Skip to content
View DustyMMiller's full-sized avatar
  • Proofpoint

Block or report DustyMMiller

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
DustyMMiller/README.md

Hi there 👋

Hello, I am Dusty Miller. I am a Detection Analyst at Proofpoint and enjoy creating detections and writing automation tooling to make mine and other people's jobs easier.

Professional Journey

I started working in technology on the help desk, moved into security in a Security Operations Center, and from there started working on automation tooling and detection engineering.

Skills

  • Yara, Suricata, Snort, Sigma and Clam Detection Engineering
  • Python 3 and Golang Development
  • MITRE ATT&CK Framework and how it relates to detections
  • Splunk and Splunk SOAR with various custom integrations
  • Kubernetes and Docker for containerized tools and infrastructure

Certifications

  • Certified Kubernetes Administrator
  • Splunk Enterprise Security Administrator
  • Splunk Phantom Certified Administrator

Connect with Me

🔗 You can find me on LinkedIn, Mastodon, or here on GitHub.

Popular repositories Loading

  1. Splunking_with_Sysmon_Detections Splunking_with_Sysmon_Detections Public

    6

  2. Sysmon Sysmon Public

    PowerShell 5

  3. SysmonBeaconing SysmonBeaconing Public

    A powershell script that can find beaconing on an endpoint that is running Sysmon and logging DNS (Event ID 22) and Network Connections (Event ID 3)

    PowerShell 4

  4. Splunk_Sysmon_Searches Splunk_Sysmon_Searches Public

    Searches for Sysmon Tuning with Splunk

    1

  5. Scripts Scripts Public

    Powershell scripts for troubleshooting and hardening.

    PowerShell 1

  6. SysmonDeepDive SysmonDeepDive Public

    The slides from my IntroSec Con talk.