STATUS: OPEN TO WORK

DEFENSIVE SECURITY / BLUE TEAM

Pierre-François Demai

Junior SOC Analyst — Blue Team & Incident Response

ABOUT

About Me

After nearly seven years in B2B sales and CRM, where I learned to manage high-pressure situations, follow structured processes, and communicate clearly with stakeholders under time constraints, I retrained in cybersecurity through an intensive bootcamp, finishing with a 92% final exam score. I'm now building hands-on blue team experience through investigation-style challenges covering network forensics, incident response, and threat hunting, backed by a homelab where I practice detection and analysis in a realistic environment. I bring the same rigor and client-facing communication skills from sales to the SOC — translating technical findings into clear, actionable reporting.

92%Bootcamp Final Exam Score
20+TryHackMe Blue Team Challenges
1Home SOC Lab

SKILLS

Tools & Tradecraft

SIEM & Detection

  • Splunk (log analysis, search & correlation)
  • SIEM deployment (homelab)
  • Sigma / detection logic basics
  • MITRE ATT&CK (technique mapping)
  • CVE / NVD research (vulnerability analysis)

Incident Response & Forensics

  • Windows event log & PowerShell log analysis
  • Network forensics (Wireshark, tshark)
  • C2 beaconing & DNS tunneling detection
  • Malware triage (PE format, file signature analysis)
  • Malware analysis (VirusTotal, YARA)

Offensive Security

  • Nmap (network scanning & enumeration)
  • Hydra (online password attacks)
  • Hashcat (offline password cracking)
  • Burp Suite (web app testing, OWASP Top 10)

Infrastructure & Networking

  • Proxmox (virtualization)
  • pfSense (firewall/network segmentation)
  • Kali Linux
  • Tailscale (secure remote access)

Certifications & Training

  • ISC2 CC (in progress)
  • CompTIA Security+ (in progress)
  • Ironhack Cybersecurity Bootcamp (2026)
  • TryHackMe — SOC Level 1 path completed

PROJECTS

Featured GitHub Projects

soc-portfolio

A documented collection of TryHackMe blue team investigation challenges — network forensics, Windows endpoint analysis, incident response, phishing, threat hunting, and malware analysis.

TryHackMe Blue Team Digital Forensics Incident Response Markdown
View on GitHub →

homelab-infrastructure

A self-hosted homelab built for hands-on security practice — virtualization, network segmentation, and a SIEM pipeline.

Proxmox pfSense Kali Linux SIEM Tailscale
View on GitHub →

echoleak-ai-attack-analysis

A group research writeup analyzing EchoLeak (CVE-2025-32711), a real zero-click prompt-injection vulnerability disclosed in Microsoft 365 Copilot — breaking down the attack chain and the defensive takeaways for AI-integrated systems.

AI Security Prompt Injection CVE-2025-32711 Threat Research Group Project
View on GitHub →

CONTACT

Let's Talk

Open to Junior SOC Analyst, blue team, and incident response roles.