REYNALDO
RODRIGUEZ

> █

Cybersecurity graduate from FIU, currently doing vulnerability assessment and web application penetration testing as a Cybersecurity Intern at PreCog Security. Driven by the gap between what scanners catch and what humans find.

reynaldo@kali: ~

01. whoami

I'm Reynaldo — a Cybersecurity graduate from Florida International University (B.S., GPA 3.75, Dean's List, class of 2026). Bilingual in English and Spanish, based in Miami.

I'm currently a Cybersecurity Intern at PreCog Security, a penetration testing firm, where I run vulnerability assessments and support web application pentesting and network scanning engagements.

My focus is the overlap between automated scanning and manual testing. On my senior capstone I led a 5-person team as Cloud Security Architect and we showed ~40% of findings — including 3 of 4 Criticals — were only caught by humans. Tools tell you where to look; analysts tell you what it means.

Outside of work I run SoulHomeLab, a 34-stack zero-trust self-hosted environment I designed, secured, and wrote a 91-page architecture guide for. I break things on purpose so I can fix them on purpose.

locationMiami, FL
educationFIU — B.S. Cybersecurity, 2026
gpa3.75 / Dean's List
currentIntern @ PreCog Security
focusvuln assessment, web app testing, GRC
languagesEnglish, Spanish

02. projects

Cloud Security Architect & Team Lead

VulNerd // Spring 2026 · FIU

PythonGoogle GeminiNessus DockerRaspberry Pi 5DVWA TailscaleMariaDB

A web app that turns raw Nessus scan exports into graded security report cards in plain English — with prioritized remediation steps and a built-in AI assistant that has full context on the uploaded scan.

  • Led a 5-person team building VulNerd — raw Nessus exports in, graded plain-English report cards out, with prioritized remediation and an AI chat assistant scoped to the uploaded scan (Python, Google Gemini).
  • Delivered industry-specific compliance dashboards mapping findings to HIPAA, PCI DSS, NIST 800-53, FERPA, and CIS Controls, plus breach cost analysis and emailed PDF report cards for non-technical stakeholders.
  • Architected and secured the test environment: DVWA in Docker on a Raspberry Pi 5 with MariaDB, every vulnerability class exploitable for team testing, behind Tailscale VPN with zero public exposure.
  • Ran Nessus scans (Basic Network, Credentialed, Web App, Advanced Dynamic) and performed manual red team testing across 8 attack modules including SQLi, XSS, and Command Injection.
  • Surfaced the headline finding: ~40% of findings — including 3 of 4 critical vulnerabilities — through manual testing that automated scans missed.
5
person team led
8
attack modules
40%
findings manual-only
5
compliance frameworks
Self-Hosted Infrastructure & Zero Trust Lab

SoulHomeLab // Ongoing

DockerPortainerCloudflare Zero Trust ProtonVPNNextcloudVaultwarden PlexDuplicatiAdGuard

A live environment to break, fix, and learn. Self-hosted infrastructure behind zero public ports.

  • Operate a 34-stack, 54-container Docker environment on Ubuntu — Nextcloud, Vaultwarden, Plex, AdGuard, PostgreSQL, MariaDB, Redis — managed through Portainer.
  • Designed a zero-inbound-port access model: every public service reachable only through an identity-gated Cloudflare Zero Trust tunnel, with VPN network namespace isolation acting as a structural kill switch.
  • Implemented tiered encrypted backups (read-only sidecar, Duplicati) with monitoring and alerting via Uptime Kuma and ntfy.
  • Authored a 91-page public architecture guide covering network topology, trust boundaries, data flow, and per-stack security rationale.
34
compose stacks
54
containers
0
inbound ports
91
pages documented
⎙
Read the full documentation 34 stacks · 54 containers · architecture, trust boundaries & per-stack configs
↗
Blue Team / Detection Engineering

SOC Simulation // In progress

SplunkWiresharkSysmonMITRE ATT&CK

A personal SOC bench — ingesting endpoint & network telemetry into Splunk, writing detections, and walking through realistic incident scenarios end-to-end.

  • Ingesting Sysmon + Windows Event Logs into Splunk to build alerts on suspicious process trees and persistence.
  • Capturing PCAPs with Wireshark and triaging traffic against MITRE ATT&CK techniques.
  • Documenting full IR playbooks: identify → contain → eradicate → recover → learn.
status writing detections & case studies — public writeups landing soon.
What I'm building next

The Roadmap // 2026

  • cert CompTIA Security+ & Network+ — Sep 2026
  • study NIST AI RMF & GRC fundamentals
  • project Phishing analysis lab — sandbox + URL/headers triage
  • project Home IDS w/ Suricata feeding into Splunk
  • writing Blog series on red vs. blue findings overlap

03. skills

Security Tools

06
  • Splunk
  • Nessus
  • Burp Suite
  • Wireshark
  • Nmap
  • Metasploit
$ 6 tools · armed

OS & Platforms

06
  • Kali Linux
  • Ubuntu
  • Windows
  • Docker
  • Raspberry Pi
  • VirtualBox
$ 6 platforms · mounted

Languages

04
  • Python
  • Bash
  • Java
  • C
$ 4 languages · ready

Concepts

12
  • Vulnerability Assessment
  • Web App Testing
  • Networking
  • TCP/IP
  • DNS
  • VPN
  • SIEM
  • Log Analysis
  • Linux Admin
  • GRC
  • AI Governance
  • LLM Integration
$ 12 domains · indexed

04. experience

// security experience
// additional experience — five years customer-facing technical work in telecom
  1. Nov 2019 — Jul 2022

    Mobile Expert @ T-Mobile

    • Identified & escalated suspicious account activity following security and identity verification procedures.
    • Educated customers on account security, MFA, phishing awareness, and SIM-swap scam prevention.
    • Diagnosed device & network connectivity issues with systematic troubleshooting across iOS / Android.
  2. Aug 2019 — Oct 2019

    Sales Representative @ AT&T

    • Maintained customer records in CRM systems in compliance with data privacy procedures.
    • Translated technical info for customers across a wide range of technical fluency.
  3. Mar 2017 — Aug 2019

    Sales Representative @ MetroPCS

    • Assisted with device setup, activation, and troubleshooting across Android & iOS.
    • Consistently met sales goals in a fast-paced retail environment.

05. contact

~/contact $ ./reach_out.sh

Open to all cybersecurity roles — offensive, defensive, GRC, or anywhere in between — plus interesting conversations. I reply.