I lead the SOC at Omarino IT Services, an MSSP running security operations across a multi-tenant client portfolio. Behind that, four-plus years of blue-team work in enterprise environments — security operations, incident response, and the data-protection controls underneath both.
The work is Microsoft-first: Sentinel, Defender XDR, Purview, Entra. I deploy the stack, write the detections that run on it, and lead the response when they fire. The part that matters most is the part people skip — tuning a rule until an analyst actually trusts it, and writing the runbook so the next person does not have to rediscover the investigation.
Before any of it I was a competitive athlete — swimming from the age of eight, then four years on Syria’s national triathlon team. I still officiate. The habit transferred further than the sport did: show up, measure, repeat until it holds under load.
NOW
SOC Lead, Omarino IT Services
BASED
Aleppo, Syria · Remote
EDUCATION
B.Sc. Computer Engineering, 2024
LANGUAGES
Arabic native · English professional
01EXPERIENCE3 ROLES · 4+ YEARS
FEB 2023
FEB 2026
Cyber Security Analyst
DEFENDLAB · REMOTE · UAE
INCIDENT MANAGEMENT
Monitored, investigated and responded to security incidents across SIEM and EDR platforms, consistently meeting SLA targets for triage and escalation.
VULNERABILITY & PATCH MANAGEMENT
Conducted comprehensive vulnerability assessments using Qualys and coordinated patching cycles to reduce organisational attack surface.
EMAIL THREAT ANALYSIS
Investigated and remediated phishing campaigns — analysing headers, sender reputation, malicious URLs and attachments to identify IOCs and prevent account takeover.
FEB 2026
MAY 2026
Security Operations Engineer
VCG MARKETS · REMOTE · UAE
SECURITY ARCHITECTURE & ENGINEERING
Managed end-to-end deployment and configuration of the Microsoft E5 Security Stack across Azure — endpoints, identities, cloud and email brought under one coverage model.
DATA PROTECTION & COMPLIANCE
Architected Microsoft Purview DLP policies and Insider Risk Management workflows to prevent unauthorised data exfiltration across cloud and endpoint channels.
RISK MANAGEMENT & REPORTING
Maintained the organisational risk register in line with ISO 27001, contributed to audit-readiness documentation, and produced executive-level incident reports.
MAY 2026
PRESENT
SOC Lead
OMARINO IT SERVICES · REMOTE · GERMANY
Lead SOC operations and security engineering for a multi-tenant portfolio inside a growing MSSP — setting the strategy and running the execution behind cyber defence, threat detection and incident response across client infrastructure.