Available for remote & research roles

Amirali Ganji Gohari

|

Two years hardening enterprise networks, tuning SIEM rules,
and deploying endpoint security at scale.

Cybersecurity icon
2+yrs ops
4certs
EDRspecialist
scroll
About
Skills
Experience
Credentials
Research
01

About

I'm a cybersecurity specialist with hands-on experience across endpoint security, network hardening, and SIEM operations. At Sana System Pars I manage enterprise EDR/XDR deployments end-to-end — from rollout and policy design through tuning and incident triage — alongside Active Directory and VMware ESXi infrastructure.

My edge is the intersection of operations and automation. I build internal tooling in Python and JavaScript to cut repetitive security tasks, and I use AI-assisted workflows to accelerate threat research and SIEM rule development.

Two years in, still learning every day. But I can own a problem and ship a working solution.

Network Hardening EDR / XDR SIEM Operations Active Directory Virtualization Security Automation
2+
Years in security operations
4
Vendor certifications earned
EDR
Full-stack deployment & support
02

Skills

Core — daily work
EDR / XDRDeploy · Policy · Triage
Network HardeningFirewall · IDS/IPS
Active DirectoryGPO · Users · Security
SIEM ManagementRules · Correlation
VMware ESXiDeploy · Admin · Labs
Proficient
Linux AdminCLI · Scripting
Security AutomationPython · AI-assisted
Access ControlBrowser ext · Safe Boot
Secure Mail GatewayPolicy · Anti-spam
ICS / OT SecurityIndustrial cyber
Developing
Penetration TestingCEH in progress
Malware AnalysisStatic & Dynamic
Ethical HackingIn study
03

Experience

Cybersecurity Specialist

Sana System Pars

Full-time On-site Jan 2025 — Present
  • Deploy, configure, and maintain enterprise EDR/XDR platforms across client environments — covering installation, policy design, alert triage, and ongoing health monitoring.
  • Harden enterprise networks using firewall rules, IDS/IPS tuning, and least-privilege access controls integrated with Active Directory GPO management.
  • Build and maintain personalized SIEM event correlation rules tailored to each client's network architecture, using AI-assisted analysis to speed up rule development.
  • Administer VMware ESXi environments for isolated security testing labs and production infrastructure.
  • Develop internal tooling in Python and JavaScript to automate repetitive security tasks — browser extension restrictions and Safe Boot access controls for non-admin endpoints.
  • Support cross-team threat research by leveraging AI tools to rapidly surface threat intelligence and draft detection logic.
04

Credentials

Degree

BSc Computer Engineering

Azad University · 2025

Systems security, network architecture, software development, databases, and virtualization technologies.

Systems Security Python Virtualization
Planned · 2026–27

MSc Cybersecurity

University TBA

Advanced threat analysis, security architecture, and cross-disciplinary research in cybersecurity and critical infrastructure.

Issued
In Progress
CompTIA Security+Security fundamentals · Risk management
Studying
Certified Ethical Hacker (CEH)Pen testing · Vulnerability assessment
In progress
05

Research

In development

Cross-Platform Cybersecurity in Renewable Energy

A scientific paper exploring security challenges at the intersection of cybersecurity and renewable energy systems — threat modeling for distributed energy resources, smart grid vulnerability assessment, and novel security framework proposals.

  • Cross-platform security analysis for energy systems
  • Threat modeling for distributed energy resources
  • Security framework development & industry standards
Active collaboration

International Research Collaboration

Collaborative work with international companies and institutions combining cybersecurity expertise with renewable energy engineering — developing security solutions for critical energy infrastructure at global scale.

  • International company & institution partnerships
  • Global security standard development
  • Cross-disciplinary methodology & knowledge exchange
06

Get In Touch

Open to remote roles, research collaborations, and interesting security conversations.

Iran · Open to remote
"Security isn't a product,
it's a process." — Bruce Schneier