DENNIS_KIMORATA_CV-1

Published on Aug 18, 2026

DENNIS_KIMORATA_CV-1

DENNIS_KIMORATA_CV-1 - PDF to Presentation

Published on Aug 18, 2026

Description:

KIMORATA DENNIS OLENGODIA Nairobi, Nairobi, Kenya [email protected] +254702005992 www.credly.com/users/dennis-kimorata SUMMARY Dual-certified ISO Lead Auditor (ISO 27001 & ISO 42001) and Top 2% TryHackMe-ranked cybersecurity professional. Expertise in security architecture, GRC, and incident response. Combines strategic compliance mastery with hands-on technical skills in penetration testing, SIEM operations, and threat intelligence. EXPERIENCE Career Break for Academic Completion United States International University-Africa January 2022 - Present, Nairobi, Kenya • Pursued B.S. in Information Systems & Technology with Minor in Forensics & Cybersecurity. Earned dual ISO Lead Auditor certifications (ISO 27001 & ISO 42001) positioning at intersection of traditional information security and emerging AI governance. • • Achieved and maintained Top 2% global ranking on TryHackMe with 150+ completed security challenges across offensive and defensive domains. • Earned 5 additional security certifications from Google, Cisco, Fortinet, and EC-Council. IT Support Engineer Intern United States International University August 2021 - May 2022, Nairobi, Kenya • Implemented database security architecture with end-to-end encryption and RBAC, preventing unauthorized access to 10,000+ student records. • Reduced system vulnerabilities by 60% through proactive monitoring and automated patch management system. • Led incident response for 200+ security events, improving response time by 30%. • Developed automated security checks improving operational efficiency by 25%. IT Support Engineer Intern Jomo Kenyatta University of Agriculture & Technology. January 2021 - August 2021, Juja, Kenya • Engineered secure authentication framework with MFA for 100+ users across 8 departments. • Assisted in incident response for 50+ security events, reducing similar incidents by 35% . • Conducted vulnerability assessments identifying and remediating 15+ critical vulnerabilities. • Delivered cybersecurity training to 30+ staff members on security best practices. SKILLS Core Competencies Security Operations & Incident Response, Vulnerability Assessment & Penetration Testing, System Hardening, Threat Intelligence, Security Architecture Development, Zero Trust Implementation, AI Governance & Auditing Security Tools & Technologies Microsoft Sentinel, Wireshark, Nmap, Snort IDS, Metasploit, Burp Suite, OWASP ZAP, PowerShell, Bash, Python, SQL Frameworks & Standards NIST Cybersecurity Framework ,MITRE ATT&CK ,ISO/IEC 42001: 2023 ,Zero Trust Architecture Systems & Infrastructure Windows Server 2016/2019, Ubuntu, Kali Linux, CentOS, Active Directory Management, Microsoft 365 Security., TCP/IP, DNS, DHCP, VLANs, Firewalls, VPNs, Routing Protocols, AWS Security Fundamentals. Specialized Expertise Digital Forensics, Database Security Architecture, End-to-End Encryption, Access Control Systems, Security Documentation & Compliance, ISMS Implementation, Cross-functional Collaboration CERTIFICATIONS ISO/IEC 42001:2023 Lead Auditor Mastermind Assurance • 2025 ISO/IEC 27001:2022 Lead Auditor Mastermind Assurance • 2025Fortinet Certified Associate Cybersecurity (FCAC) Fortinet • 2025 Google Cybersecurity Professional Certificate Google • 2025 Ethical Hacker Cisco • 2025 Endpoint Security Cisco • 2025 Cybersecurity Attack and Defense Fundamentals EC Council • 2023 Digital Forensics Associate(DFA) EC Council • 2023 Ethical Hacking Essentials (EHE) EC Council • 2023 Network Defense Essentials (NDE) EC Council • 2023 PROJECTS Secure Database Architecture github.com/misc1738/secure-database-architecture Designed comprehensive security system using AES-256 encryption for data-at-rest and TLS 1.3 for data-in-transit, implementing secure key rotation with HashiCorp Vault. • Integrated comprehensive audit logging with automated SIEM integration for real-time threat detection, capturing all database queries, authentication attempts, and configuration changes. • Implemented defense-in-depth architecture including SQL injection prevention, input validation, prepared statements, and connection pooling with rate limiting. • • Technologies: PostgreSQL, Python (SQLAlchemy), HashiCorp Vault, Docker, Redis • Includes comprehensive documentation, deployment scripts, and security best practices guide for enterprise implementation. Network Intrusion Detection System github.com/misc1738/network-intrusion-detection Developed hybrid IDS capable of detecting 20+ common attack patterns including port scans, DDoS attempts, SQL injection, and buffer overflow attacks • • Implemented machine learning anomaly detection using Python (scikit-learn) to identify zero-day threats with 92% accuracy rate • Created real-time alerting system with configurable severity levels and integration with Slack/email notifications • Built web dashboard for visualization of network traffic patterns, threat statistics, and historical attack data using React and D3.js Processes 10,000+ packets per second with less than 5% false positive rate - Technologies: Python, Scapy, scikit-learn, Snort rules, PostgreSQL, React - Deployed in home lab environment monitoring traffic across 15 devices • Threat Intelligence Platform github.com/misc1738/threat-intelligence-platform Built automated threat intelligence collector aggregating data from 8+ open-source feeds (AlienVault OTX, AbuseIPDB, VirusTotal, MISP) and custom sources. • • Implemented correlation engine using Python to identify relationships between indicators of compromise (IOCs), reducing alert fatigue by 45%. • Created customizable dashboards with threat severity scoring, geographic attack visualization, and trending threat actor identification. • Developed RESTful API for integration with SIEM platforms and security tools, enabling automated threat feed updates . • Enriched threat data with MITRE ATT&CK framework mapping for tactical analysis and defense planning . • Technologies: Python (Flask), Elasticsearch, Kibana, Redis, Docker, MISP API. • Database contains 500,000+ IOCs with automated enrichment and deduplication.Zero-Trust-Implementation github.com/misc1738/zero-trust-implementation Designed zero-trust network with micro-segmentation, eliminating implicit trust and enforcing strict identity verification for every access request. • • Implemented continuous authentication and authorization using JWT tokens with 2-minute refresh intervals and device fingerprinting . • Integrated with identity provider (OAuth 2.0) for single sign-on and multi-factor authentication enforcement . • Built continuous monitoring system tracking user behavior, device health, and network anomalies with automated response capabilities. • Reduced potential attack surface by 70% compared to traditional perimeter-based security model . • Technologies: Python, WireGuard, OAuth 2.0, Docker, Kubernetes, Prometheus, Grafana. • Includes complete deployment guide, architecture diagrams, and security policy templates for enterprise adoption. EDUCATION Bachelor of Science, Information Systems & Technology Minor in Forensics & Cybersecurity • United States International University Africa • Nairobi, Kenya. Diploma in Software Engineering Zetech University • Ruiru, Kenya • 2020 AWARDS & HONORS DIGITAL ACCOLADES https://credly.com/users/dennis-kimorata • 10+ verified professional badges from industry-leading vendors (Fortinet, Google, Cisco, EC-Council, Mastermind Assurance). • All credentials independently verifiable via Credly digital badge platform. TRYHACKME ELITE PERFORMER https://tryhackme.com/p/MDCCXXXV111 • Ranked in top 2% of global users (Level 13) with 150 completed security challenges • Demonstrated practical mastery across offensive and defensive security domains • Regularly solve advanced challenges in network security, penetration testing, and digital forensics.