Parker Rubin

Parker Rubin

Computer science student focused on cybersecurity and blue team operations

Boca Raton, Florida

About

I'm a Computer Science student at FAU with experience as a SOC Analyst intern, working across alert triage, incident response, and system level tooling. I care about both sides of the fence: blue team detection and response, and the offensive thinking that makes a detection rule worth writing in the first place, since you can't catch what you don't understand.

That's part of why I build instead of just use. SentryOS, a full EDR platform with an AI-assisted triage layer, taught me more about real detection engineering than any single course did. I'm especially interested in DFIR, blue team operations, and figuring out where AI actually earns a place in a security workflow, not bolted on for the sake of it.

Projects

SentryOS - building an EDR from the ground up

SentryOS is an endpoint detection and response platform I designed, built, and now actually run: a Windows agent, a backend that decides what's worth flagging, and a console my friends log into to see their own machines, and nobody else's.

SOC Competition Scripts

A blue-team toolkit built for CCDC-style competitions: PowerShell scripts for firewall hardening, point-in-time system snapshots, and full triage (process/PID correlation, persistence checks, targeted security event review). Built to harden Windows hosts fast without breaking scoring, with rollback built in at every step.

Certifications

Employer sponsored capstone certification for incident response partners. Covered Deep Visibility (S1QL) threat hunting, Storyline based investigation, Singularity blocklist and exclusion administration, incident handling workflows, and false positive tuning across the SentinelOne EDR platform.

  • Threat Hunting I: Hunting in Ops Center, Feb 2026
  • Troubleshooting Windows Agent Interoperability Issues, Mar 2026
  • Troubleshooting Endpoint Performance Issues, Mar 2026
  • Singularity Administration: Managing Blocklists and Exclusions, Mar 2026
  • Incident Response: Incident Handling with the Singularity Platform, Mar 2026
  • Incident Response: Tuning to Reduce False Positives with SentinelOne, Mar 2026

Six badge cybersecurity certificate track covering governance and risk, vulnerability management, system and network security, cloud security, security operations, and incident response and forensics. In progress.

  • Governance, Risk, Compliance, and Data Privacy, Jul 2026
  • Vulnerability Management, Jul 2026
  • System and Network Security, Jul 2026

First course in the Google Cybersecurity Certificate. Introduces the cybersecurity profession, including entry level analyst responsibilities and core skills, the events that shaped the field, and the CIA triad. Covers the CISSP eight security domains, common security frameworks and controls, security ethics, and the tools cybersecurity analysts use day to day.

Microsoft and LinkedIn, in progress. Covers the CIA triad and core information security principles, cybersecurity threats including malware, phishing, social engineering, and identity theft, governance risk and compliance, the cloud shared responsibility model, defense in depth, zero trust, identity and access management, Azure security services, Microsoft Security Copilot for incident analysis, and Microsoft's endpoint, data governance, and threat intelligence solutions.

Contact