Hello, I'm

Naol Mengistu

Information Security | System Administration | DevSecOps

LinkedIn profile Github profile

Get To Know More

About Me

Profile picture
Experience icon

Professional Experience

  • System Administrator
  • IT Support
Education icon

Education

  • M.Sc. in Information Security
  • B.Sc. in Computer Science

Information Security professional holding a Master's in Information Security from Stockholm University and a Bachelor's in Computer Science. I currently work as a System Administrator, managing backend infrastructure, Debian Linux servers, and security protocols for a Freedom of Information platform. With over 3 years of experience in technical support and quality analysis, I combine hands-on skills in DORA and ISO 27001 compliance, Compliance-as-Code practices, and cloud security. I actively build enterprise-grade home labs involving Active Directory, pfSense, and automation scripts to stay sharp in defensive and infrastructure operations.

Arrow icon

Explore My

Key Skills

Security Operations & Threat Detection

Experience icon

SIEM Analysis (Splunk)

Experience icon

Vulnerability Scanning (Nessus, Nmap)

Experience icon

Network Analysis (Wireshark)

Experience icon

Incident Response & Forensics

System Administration & Infrastructure

Experience icon

Debian Linux Administration

Experience icon

Active Directory & GPO

Experience icon

Docker & Containerization

Experience icon

Bash & PowerShell Automation

DevSecOps & Compliance

Experience icon

DORA, ISO 27001 & GDPR

Experience icon

Compliance-as-Code (Python)

Experience icon

Cloud Security (AWS & GCP)

Experience icon

Git & CI/CD Pipelines

Arrow icon

Browse My Recent

Featured Projects

Cybersecurity Home Lab

Cybersecurity Home Lab

A virtual SOC environment leveraging Splunk, Wireshark, and Kali Linux to practice threat detection, incident response, and log analysis. This project demonstrates hands-on cybersecurity skills and a practical approach to network and system security.

AWS Security Scanner

AWS Security Scanner

A Python-based tool developed for my master's thesis to detect misconfigurations in AWS IAM, S3, EC2, and VPC using the Boto3 SDK. It maps issues to DORA compliance standards, and automates cloud security audits for financial environments.

YouTube Cleanup Extension

YouTube Cleanup Extension

A Chrome extension that cleans up YouTube, hides Shorts & Members-only content, restores dislike counts, sets your preferred video quality automatically, and enables Picture-in-Picture with a keyboard shortcut Alt+P. Read the security thinking behind why I built it on my blog.

Enterprise Sysadmin Home Lab

Sys Admin Home Lab

A fully virtualized enterprise network simulating real-world infrastructure. Features a segmented LAN/WAN environment secured by pfSense (with Suricata IDS/IPS), Active Directory on Windows Server 2022 for IAM, and Linux/Windows interoperability. Managed via PowerShell and Bash automation scripts.

Arrow icon

Read My Latest

Featured Articles

Browser Extensions and the Trust Lifecycle

A security-focused reflection on how browser extensions accumulate trust over time, why silent updates change the risk model, and how reducing dependency surface led me to build NeatTube.

What My Master's Thesis on DORA Taught Me

A personal reflection on building a DORA compliance scanner and learning to translate the abstract language of regulation into the concrete world of code.

Building an Enterprise SysAdmin Home Lab

Learn how to build a production-grade virtualized lab environment that teaches network security, identity management, Linux administration, and defensive security operations.

Arrow icon

Get in Touch

Contact Me

Email

LinkedIn icon

LinkedIn