Welcome to my portfolio!
My name is Matthew Porter, BASc Information Technology, Graduate of Youngstown State University.
"Success is not final, failure is not fatal, it is the courage to continue that counts." -Winston Churchill.
I am a dedicated, detailed-oriented IT Professional who has a passion for Information Security.
- Email: mtporter1997@gmail.com
- Information Technology Specialist
- Avrem Technologies, LLC
- Full-time | March 2023 - October 2023, 8 months | Hybrid
-
Microsoft Certified: Security, Compliance, and Identity Fundamentals
- Credential ID: I635-6978
- Issued by Microsoft
-
(ISC)² Certified in Cybersecurity℠ (CC)
- Credential ID: 1496053
- Issued by (ISC)²
-
Fortinet Certified Associate Cybersecurity
- Credential ID: 7546881372MP
- Issued by Fortinet
-
Fortinet Certified Fundamentals Cybersecurity
- Credential ID: 9395096822MP
- Issued by Fortinet
-
NSE 1 Network Security Associate
- Credential ID: P7n9WSYZFE
- Issued by Fortinet
-
NSE 2 Network Security Associate
- Credential ID: fxPEGqmguF
- Issued by Fortinet
-
NSE 3 Network Security Associate
- Credential ID: KVsGAlztJa
- Issued by Fortinet
- SentinelOne
- I have completed every SentinelOne University course currently offered in October, 2023. I also have eight months of hands-on experience of managing SentinelOne, I am mostly self-taught besides SentinelOne University videos.
-
Microsoft Learn
- Microsoft Learn 30 Day Cloud Skills Challenge: Information Protection Administrator
- I participated in Microsoft Learn's 30 day Cloud Skills Challenge, particularly the Information Protection Administrator path. "Build your skillset to meet the developing needs of your organization. In about 10 hours you’ll learn to create policies and rules for content classification, data loss prevention, governance, and protection with Microsoft 365 information protection services."
- Microsoft Learn 30 Day Cloud Skills Challenge: Information Protection Administrator
-
Capstone Project
- Adapting to Remote Work System Proposal
- Project was to research, create and present a system proposal. My idea was to choose a company that needs to adapt its workforce to work remotely for my system proposal. This project was presented as if I was presenting to a board of directors. Subjects included: Cost-Benefit analysis, Project planning, Training, Installation, Risk Assessment and Project rollout.
- Adapting to Remote Work System Proposal
-
Running Active Directory (VirtualBox/PowerShell) - Mini Corporate Network
- Active Directory - Mini Corporate Network
- Active Directory Administration
- PowerShell: Automated provision, maintaining, and deprovisioning user accounts.
- Setting up Remote Access Server (RAS) features to support NAT/PAT.
- Implementation and maintenance of windows DNS and DHCP services.
- Configuration of Windows File Servers with implementation of quotas and NTFS permissions.
- This was tested by utilizing two virtual machines running Windows Server 2019 and Windows 10 Pro ISOs.
- This test was crucial for me in researching and configuring remote access servers.
- Active Directory Administration
- PowerShell: Automated provision, maintaining, and deprovisioning user accounts.
- Active Directory - Mini Corporate Network
-
Vulnerability Management with Nessus Essentials
- Vulnerability Management
- Installed and configured Nessus Essentials to preform credential vulnerability scans against Windows 10 Hosts.
- Implemented Vulnerability Management Function on sandbox networks:
- Discover, Prioritize, Assess, Report, Remediate, Verify.
- Conducted vulnerability assessments with Nessus; remediated vulnerabilities.
- Developed automated remediation process to preemptively deal with vulnerabilities stemming from windows updates and third-party software.
- Some screenshots from my testing are linked for viewing.
- This project is still ongoing, and may be updated in the future.
- Vulnerability Management
-
Detection and Monitoring
- Detection and Monitoring
- Configured multiple virtual machines to simulate a larger scale infrastructure to learn and practice detection and monitoring in a safe environment.
- Configured pfSense firewall for Network Segmentation & Security.
- Configured Security Onion as an all-in-one IDS, Security Monitoring, and Log Management solution.
- Configured Kali Linux as an attack machine.
- Configured a Windows Server as a Domain Controller.
- Configured Splunk.
- This was a fun project that I configured and set up with guidance I found online. I learned a lot from this project, lots of hands-on experience. This project also helped me prepare for my final semester of university.
- Configured multiple virtual machines to simulate a larger scale infrastructure to learn and practice detection and monitoring in a safe environment.
- Detection and Monitoring
-
File Integrity Monitor
- File Integrity Monitor (FIM)
- Created a concept File integrity Monitor (FIM)
- Created a integrity baseline of target files/folders using the SHA-512 hashing algorithm.
- Continuously made comparison of actual files vs baseline, raised alert if any deviations occurred.
- Sent alerts by various means to allow further investigation of potential compromises.
- This was done in Windows PowerShell ISE.
- This was a lab/project I worked on for a little over a month, on a part time basis.
- Created a concept File integrity Monitor (FIM)
- File Integrity Monitor (FIM)
-
Ransomware Research
- Research - Experiments
- Completed multiple Ransomware experiments over multiple months:
- Programs used: Virtual Box, Visual Studio.
- Multiple source codes for ransomware, Decrypters and Encrypters tested.
- Source codes were in C, C#, C++, and Python.
- Tested for strength, weaknesses for the purpose of understanding, dissection of code and how code operates.
- Ran all ransomware through many anti-malware engines, this includes sandbox observation and signatures detection to observe detectability of ransomware
- THIS PROJECT WAS INTENDED FOR SECURITY RESEARCH AND EDUCATIONAL PURPOSES ONLY.
- Completed multiple Ransomware experiments over multiple months:
- Research - Experiments
-
Keylogger with C# (Research)
- Keylogger
- Experimented with keyloggers to identify strengths and weaknesses.
- Was able to customize several C# source codes with multiple different parameters for keyloggers.
- Experimenting with remote delivery of keylogger and logs automatically emailed from keylogged devices.
- THIS PROJECT WAS INTENDED FOR SECURITY RESEARCH AND EDUCATIONAL PURPOSES ONLY.
- Keylogger
-
Azure Sentinel (SIEM) (Research/Homelab)
- Research
- Used custom PowerShell script to extract metadata from Windows Event Viewer to be forwarded to third party API in order to derive geolocation data.
- Configure Log Analytics Workspace in Azure to ingest custom logs containing geographic information (state/province, country, latitude, longitude).
- Configured custom fields in Logs Analytics Workspace with the intent of mapping geo data in Azure Sentinel.
- Configured Azure Sentinel (Microsoft's Cloud SIEM) workbook to display global attack data (RDP brute force) on world map according to physical location and magnitude of attacks.
- This was done by using the free one year trial version of Azure.
- Research
-
Computer Forensics' Project 1
- Forensic Tool Research - PlainSight
- Research paper detailing the Forensic tool known as PlainSight.
- Forensic Tool Research - PlainSight
-
Computer Forensics' Project 2
- Mock Forensics Report
- Mock forensics' report project. To conduct an efficient and successful investigation, I utilized the forensic tool Autopsy to recover files deleted from the machines in question.
- Mock Forensics Report
-
Computer Forensics' Project 3
- Mock Forensics' Report
- I was tasked to build forensic profiles of two individuals. These forensics profiles will be built upon by using information from the individual’s social media accounts from various social platforms. To create an in-depth forensic profile, I utilized websites such as social-searcher, social mention, wayback and uvrx to gather information and determine a forensic profile.
- Mock Forensics' Report
-
Computer Forensics Final Project
-
Information Assurance Project 2
-
Information Assurance Final Project
-
Google IT Support Professional Certificate
- Issued by Coursera
- "Those who earn the Google IT Support Certificate have completed five-courses, developed by Google, that include hands-on, practice-based assessments and are designed to prepare them for entry-level roles in IT support. They are competent in foundational skills, including troubleshooting and customer service, networking, operating systems, system administration, and security."
-
Foundation Level Threat intelligence Analyst
- Issued by arcX
- Credential ID: 2845d238c7e27fef80d4c50df514aadfdba38133
-
Ransomware Uncovered - Specialist Certificate
- Issued by ICTTF - Cyber Risk Academy
-
CCNAv7: Introduction to Networks - Cisco Networking Academy 1
- Issued by Cisco
- This was when Cisco Network Academy was only two segments, not three segments.
-
Policy Compliance - Foundation
- Issued by Qualys
-
Vulnerability Management - Foundation
- Issued by Qualys
-
- Issued by Qualys
-
Endpoint Detection and Response (EDR) - Foundation
- Issued by Qualys
-
Junior Cybersecurity Analyst Career Path
- Issued by Cisco
-
- Issued by Cisco
-
- Issued by Cisco
-
- Issued by Cisco
-
- Issued by Cisco
-
- Issued by Cisco
-
- Issued by Cisco
-
Networking Devices and Initial Configuration
- Issued by Cisco
-
Google Analytics Individual Qualification
- Issued by Google
Visitor Count
