I am a cybersecurity specialist with expertise in SIEM engineering, EDR deployment, SOC operations, and security automation.
I deploy and tune Splunk, QRadar, Elastic, Wazuh, LogScale, NG SIEM, CrowdStrike, and SentinelOne, write the detection rules that go on top, and automate the triage so alerts turn into answers instead of backlog.
Five plus years in live security operations, including MSSP environments serving clients across the globe.
SIEM ENGINEERING & DEPLOYMENT
- Splunk, IBM QRadar, Elastic SIEM, CrowdStrike NG SIEM and LogScale, Wazuh
- Platform setup, sizing, and log source onboarding
- Parsers, custom detection rules, correlation searches, dashboards
- SIEM to SIEM migrations
EDR & XDR
- CrowdStrike Falcon, SentinelOne, Microsoft Defender, Darktrace
- Agent rollout and policy tuning
- Threat hunting mapped to MITRE ATT&CK
SOC OPERATIONS & INCIDENT RESPONSE
- Alert triage through containment and root cause
- Alert tuning and gap analysis to cut false positives
- Digital forensics with Volatility, Autopsy, Wireshark
- Malware analysis to build detection signatures
SOAR & AUTOMATION
- Playbooks in Splunk SOAR (Phantom), IBM QRadar SOAR (Resilient), Cortex XSOAR, Cortex XSIAM, n8n, Tines
- Python, PowerShell, and Bash for the glue nobody sells a product for
- Recent build cut handling time on repetitive alerts by around 60 percent
AI FOR SECURITY OPERATIONS
- LLM agents that do the first pass on alerts and draft investigation notes
- Automated CVE advisory generation from vendor feeds
- STIX 2.1 threat intel pipelines feeding OpenCTI
VULNERABILITY ASSESSMENT & COMPLIANCE
- Vulnerability assessment with Rapid7 Nexpose and Nessus
- SOC 2 and ISO 27001 control mapping and evidence collection
I ask what your detection gaps actually are before recommending anything. You get working content in your environment and documentation that outlives the contract.
Message me with what you are running and what is breaking. Happy to discuss and jump on a quick call
Subin S.
Linux Infrastructure Engineer | Proxmox/Scale Computing | Wazuh SIEM
Coimbatore, India
$25/hr$25 per hour5.0 (13) 28 jobs $10K+ total earnings
Overview:
I secure and segment the infrastructure businesses cannot afford to lose: industrial control networks, production servers, and the boundary between corporate IT and operational technology. 100% Job Success | Top Rated | 1,700+ hours on Upwork.
Most of my recent work is OT/ICS: designing and building the controlled access path between an enterprise network and a manufacturing environment, so engineers and vendors can reach plant systems without exposing them. I also do the underlying Linux work that makes it hold together, identity, DNS, time, storage, monitoring, and I document it to a standard that survives an audit.
OT / ICS security:
- IT-to-OT network segmentation to the Purdue model (Levels 0-5), aligned to IEC 62443 zone-and-conduit principles
- Brokered remote access for OT: Apache Guacamole broker, DMZ jump hosts, session mediation, no direct IT-to-OT reach
- OT DMZ design and build: controlled realm transition, vendor access mediation, deny-by-default firewall posture
- Separate OT identity infrastructure: Samba Active Directory, BIND9 DNS, chrony NTP, Kea DHCP, independent of corporate IT
- Air-gapped and internet-restricted environments: internal package mirrors, offline patching workflows, no-egress operation
- SCADA/historian platforms: Ignition Gateway, Microsoft SQL Server historians, OT-to-IT one-way data push
- Industrial network hardware: Cisco IE-series switches, Sophos XGS firewalls, VLAN segmentation for production lines
- Vendor remote access control: time-bound, logged, restricted to approved systems
What I deliver:
- Wazuh SIEM/XDR deployment: full setup, agent enrollment, custom rules, dashboards, and alerting across Linux and Windows endpoints
- Server monitoring stacks: Wazuh, Zabbix, Nagios, Grafana, deployed and tuned to cut alert noise
- High availability for infrastructure services: keepalived/VRRP virtual IPs, PostgreSQL replication, HAProxy ingress
- Active Directory integration across Linux and Windows: realmd/SSSD, Kerberos, keytabs, group-based authorisation
- Linux server hardening to production-grade standards (Ubuntu, Debian, CentOS)
- Firewall policy design and enforcement (UFW, iptables, pfSense)
- ZFS storage and immutable backup design: snapshot policy, retention, SMB file services, restore validation
- DNS architecture with failover, DNSSEC, and SPF/DKIM/DMARC for email security
- Virtualization platforms: Proxmox VE, Scale Computing HyperCore, VMware
- Windows Server and SQL Server administration: domain join, role-based access, cumulative update management
- Cloud infrastructure security across AWS, Azure, GCP, and DigitalOcean
- NGINX and Apache optimization for high-traffic environments
- CI/CD pipeline security and infrastructure automation with Docker and Bash
- VAPT: vulnerability assessment & penetration testing, with formal reporting and remediation timelines
- Log analysis, threat detection, and incident response
- Build records, runbooks and validation evidence, every change documented, reversible, and auditable
Recent work:
- Built the controlled access path between an enterprise network and a manufacturing plant: Guacamole access broker, IT-side and OT-side jump hosts, dual-realm Active Directory, and the firewall rule set to go with it. Engineers and vendors reach production systems through one audited, revocable path instead of direct connections.
- Deployed an OT file services platform on Debian with OpenZFS and Samba: six access-controlled shares for PLC projects, vendor files, gauge exports and database backups, with snapshot retention and least-privilege service accounts proven by test rather than assumed.
- Found and fixed a realm-wide time service that had never worked: the NTP servers were synchronised but serving no clients, and the build-time validation checked the wrong side. The site firewall and several infrastructure hosts had been silently unsynchronised for months. Kerberos authentication depends on this.
- Migrated an industrial database platform to a segmented OT zone: Windows Server 2022 and SQL Server 2022, domain-joined, with group-based sysadmin delegation replacing shared credentials, and a documented single revocation point per host.
- Deployed and managed Wazuh SIEM across multi-server environments with real-time alerting and compliance monitoring.
- Handled a live credential-exposure incident: hardcoded admin credentials pushed to a public repository. Full key rotation and git history remediation, zero downstream compromise.
- Delivered a full VAPT engagement for a mid-market client with a structured draft-to-final reporting cycle.
- Rebuilt email security posture (SPF, DKIM, DMARC) for a client domain from a failing state to fully compliant.
Experience includes serving as Cybersecurity & Infrastructure Manager for a venture firm, Senior DNS & Network Security Engineer at a security company, and Infrastructure & Security Consultant for a US-based consulting firm.
I respond within 5 hours.
Dat C.
Hardware Engineer
Ho Chi Minh City, Vietnam
$12/hr$12 per hour5.0 (1) 4 jobs $1K+ total earnings
Hi, I’m a Computer Engineer with a strong background in both Software Development and Hardware/Embedded Systems. I also have experience supporting university labs and working on real-world engineering projects.
I can help you build systems from low-level hardware up to full-stack applications, ensuring everything works reliably and efficiently.
🔹 Hardware & Electrical Engineering
Embedded systems development
Microcontrollers: ESP32, Arduino, STM32, NRF52840
Circuit design, debugging, and troubleshooting
Integration of sensors & actuators
Power systems and hardware reliability
🔹 Robotics & Automation
Robot control systems
Motion control & system coordination
Sensor fusion
Automation and mechatronics systems
🔹 CAD & Mechanical Design
CAD tools: SolidWorks, Fusion 360, AutoCAD
Mechanical part design & 3D modeling
Assembly design and prototyping
Design for Manufacturing (DFM)
🔹 Professional Strengths
Strong engineering mindset
Detail-oriented and reliable
Able to work independently
Problem-solving focused
Good English communication
Stop building static tools. Start deploying high-ROI AI Ecosystems that drive growth.
I help businesses master the new era of search via Generative Engine Optimization (GEO)—building real-time dashboards to track brand citations in Google AI Overviews. My systems also drive direct revenue, like increasing conversion by 12% via automated Retell AI lead-gen flows.
The Competitive Advantage: Velocity-First Engineering
Utilizing Claude Code and Lovable, I architect complex, full-stack AI applications 5-10x faster than traditional development. You get enterprise-grade logic with the speed of a startup—moving from concept to a live, production-ready SaaS in days, not months.
Core Architectural Pillars:
• AI Scraping & Intelligence: Advanced data extraction using Apify, Firecrawl, Browserless, Jina, and DumplingAI. I specialize in bypassing bot detection to feed your AI models.
• Agentic Workflows & n8n: Building autonomous agents in n8n that handle complex multi-step logic, API integrations, and Webhook processing.
• Full-Stack AI Apps: Custom SaaS and internal dashboards built with Lovable, Supabase, and Airtable (Auth, Subscriptions, DB).
• RAG & Vector Intelligence: Integrating Pinecone, Neon, and Supabase Vector to give your AI "long-term memory" and contextual accuracy.
Proven Impact:
📊 GEO & Market Intelligence: Built a system that monitors Google AI search citations in real-time, feeding a live dashboard for SEO agencies via SerpApi + Supabase.
🚀 Conversion Boost: Re-engineered a lead-gen flow with Retell AI & n8n, resulting in a 12% increase in form submissions within 30 days.
Technical Stack:
• Automation: n8n, Make, Zapier, Airtable, Notion, NocoDB.
• AI & Voice: OpenAI, Claude, Retell AI, Vapi, ElevenLabs, HeyGen, Twilio, OpenClaw
• Dev & Architecture: Claude Code, Lovable, Antigravity, JavaScript.
• Scraping & Data: Apify, Firecrawl, Browserless, Jina, DumplingAI, SerpApi.
• Integrations: Custom API Development, Webhooks, Google Apps API (Sheets/Docs/Drive).
• Databases: Supabase, Pinecone, Neon, Postgres.
Ready to architect your system? Click the "Invite" button, and let’s discuss your roadmap.
How it works
Post a job for freePost a job
Tell us what you need. Create your own job post or generate one with AI then filter talent matches.
Hire top talent fast
Consult, interview, and hire quickly, so you can meet the freelancers you're excited about.
Collaborate easily
Use Upwork to chat or video call, share files, and track project progress right from the app.
Payment simplified
Manage payments in one place with flexible billing options. Only pay for approved work, hourly or by milestone.
Don't just take our word for it
“Upwork provides an umbrella-level of security. I can see a talent’s work history and ratings. I can hold payments in escrow. I can communicate through Upwork Messages instead of working through my email address.”
KD
Kim Darling
Verified
Emerald Tiger
“Upwork is the best platform to hire skilled professionals when we're not looking for a full-time employee. All the companies in our portfolio use Upwork to find talent across a wide range of fields.”
DM
David Merry
Verified
Kinetic Investments
“Our very specific requirements can be a challenge—With Upwork, we’re able to access a bigger community to ensure the success of our projects.”
KK
Katja Krohn
Verified
Summa Linguae
How do I hire a Noosh Specialist on Upwork?
You can hire a Noosh Specialist on Upwork in four simple steps:
Create a job post tailored to your Noosh Specialist project scope. We’ll walk you through the process step by step.
Browse top Noosh Specialist talent on Upwork and invite them to your project.
Once the proposals start flowing in, create a shortlist of top Noosh Specialist profiles and interview.
Hire the right Noosh Specialist for your project from Upwork, the world’s largest work marketplace.
At Upwork, we believe talent staffing should be easy.
How much does it cost to hire a Noosh Specialist?
Rates charged by Noosh Specialists on Upwork can vary with a number of factors including experience, location, and market conditions. See hourly rates for in-demand skills on Upwork.
Why hire a Noosh Specialist on Upwork?
As the world’s work marketplace, we connect highly-skilled freelance Noosh Specialists and businesses and help them build trusted, long-term relationships so they can achieve more together. Let us help you build the dream Noosh Specialist team you need to succeed.
Can I hire a Noosh Specialist within 24 hours on Upwork?
Depending on availability and the quality of your job post, it’s entirely possible to sign up for Upwork and receive Noosh Specialist proposals within 24 hours of posting a job description.