tungttran.com

>Actively looking · SOC / Blue Team · DMV

Tung Tran

Tungo, Tung's mascot

Hi! I'm a Cybersecurity Analyst based in the DMV. I build labs, analyze traffic, and document incidents/labs — including SOC, Incident Response, and Threat Hunting.

Washington, DMV Security+ Certified US Work Authorized

About Me

Tungo at the art cafe

I’m a self-taught cybersecurity enthusiast with a professional background in the games industry as an illustrator and developer. I naturally find myself learning security best through a hands-on, engineering approach due to my experience building and debugging games.

I shifted my technical curiosity into defensive security by using resources like TryHackMe, HackTheBox, and YouTube. I wanted actual practical experience alongside the theory I learned, so I went on and built my own homelab using a Mini-PC found on Facebook Marketplace.

Initially, I just wanted to host utility services like DNS blocking and a NAS. Eventually, that grew into an obsession with enterprise virtualization—properly configuring logging environments, pen-testing, and running multiple Virtual Machines to simulate real-world cyber attacks and defenses.

Current Focus

I'm currently building a defensive security lab around Wazuh, endpoint telemetry, network monitoring, and attack simulation. I'm also actively learning Splunk to round out my SIEM experience across both open-source and enterprise platforms.

Actively working toward BTL1 (Blue Team Level 1) and Microsoft SC-200 certifications — targeting both by Q3 2026.

My goal is to document not just successful builds, but also learn from contained trial and error 😄.

Certifications & Badges

Formal training and continuing education in security & IT fundamentals.

Certified

CompTIA Security+

CompTIA

Baseline security knowledge across threats, architecture, and operations.

Completed

Python MOOC

University of Helsinki

Programming fundamentals with applied projects in automation and tooling.

Tools I'm Currently Using

Detection & Monitoring

WazuhWiresharkSplunk

Endpoint telemetry, alerting, traffic analysis, and SIEM.

Infrastructure

ProxmoxPi-hole

Virtualization and DNS sinkholing in the homelab.

Offensive Tooling & Assessment

Kali LinuxNessusOpenVAS

Pen-testing distro and vulnerability scanners against lab targets.

Scripting & Data

PythonSQL

Automation, parsers, and log queries.

~/homelab/whoami.sh

Let's Connect

Always down to connect, whether you're in the security space, have a project in mind, or just want to talk!