// Cybersecurity Expert & Penetration Tester

REMMY KHAMIS

_

CTI Analyst  ·  Penetration Tester  ·  Cloud Security Engineer
Securing systems. Hunting threats. Building resilience.

Scroll

Remmy Khamis
CompTIA Sec+
ISC2 CC
About Me

Three-Lane Highway Professional

I like to think of myself as a "three-lane highway" professional: one lane paved by my early experience in telecommunications engineering, another strengthened by my expertise in cybersecurity and risk management, and the third grounded in customer service excellence.

🛡
Cybersecurity & Threat IntelligencePenetration testing, ethical hacking, CTI analysis, SOC operations, MITRE ATT&CK, VAPT, incident response
Cloud & Infrastructure EngineeringAzure, AWS, hybrid cloud architectures, SIEM deployment, hardened server configurations
🌐
Telecommunications & Network EngineeringL3VPN, MPLS, IPSec, enterprise firewalls, NOC operations
CompTIA Security+ISC2 CCAWS Cloud AssociateCPTS (Pursuing)CEH (Pursuing)
Member of
ISACAISC2IEEECSFI
📄 View Resume

Core Domains

What I Do

Three interconnected domains — with cybersecurity at the center of everything I build.

01 — Primary Domain
🔐
Cybersecurity & Threat Intelligence

From CTI analysis and MITRE ATT&CK-mapped threat reporting to hands-on penetration testing. Tracking APT campaigns, running VAPT programs, operating SIEM environments, and responding to incidents.

Penetration TestingCTI AnalysisMITRE ATT&CKVAPTSOC OpsIncident ResponseEthical HackingGRC
02 — Secondary Domain
Cloud & Web Hosting Engineering

Architecting and securing cloud environments on Azure and AWS. Hybrid cloud configurations, secure server deployments, SIEM integration, and web application security.

AzureAWSLinux ServersWeb SecuritySIEMCloud Architecture
03 — Tertiary Domain
🏢
Data Center Engineering

Enterprise data center operations with full GRC compliance — ISO 27001, PCI-DSS, BCMS. Led VAPT programs, managed Active Directory, and maintained 99.9% uptime at PAIX.

ISO 27001PCI-DSSActive DirectoryVirtualizationBCMSPowerShell

Career Path

Work Experience

From telecom engineering in Nairobi to cybersecurity research in Connecticut.

Jan 2026 — Present
CTI Analyst
Cyber Security Forum Initiative (CSFI)
  • Produce weekly CTI reports on state-aligned APT campaigns and MENASWA region actors
  • Employ 5+ CTI frameworks including MITRE ATT&CK, Cyber Kill Chain and Diamond Model
  • Synthesize findings from 20–30 OSINT and technical sources per report under 5-day deadlines
  • Research cyber operations attributed to 10+ foreign adversary groups including Iran-aligned threat actors
June 2022 — July 2024
Data Center Engineer
Pan African Internet Exchange (PAIX)
  • Ensured 100% compliance with ISO/IEC 27001, BCMS (ISO 22301), and PCI-DSS through two consecutive audit cycles
  • Established annual VAPT programs; conducted vulnerability scans with Nessus and OpenVAS
  • Monitored SIEM (Wazuh/Elasticsearch) for anomaly detection; led incident response activities
  • Managed Active Directory provisioning, GPO review, and Microsoft 365 security configurations
  • Developed PowerShell automation scripts for reporting, log collection, and administrative tasks
Dec 2020 — May 2022
Customer Service Engineer (Tier 2)
Liquid Telecommunications
  • Delivered L3VPN MPLS, IP Transit, and IPSec tunnel solutions — boosting tailored client solutions by 30%
  • Strengthened security posture using SonicWall, Fortinet, and FortiGate firewalls; improved uptime by 40%
  • Investigated network incidents; conducted root cause analysis and implemented preventive improvements
Sep 2019 — July 2020
Network & Support Engineer
Ryanada Limited
  • Managed Linux and Windows servers; enforced web application security on PHP and SQL platforms
  • Automated administrative tasks with PowerShell and Bash; improved ticketing efficiency by 30%

Portfolio

Featured Projects

Real builds, real results — from cloud-native security labs to AI navigation platforms.

AI / Full-Stack Platform
Maverick AI Navigation System

A full-stack AI navigation platform built for the DARPA LINC challenge. Integrates quantum navigation via Q-CTRL Ironstone Opal, PyTorch RL route optimization, and FALCON safe-zone evaluation.

94.7%
AI Safe Zone Rate
×111
GPS Accuracy Gain
−28%
Fuel Reduction
// Key Benchmarks
  • 94.7% safe zone compliance (AI) vs 61.3% manual baseline — 1.8s recovery vs 12.4s
  • 700km validated quantum navigation with zero INS drift using Q-CTRL Ironstone Opal (2025)
  • 17–28% fuel reduction per flight at scale
DARPA LINCPyTorch RLQuantum NavQ-CTRLFull-Stack
Cybersecurity Lab
Azure SIEM Home Lab

Cloud-based cybersecurity lab on Azure using Microsoft Sentinel. Live honeypot, log forwarding pipeline, and real-time geo-visualization of global login attempts.

// Lab Highlights
  • Deployed Azure VM honeypot to capture live attack data
  • Configured Azure Monitoring Agent forwarding to Log Analytics Workspace and Sentinel
  • Built KQL queries to visualize geo-mapped attack origins
AzureSentinelSIEMHoneypotKQL
Hackathon — Coding Track
NPQ — Spring HackQU '25

Collaborative hackathon project at Quinnipiac University. Also competed in Cyber Track executive breach scenario simulation placing 2nd.

// Cyber Track — 2nd Place
  • Executive-level breach scenario simulation — placed 2nd
  • Crisis comms, board-level risk briefing, and live remediation under pressure
HackathonIncident Response🏆 2nd Place

Events & Community

Hackathons & Conferences

Active in the regional cybersecurity community — from executive CxO forums to hands-on hacking events.

Cybersecurity Conferences
Remmy Khamis at CxO Security Forum NEACS 2024
November 21, 2024  ·  Student Ambassador
NEACS Conference 2024

Organized by CxO Security Forum. Brings together regional Cyber Execs, InfoSec Association leaders, government agency representatives, and industry luminaries.

Remmy Khamis at NEACS 2025 Quinnipiac University
November 13, 2025  ·  Student Ambassador
NEACS Conference 2025

Quinnipiac University — Served as Student Ambassador Volunteer alongside government agency leaders and industry luminaries.

Hackathons
MLH Event Hack New Haven 2025
Hack New Haven '25

New Haven's premier 24-hour MLH hackathon at the University of New Haven. Sponsored by Microsoft, FactSet, and IBM.

Remmy Khamis with John Hammond at BSides CT 2025 BSides CT 2025 swag and materials
BSides CT '25

Connecticut's community-driven security conference with CTF competitions, workshops, and elite speakers.

🎤 John Hammond — Guest Speaker 🤖 Trey Robison (HTB) — AI Red Teaming
Spring HackQU 2025
Cybersecurity Hackathons @ Quinnipiac

Competed in Spring HackQU coding track and Cyber Track executive breach scenario simulation.

🏆 Cyber Track — 2nd Place
Coding Track Repo →

CTF & HTB

CTF Write-Ups

Active on Hack The Box pursuing CPTS. Write-ups for retired machines and CTF challenges on GitHub.

HTB
Active Profile
CPTS
In Progress
CEH
Pursuing
CTF
Competitor
HTB Write-Ups & Notes
View All Write-Ups on GitHub →

My Vision

Where I am Headed

Cybersecurity is not just about defending systems — it is about understanding the human, technical, and geopolitical forces that shape the threat landscape. My mission is to operate at that intersection: combining deep technical expertise with strategic intelligence to stay ahead of adversaries.

Currently pursuing CPTS from Hack The Box and CEH from EC-Council.

Long-term: threat intelligence at scale, building security programs across the African tech ecosystem, and pushing the boundaries of AI-assisted security operations.

LinkedIn Profile GitHub Portfolio

Skill Proficiencies

Penetration Testing
Threat Intelligence
Cloud Security
SIEM / SOC
Network Security
GRC / Compliance
Python / Scripting
Ethical Hacking

Tools Arsenal

MetasploitBurp SuiteNmapNessusWiresharkOpenVASWAZUHSentinelCyberArkFortinetMITRE ATT&CKSTIX/TAXII

Get In Touch

Let us Connect & Collaborate

Open to cybersecurity roles, research collaborations, CTF teams, and speaking opportunities.