Skip to content
View Blackvectra's full-sized avatar

Block or report Blackvectra

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Blackvectra/README.md

NextLayerSec Logo

Matthew Levorson

Security Engineer • Security Operations • Blue Team
Endpoint • Identity • Microsoft Security Stack

ISC2 CC | CompTIA A+ | Network+ | Security+ | Linux+

CySA+ • SSCP • PenTest+ (in progress)


🔗 Professional Links


🧭 Professional Summary

I am a security engineer focused on defensive security operations, endpoint and identity protection, and incident response within Microsoft-centric environments.

My work emphasizes:

  • Practical detection and investigation fundamentals
  • Governance, procedures, and repeatability
  • Security operations in real business environments
  • Clear documentation that supports auditability, handoff, and scale

I prioritize how security is actually operated over tool sprawl or theoretical controls.


🛡️ Primary Work — Operations Guide

Operations Guide is my primary body of work and represents how I approach security engineering in practice.

It is a governed security operations framework that consolidates:

  • Endpoint investigation and triage workflows
  • Ransomware, malware, and BEC response procedures
  • Windows, Linux, macOS, and Exchange command references
  • Security hardening baselines
  • Threat behavior education (beaconing, persistence, lateral movement)
  • Framework-aligned governance (NIST CSF, CIS Controls, MITRE ATT&CK)
  • Structured incident documentation
  • Safe, gated automation guidance

The repository is intentionally designed to resemble internal security operations documentation used by professional teams and serves as a single source of truth for how security work is performed.


⚙️ Tools & Platforms


📊 GitHub Activity



🔮 Current Focus

  • Operations Guide (security operations framework)
  • Microsoft Defender detection and investigation
  • Endpoint and identity hardening
  • Incident response documentation and automation
  • Continuous blue team skill development

Matthew Levorsonnextlayersec.io

@Blackvectra's activity is private