DENNIS_KIMORATA_CV-1 - PDF to Presentation
Published on Aug 18, 2026
Description:
KIMORATA DENNIS OLENGODIA
Nairobi, Nairobi, Kenya [email protected] +254702005992 www.credly.com/users/dennis-kimorata
SUMMARY
Dual-certified ISO Lead Auditor (ISO 27001 & ISO 42001) and Top 2% TryHackMe-ranked cybersecurity professional. Expertise in security
architecture, GRC, and incident response. Combines strategic compliance mastery with hands-on technical skills in penetration testing, SIEM
operations, and threat intelligence.
EXPERIENCE
Career Break for Academic Completion
United States International University-Africa January 2022 - Present, Nairobi, Kenya
• Pursued B.S. in Information Systems & Technology with Minor in Forensics & Cybersecurity.
Earned dual ISO Lead Auditor certifications (ISO 27001 & ISO 42001) positioning at intersection of traditional information security and emerging
AI governance.
•
• Achieved and maintained Top 2% global ranking on TryHackMe with 150+ completed security challenges across offensive and defensive domains.
• Earned 5 additional security certifications from Google, Cisco, Fortinet, and EC-Council.
IT Support Engineer Intern
United States International University August 2021 - May 2022, Nairobi, Kenya
• Implemented database security architecture with end-to-end encryption and RBAC, preventing unauthorized access to 10,000+ student records.
• Reduced system vulnerabilities by 60% through proactive monitoring and automated patch management system.
• Led incident response for 200+ security events, improving response time by 30%.
• Developed automated security checks improving operational efficiency by 25%.
IT Support Engineer Intern
Jomo Kenyatta University of Agriculture & Technology. January 2021 - August 2021, Juja, Kenya
• Engineered secure authentication framework with MFA for 100+ users across 8 departments.
• Assisted in incident response for 50+ security events, reducing similar incidents by 35% .
• Conducted vulnerability assessments identifying and remediating 15+ critical vulnerabilities.
• Delivered cybersecurity training to 30+ staff members on security best practices.
SKILLS
Core Competencies
Security Operations & Incident Response, Vulnerability Assessment & Penetration Testing, System Hardening, Threat Intelligence, Security
Architecture Development, Zero Trust Implementation, AI Governance & Auditing
Security Tools & Technologies
Microsoft Sentinel, Wireshark, Nmap, Snort IDS, Metasploit, Burp Suite, OWASP ZAP, PowerShell, Bash, Python, SQL
Frameworks & Standards
NIST Cybersecurity Framework ,MITRE ATT&CK ,ISO/IEC 42001: 2023 ,Zero Trust Architecture
Systems & Infrastructure
Windows Server 2016/2019, Ubuntu, Kali Linux, CentOS, Active Directory Management, Microsoft 365 Security., TCP/IP, DNS, DHCP, VLANs, Firewalls,
VPNs, Routing Protocols, AWS Security Fundamentals.
Specialized Expertise
Digital Forensics, Database Security Architecture, End-to-End Encryption, Access Control Systems, Security Documentation & Compliance, ISMS
Implementation, Cross-functional Collaboration
CERTIFICATIONS
ISO/IEC 42001:2023 Lead Auditor
Mastermind Assurance • 2025
ISO/IEC 27001:2022 Lead Auditor
Mastermind Assurance • 2025Fortinet Certified Associate Cybersecurity (FCAC)
Fortinet • 2025
Google Cybersecurity Professional Certificate
Google • 2025
Ethical Hacker
Cisco • 2025
Endpoint Security
Cisco • 2025
Cybersecurity Attack and Defense Fundamentals
EC Council • 2023
Digital Forensics Associate(DFA)
EC Council • 2023
Ethical Hacking Essentials (EHE)
EC Council • 2023
Network Defense Essentials (NDE)
EC Council • 2023
PROJECTS
Secure Database Architecture
github.com/misc1738/secure-database-architecture
Designed comprehensive security system using AES-256 encryption for data-at-rest and TLS 1.3 for data-in-transit, implementing secure key
rotation with HashiCorp Vault.
•
Integrated comprehensive audit logging with automated SIEM integration for real-time threat detection, capturing all database queries,
authentication attempts, and configuration changes.
•
Implemented defense-in-depth architecture including SQL injection prevention, input validation, prepared statements, and connection pooling
with rate limiting.
•
• Technologies: PostgreSQL, Python (SQLAlchemy), HashiCorp Vault, Docker, Redis
• Includes comprehensive documentation, deployment scripts, and security best practices guide for enterprise implementation.
Network Intrusion Detection System
github.com/misc1738/network-intrusion-detection
Developed hybrid IDS capable of detecting 20+ common attack patterns including port scans, DDoS attempts, SQL injection, and buffer overflow
attacks
•
• Implemented machine learning anomaly detection using Python (scikit-learn) to identify zero-day threats with 92% accuracy rate
• Created real-time alerting system with configurable severity levels and integration with Slack/email notifications
• Built web dashboard for visualization of network traffic patterns, threat statistics, and historical attack data using React and D3.js
Processes 10,000+ packets per second with less than 5% false positive rate - Technologies: Python, Scapy, scikit-learn, Snort rules, PostgreSQL,
React - Deployed in home lab environment monitoring traffic across 15 devices
•
Threat Intelligence Platform
github.com/misc1738/threat-intelligence-platform
Built automated threat intelligence collector aggregating data from 8+ open-source feeds (AlienVault OTX, AbuseIPDB, VirusTotal, MISP) and
custom sources.
•
• Implemented correlation engine using Python to identify relationships between indicators of compromise (IOCs), reducing alert fatigue by 45%.
• Created customizable dashboards with threat severity scoring, geographic attack visualization, and trending threat actor identification.
• Developed RESTful API for integration with SIEM platforms and security tools, enabling automated threat feed updates .
• Enriched threat data with MITRE ATT&CK framework mapping for tactical analysis and defense planning .
• Technologies: Python (Flask), Elasticsearch, Kibana, Redis, Docker, MISP API.
• Database contains 500,000+ IOCs with automated enrichment and deduplication.Zero-Trust-Implementation
github.com/misc1738/zero-trust-implementation
Designed zero-trust network with micro-segmentation, eliminating implicit trust and enforcing strict identity verification for every access
request.
•
• Implemented continuous authentication and authorization using JWT tokens with 2-minute refresh intervals and device fingerprinting .
• Integrated with identity provider (OAuth 2.0) for single sign-on and multi-factor authentication enforcement .
• Built continuous monitoring system tracking user behavior, device health, and network anomalies with automated response capabilities.
• Reduced potential attack surface by 70% compared to traditional perimeter-based security model .
• Technologies: Python, WireGuard, OAuth 2.0, Docker, Kubernetes, Prometheus, Grafana.
• Includes complete deployment guide, architecture diagrams, and security policy templates for enterprise adoption.
EDUCATION
Bachelor of Science, Information Systems & Technology
Minor in Forensics & Cybersecurity • United States International University Africa • Nairobi, Kenya.
Diploma in Software Engineering
Zetech University • Ruiru, Kenya • 2020
AWARDS & HONORS
DIGITAL ACCOLADES
https://credly.com/users/dennis-kimorata
• 10+ verified professional badges from industry-leading vendors (Fortinet, Google, Cisco, EC-Council, Mastermind Assurance).
• All credentials independently verifiable via Credly digital badge platform.
TRYHACKME ELITE PERFORMER
https://tryhackme.com/p/MDCCXXXV111
• Ranked in top 2% of global users (Level 13) with 150 completed security challenges
• Demonstrated practical mastery across offensive and defensive security domains
• Regularly solve advanced challenges in network security, penetration testing, and digital forensics.