About
Security Operations Analyst | Detection Engineering
Nathan Gomes Ferreira
With this blog, I want to share a part of the work I do on my spare time exploring security operations, detection engineering, and threat research.
I've learned a lot from the infosec community and my objective is to give back however I can. I'm not an expert - just someone who enjoys learning and sharing the journey.
Expertise
Detection Engineering
Designing high-fidelity detection rules aligned with MITRE ATT&CK. Behavioral analytics, correlation queries, and false positive reduction.
Threat Hunting
Proactive threat hunting using EDR telemetry and SIEM data. Identifying IOCs, lateral movement, and advanced persistent threats.
SIEM Administration
End-to-end SIEM deployment and administration. CrowdStrike LogScale, Splunk, Elastic, Microsoft Sentinel, and Google Chronicle.
Offensive Research
Understanding adversary tradecraft to build better defenses. Red team tactics, adversarial ML, and attack simulation.
Certifications
CrowdStrike SIEM Engineer
CCSE January 2026CompTIA Security+
SY0-701 2025CrowdStrike Falcon Responder
CCFR 2025Network Security Practitioner
CNSP 2025CyberSecurity Analyst
C3SA 2025Red Team Analyst
CRTA 2025Network Essentials
Cisco 2022Technical Skills
SIEM & EDR
Security Operations
Frameworks
Technical
Education
Professional Specialization in Data Science
Unicamp (State University of Campinas)Machine Learning, MLOps, Data Architecture - Applied to cybersecurity
Postgraduate in Offensive Cybersecurity
Acadi-TIAssociate in Information Technology
Estacio UniversitySpeaking & Achievements
CrowdStrike Invited Speaker
"Next-Gen SIEM Use Cases" - Co-presented with CrowdStrike LATAM leadership on Falcon LogScale implementation, CQL query patterns, and ATT&CK-aligned detection strategies.
August 2025Let's Connect
Interested in discussing security research, detection engineering, or collaboration opportunities?