About Me
Hi, I’m Adriano, a cybersecurity professional based in Verona, Italy. I currently lead a managed detection and response team at HWG Sababa, owning the deployment and operation of EDR, NDR and OT security platforms for enterprise clients. My background spans more than a decade in IT and DevOps before moving into security operations, which shapes how I work: I care as much about how a platform is deployed, integrated and kept healthy as about what it detects.
Outside of client work I run a homelab, sharpen my skills on TryHackMe and Hack The Box, automate security tasks in Python, Go and Bash, and help maintain TLDR Pages as an Organization Manager.
Core expertise: CrowdStrike Falcon, EDR/XDR and Threat Hunting. Also experienced with: NDR, OT Security, SentinelOne, Trend Vision One, Qualys VMDR, Incident Response and MITRE ATT&CK.
Projects
sshman revolutionizes secure SSH management—encrypted vaults make key handling effortless for homelabs and enterprises.
sshman is my open-source CLI tool for managing SSH keys and connections with encrypted .vssh vaults, key generation, and direct SSH support—perfect for threat hunters juggling multiple endpoints. Born from real-world SecOps needs, it streamlines secure access in homelabs (Raspberry Pi clusters) and production (CrowdStrike/Sophos fleets). With 5 releases and growing stars, it’s a portfolio highlight showcasing my bash scripting and crypto skills.
TLDR Pages is cybersecurity documentation gold—60k+ stars prove it's the CLI reference everyone needs.
As Organization Manager for TLDR Pages (60,000+ GitHub stars), I manage repo access, review contributions, and maintain simplified command-line docs for tools used in Linux, Windows and other OSes . If you need concise CLI mastery, TLDR Pages (with my contributions) delivers.
Cyber Fortress - A Cybersecurity Manual for SMBs
github.com/SpikeTheDragon40k/Cyber-Fortress-A-Cybersecurity-Manual-for-SMBs
Cyber Fortress equips SMBs with practical cybersecurity defenses—your manual for threat-proofing small businesses.
Cyber Fortress is my comprehensive open-source manual tailored for SMBs, delivering actionable guides on EDR deployment, threat hunting basics, endpoint hardening, and cost-effective defenses against real-world attacks. Drawing from enterprise experience (CrowdStrike, Sophos, Tenable), it demystifies SecOps for non-experts while providing checklists and configs for immediate implementation. Essential reading for Italian SMBs building robust security postures.
Experience
Lead a team of security professionals delivering managed detection and response services across EDR, OT security and NDR for enterprise clients. Own the operational side of the MSS platform portfolio: deployment, configuration and ongoing management of EDR, OT-centric security and network detection platforms. Oversee integration into customer environments to ensure consistent coverage, complete data collection and alignment with detection and response requirements. Manage service health and coordinate between the team, internal stakeholders and customers to keep the service resilient and scalable.
Provided operational and technical leadership across security operations initiatives, shaping and continuously improving the SecOps function. Designed, deployed and operated security platforms and tooling to strengthen detection, monitoring, response and remediation capabilities. Monitored client environments, investigated incidents, coordinated response and drove remediation of endpoint compromises; assessed existing controls and implemented improvements. Automated security processes in Python, Go and Bash, applying software engineering and SRE principles to improve the scalability and reliability of security tooling. Mentored team members and delivered security initiatives within an agile engineering framework, collaborating across engineering and security teams.
HWG Sababa
Solution Leader - EDR, Awareness & Vulnerability Management
September 2022 - November 2024 (2 years 3 months)
https://www.hwgsababa.com/
Owned the company-wide EDR, vulnerability management and security awareness service lines, defining the roadmap, service catalogue and delivery model for enterprise clients. Built the operational frameworks from scratch, including SLAs, risk-based vulnerability prioritization, remediation workflows and escalation procedures. Led EDR deployments and onboarding across hundreds of client endpoints on platforms including SentinelOne and Trend Vision One, covering policy design, tuning and ongoing service health. Directed Tier 1/2 analysts in triage, investigation and remediation, acting as technical escalation point and reviewing detection quality. Supported Purple Team exercises to validate detection coverage, and designed and ran security awareness programs to strengthen client security culture.
Cartronic Group SRL
IT/DevOps Specialist & IT Trainer
April 2019 - September 2022 (3 years 6 months)
Managed IT infrastructure, EDR deployments, and technical training for automotive diagnostic systems nationwide.
Provided remote support for Bosch EsiTronic diagnostics, deployed corporate EDR, and trained technicians on management tools. Coordinated interventions, optimized workshop IT, bridging DevOps and security in automotive sector.
Led IT/DevOps team of 4, implementing vulnerability management and infrastructure for eCommerce/logistics operations.
Oversaw customer service, QA, security controls, and container logistics IT—enhancing operational security and efficiency. Coordinated technical/business teams, laying foundation for cybersecurity career progression.
Education & Certifications
Core Certifications (2021-2026)
EDR/XDR, VMDR, Threat Hunting Mastery
35+ Certifications | TOP 1% TryHackMe (Rank 2,537/3M)
2025-2026 (Recent):
- CrowdStrike Certified Falcon Administrator (CCFA)
- Fortinet: Certified Associate (FCA) Cybersecurity, Certified Fundamentals (FCF) Cybersecurity, NSE 1, 2 & 3 (Mar 2026, exp 2028); FortiGate 7.6 Operator (Mar 2026)
- Fortinet courses: Getting Started in Cybersecurity 3.0, Introduction to the Threat Landscape 3.0, Technical Introduction to Cybersecurity 3.0 (Mar 2026)
- AttackIQ: Foundations of Operationalizing MITRE ATT&CK v13 (Mar 2026)
- TryHackMe SOC Level 2 (Jan 2026, ID: THM-KG1ZZZUBPB)
- Qualys: CSAM, Cloud Agent (Aug 2025, exp 2027); VM Foundation, VMDR Onboarding, TruRisk Platform, Sensors (Aug 2025)
- Trend Vision One: Endpoint Security Advanced/TrendAI (Jul 2025, exp 2027)
- CrowdStrike: Falcon Shield Fundamentals (CLOUD 150), SaaS Security Impl (CLOUD 151) (Jun 2025)
- TryHackMe SOC Level 1 (May 2025, ID: THM-ODP569DEUK)
2021-2024 (Foundational):
- Recorded Future Intelligence Fundamentals (Nov 2024)
- Trend Vision One Admin Technical Track (Aug 2024)
- SentinelOne: Foundations, IR, Ranger, Threat Hunting, Policy Admin, Remote Orchestration (2022)
- TryHackMe: CompTIA Pentest+, Intro CyberSec, Web Fundamentals, Jr Pentester, Advent of Cyber 2021, Pre-Security (2021-2022)
A Little More About Me
Outside of cybersecurity and software engineering, I like building, fixing and understanding how things work:
- 3D design and printing: modeling and printing functional parts, tools and enclosures for everyday problems
- Homelab: running server clusters for self-hosting, automation and testing security tooling
- Retrogaming and console restoration: collecting, repairing and modding consoles across generations, from recapping and repairs to hardware mods
- Hardware tinkering: taking devices apart, fixing them and making them perform better than they did out of the box
- Hiking: time in the mountains to switch off from screens