managed Security Service Provider serving enterprise clients across Central America.
My work spans the full security stack: designing multi-node Elasticsearch SIEM clusters, deploying EDR solutions across client environments, engineering SOAR playbooks that reduce response time, and writing Python automation that ties it all together.
What sets me apart is the business angle — I'm also pursuing a Bachelor in Business Administration, which means I translate security risk into executive language, not just technical jargon.
When I'm not in the terminal I enjoy deep-strategy board games — Pipeline and Food Chain Magnate — where the same systems-thinking mindset applies.
Building the Security Operations Center from the ground up for a Managed Security Service Provider serving enterprise clients across Central America. Full responsibility for the security infrastructure stack — architecture through daily operations.
Designed and deployed multi-node Elasticsearch 8.x SIEM clusters with tiered hot/warm/cold storage, TLS encryption, and custom ILM policies. Built SOAR automation in Shuffle, deployed Trellix/FireEye EDR across client endpoints, authored Wazuh detection rules, and developed Python tooling for log correlation, fraud detection, and automated ticket management across GLPI and Jira.
Authored a 25-part MSSP business plan targeting SMBs in the region, covering open-source security architecture, pricing models, and compliance frameworks including PCI-DSS, SOC 2, and ISO 27001.
Open to discussing security architecture, consulting opportunities, or just talking shop about SIEM clusters and SOC automation. Based in Costa Rica — available remotely.