Martin Nyandigisi Mylles Profile Picture

Martin Nyandigisi Mylles

Cybersecurity Analyst · SOC Operations · Threat Detection & Incident Response

Cybersecurity professional with a B.Sc. in Information Systems & Technology (Forensic IT & Cybercrime concentration) from USIU-Africa. Currently serving as a Systems and Securities Infrastructure Officer at the COMESA Competition and Consumer Commission (CCCC), with hands-on experience in IT support from ICED, a government security internship at ICT Authority Kenya's Information Security Department, and a part-time network administration role at Power Innovations. Holds industry-recognised certifications including HCIA-Security V4.0 (Huawei), CyberShujaa Security Analyst, CAISR, and Google Cybersecurity. Eager to contribute to a SOC or cybersecurity analyst team.

Core Skills

Threat Detection & Monitoring
FortiSIEM Splunk Wazuh Log Analysis Alert Triage Wireshark
Vulnerability Management
Acunetix Vulnerability Assessment Remediation Tracking
Network Security
Firewalls VPN Fundamentals Network Segmentation Traffic Analysis
Incident Response & Forensics
Incident Documentation Autopsy FTK Imager Email Security Phishing Analysis SpamTitan
Systems & Administration
Windows Linux SQL PHP HTML/CSS Android Development
Frameworks
MITRE ATT&CK ISO/IEC 27001 Ethical Hacking Methodology AI Security & Risk

Work Experience

Systems and Securities Infrastructure Officer

COMESA Competition and Consumer Commission (CCCC), Malawi
July 2026 – Present
  • Monitor the Commission's ICT environment and system logs to identify, document, and escalate potential cyber threats and anomalies
  • Utilize network diagnostic tools, including Wireshark, to capture and analyze traffic for security incident investigations
  • Assist in the configuration, documentation, and patch deployment for network infrastructure, servers, and endpoint devices
  • Provide first-level ICT support to diagnose and resolve hardware, network connectivity, and video conferencing issues
  • Track and implement corrective actions arising from ICT audit findings to maintain compliance with information security policies
  • Support the Consumer Division with case documentation, complaint investigations, and regulatory policy research

IT Support Intern

ICED – International Centre for Evaluation and Development
April 2026 – July 2026
  • Support day-to-day ICT operations including hardware configuration and asset inventory management
  • Monitor network connectivity and assist with LAN/Wi-Fi troubleshooting, liaising with service providers
  • Perform routine server and system monitoring, log reviews, and data backup support
  • Assist with cybersecurity tasks including antivirus and patch updates, access management, and security incident reporting
  • Support end-users on Microsoft Office suite, email setup, and internal application issues
  • Conduct data entry, cleaning, and basic analysis using Excel, preparing reports for programme teams

Network Administrator (Part-Time)

Power Innovations
October 2025 – February 2026
  • Monitored and maintained company server infrastructure, ensuring stable performance and uptime
  • Enforced endpoint security hygiene, managing patch deployment, antivirus updates, and OS hardening
  • Troubleshot network, POS, and hardware issues across company systems to minimise downtime
  • Diagnosed and resolved POS system failures by retrieving and analysing server-side error logs

Information Security Intern

ICT Authority Kenya
May 2025 – July 2025
  • Assisted with vulnerability scanning using Acunetix and monitored security events through Fortinet tools
  • Supported email threat filtering using SpamTitan and documented security findings for the team
  • Responded to security incidents, supporting containment and documenting events in real time for audit records
  • Prepared detailed incident reports covering network issues, attack indicators, and resolutions
  • Supported NOC troubleshooting of network security issues prior to escalation, reducing resolution time
  • Created and managed tickets for failed subject links, coordinating with contractors to restore service
  • Assisted in configuring workstation hardware and software within the Information Security Department

Education

Bachelor of Science in Information Systems & Technology

United States International University – Africa

Concentration: Forensic Information Technology & Cybercrime

Graduated: September 2025

Certifications

HCIA-Security V4.0
Huawei Technologies
Jun 2026
Security Analyst – CyberShujaa (Cohort XI)
USIU-Africa, Serianu Ltd & Kenya Bankers Association
Apr 2026
Certified AI Security & Risk (CAISR)
Red Team Leaders
Feb 2026
Google Cybersecurity Professional Certificate (V2)
Google
Feb 2025
Foundations of Operationalizing MITRE ATT&CK v13
AttackIQ
Feb 2025
Cisco Ethical Hacker
Cisco Networking Academy
Mar 2025
Code Generation & Optimization Using IBM Granite
IBM SkillsBuild
Mar 2025

Projects

Mama Mboga (Grocery Shop)

Premium e-commerce web application built with Flask and Python for sourcing fresh organic vegetables and fruits directly from local farms. Full-stack project with responsive frontend and backend-driven product management.

Python Flask HTML JavaScript CSS
Car Parts Store

Minimalist e-commerce storefront specialised for automotive parts, built with a Python-heavy backend and clean product interface.

Python Flask
Online School Transport Child Safety System

Android and Firebase-based transport safety platform enabling schools and parents to monitor student pickup and drop-off activities in real time, with push notification alerts.

Java Android Studio Firebase Authentication Firestore Firebase Cloud Messaging

Lab Challenges

40+ practical labs completed across Hack The Box, TryHackMe, and CyberShujaa

Lab 1 — Network Reconnaissance & Enumeration

Activities:

  • Nmap scanning, service fingerprinting, and open port discovery
  • Banner grabbing and OS detection
  • Network mapping and target profiling
Nmap Linux
Lab 2 — Web Application Security (OWASP Top 10)

Activities:

  • SQL Injection and XSS fundamentals
  • Authentication and authorization vulnerability testing
  • Directory enumeration and web application assessment
Burp Suite Browser Dev Tools Linux
Lab 3 — Active Directory Security

Activities:

  • User and group enumeration
  • AD attack path analysis
  • Kerberos fundamentals and Windows domain security
BloodHound PowerShell Linux
Lab 4 — Linux & Windows Privilege Escalation

Activities:

  • File permissions and user management exploitation
  • System enumeration and misconfiguration discovery
  • Privilege escalation path identification
Linux Windows GTFOBins
Lab 5 — SOC Operations & Log Analysis

Activities:

  • Security event monitoring and alert investigation
  • SIEM fundamentals and threat detection workflows
  • Incident response triage and documentation
FortiSIEM Splunk Wazuh
Lab 6 — Network Traffic Analysis

Activities:

  • Packet capture and protocol dissection
  • TCP/IP analysis and anomaly detection
  • Identifying indicators of compromise (IoCs) in simulated attack scenarios
Wireshark
Lab 7 — Digital Forensics

Activities:

  • Evidence collection and artifact extraction
  • Chain of custody documentation
  • File system and registry analysis
Autopsy FTK Imager
Lab 8 — SMB Enumeration & Exploitation

Activities:

  • Share enumeration and file extraction
  • Credential discovery and access analysis
  • SMB exploitation techniques
smbclient Nmap Linux
Lab 9 — Phishing & Email Security

Activities:

  • Phishing email analysis and header inspection
  • Spam detection and threat investigation
  • Email-based attack identification
SpamTitan Email Header Analysis
Lab 10 — CyberShujaa Practical Assessments

Activities:

  • Nmap scanning, SSH access, and SMB exploitation
  • Base64 decoding, hash analysis, and grep searches
  • File compression/extraction and privilege escalation enumeration
Nmap Linux SSH Hashcat

Contact

Location
Nairobi, Kenya
Twitter / X
@Mnyandigisi