visitor@hunterweygandt:~$ |
Build. Break. Secure. Repeat.
visitor@hunterweygandt:~$ whoami|
I’m a Senior Systems Analyst at Meriplex where I work on everything from PC builds and imaging to troubleshooting technical issues and supporting clients on site. A big part of my role is working on two different TAC teams to resolve complex problems, which has taught me how to adapt quickly and communicate effectively under pressure.
What motivates me most is keeping systems reliable and secure. Over time, I’ve built a strong foundation in IT operations and support, and I’m now focused on growing into the cybersecurity field. I completed the Cybersecurity Boot Camp at the University of Denver, where I gained hands-on experience with system security, risk management, and incident response, as well as many tools used in the cybersecurity world. I have further progressed my skill set by creating a home lab to have my own environment to play around in as well as consistently advancing my knowledge by practicing on platforms like TryHackMe.
visitor@hunterweygandt:~$ cat skills.txt|
And many more! For a full list of skills visit my LinkedIn.
visitor@hunterweygandt:~$ cat certs.txt|
For all the details, please visit my LinkedIn.
visitor@hunterweygandt:~$ ls -la projects/|
I built a Proxmox-based cybersecurity lab with Parrot, Kali, HackTheBox, a vulnerable Windows VM, an isolated honeypot network, OSINT focused Kali/Trace Labs tools VM, KASM, OPNSense, and a Wazuh SIEM monitoring stack. I have used this environment to practice OSINT, offensive security, threat detection, and safe malware analysis.
Read the full write-up →I built a deliberately vulnerable Active Directory lab to practice detection engineering across the full initial-access-to-domain-dominance chain. Running on a domain controller, two workstations, and a central Wazuh manager — isolated behind OPNsense on VLAN 60 — it covers seven attacks: Kerberoasting, AS-REP Roasting, Password Spraying, LLMNR/NBT-NS Poisoning, ACL Abuse, Pass-the-Hash, and DCSync. Six are paired with custom Wazuh rules that flag activity the stock ruleset misses; one (LLMNR) required a network sensor because host agents can't see it.
Read the full write-up →Built this site from scratch and documented the whole process: registering a domain, moving DNS to Cloudflare, hosting on GitHub Pages, locking down HTTPS and security headers, and setting up custom email with SPF, DKIM, and DMARC.
Read the full write-up →See more of my projects here →