Skip to content
View mello-io's full-sized avatar
🎯
Focusing
🎯
Focusing

Block or report mello-io

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
mello-io/README.md

Hello there !! Let's Connect!☕💬


👨🏻‍💻 Security File : [DECLASSIFIED]

type:             public_trust
name:             Derick Dmello
located_in:       New York
status:           Open to → SOC | GRC | DFIR roles
industry:         Public Sector & Higher Ed. Cyber Defence

education:
  - "Self-taught Red Teamer with a core focus on Cyber Defence"
  - "🎓 M.S. Digital Forensics & Cyber Security"
  - "🎓 B.S. IT Infrastructure Management & Cyber Security"

fields_of_interest:
  - "Security Operations (SOC Tier 1–3)"
  - "Incident Response & Digital Forensics (DFIR)"
  - "Governance, Risk & Compliance (GRC)"
  - "Cyber Threat Intelligence & OSINT"
  - "Cloud Security & DevSecOps"

technical_background:
  - "Threat Detection, Log Correlation & SIEM Engineering"
  - "IR Playbook Development & Root Cause Analysis"
  - "Security Compliance → NIST CSF/800-53, CIS, ISO 27001, ISO 42001, SOC2, PCI-DSS"
  - "Vulnerability Assessment & Adversary Simulation"
  - "Sandboxing, Virtualization & Homelab Infrastructure"

currently_building:
  - "SIEM detection rule library (Splunk + Elastic)"
  - "AI assited IR scripts"
  - "ATT&CK-mapped homelab threat simulation environment"

2026_goals:
  - "Ship 3+ public security engineering projects"
  - "Contribute to open-source threat intel tooling"
  - "Earn CISA / CISSP"

📊 GitHub Activity


🔬 Featured Projects

Project Description Status
🚨 S.I.R.T. AI-powered SOC analyst assistant generating stack-specific, MITRE ATT&CK-tagged IR checklists. Live at sirt-five.vercel.app 🟢 Live
🏢 ResolvX GRC A complete end-to-end GRC program for a fictional mid-size fintech SaaS service organization 🟢 Active
🐍 Mini-PySec Projects Python security tool suite — offensive & defensive, built through full SDLC 🟢 Active
🏗️ Homelab Enterprise IT Simulated enterprise IT environment for detection & response testing 🟢 Active
📡 SIEM Detection Library Splunk & Elastic detection rules mapped to MITRE ATT&CK 🔨 In Progress

🧰 Toolkit

Security Ops Splunk   Elastic Stack   MS Sentinel   Wazuh   CrowdStrike Falcon   The Hive   MITRE ATT&CK   Nessus   OpenVAS
DFIR Autopsy   Volatility   KAPE   FTK Imager   Redline   Belkasoft X   Wireshark   CAINE
Network & Infra Cisco   Checkpoint NGFW   Active Directory   VPN / IDS / IPS   VMware ESXi   Entra ID
Compliance NIST CSF   NIST 800-53   NIST 800-37   ISO 27001:2022   ISO 42001:2023   PCI-DSS   HIPAA   SOC 2   Vanta   RSA Archer

"Security is not a product, but a process." – Bruce Schneier

Pinned Loading

  1. Operations-in-Cyber-Defense-I Operations-in-Cyber-Defense-I Public

    This academic project explores defensive cybersecurity operations through practical implementation of Security Operations Center (SOC) workflows and Network Security Monitoring (NSM)

    1

  2. Operations-in-Cyber-Defense-II Operations-in-Cyber-Defense-II Public

    This project demonstrates Digital Forensics and Incident Response (DFIR) methodologies in enterprise Security Operations Centers.

  3. ResolvX-GRC-Program ResolvX-GRC-Program Public

    A complete end-to-end GRC program for a fictional mid-size fintech SaaS service organization "ResolvX".

    HTML

  4. Mini-PySec-Projects Mini-PySec-Projects Public

    Small scale locally deployable python projects for offensive and defensive security.

    Python

  5. Enterprise-IT-Infrastructure-Lab Enterprise-IT-Infrastructure-Lab Public

    Enterprise grade IT infrastructure home lab.