Alborz Nazari

Alborz Nazari — Cybersecurity Engineer
CYBERSECURITY  ·  THREAT INTELLIGENCE  ·  DEVSECOPS  ·  OSINT  ·  BARCELONA  ·  STIX 2.1  ·  TAXII  ·  MISP  ·  MITRE ATT&CK  ·  CRAFTING INTERPRETERS  ·  JLOX  · 
ALBORZ NAZARI
CYBERSECURITY ENGINEER  ·  BARCELONA

// Barcelona, Spain  ·  Open to EU Roles

Alborz
Nazari

Threat Intelligence  ·  DevSecOps  ·  Security Engineering

whoami.sh

01 // ABOUT

Engineer who builds
and secures.

Mathematics and computer science do not cease to exist. New technologies emerge, and the curiosity to understand logic becomes the most durable skill you can carry. I have worked with thousands of international clients and learned how people communicate, how they think, and how they approach problems. That experience taught me to connect things others keep separate and to bring analytical clarity to DevSecOps, threat intelligence, and software development. I ran the gamut from 3D technical art, VFX, and DCC tools. Studied for a B.Sc. in Computer Engineering, and built original systems from scratch. During my studies at FX Barcelona, I worked at FunPlus in the gaming industry and found a lively and supportive community.

I can translate complex threat data into clear, actionable intelligence for both technical and non-technical audiences, a skill shaped by years of client-facing engineering work. I bring strong soft skills and an entrepreneurial mindset: I build things independently, take ownership end to end, and know how to move in environments where the structure is not handed to you. Based in Barcelona and open to remote or hybrid roles in Threat Intelligence, Security Development, and SOC Analysis. If your team values depth, rigorous documentation, and open-source credibility, I would be glad to connect.

116
pytest tests · OIL v0.7
8,000+
forks handled · Shadowbroker incident
3
deep-dive technical articles
Top 3%
TryHackMe community

02 // PROJECTS

What I've built.

FLAGSHIP · ACTIVE
Open Intelligence Lab
Graph-based cyber threat intelligence platform. STIX 2.1 + TAXII 2.1 compliant. Integrates MISP live feeds, MITRE ATT&CK, and SIEM connectors for Splunk, Sentinel, QRadar, and OpenCTI. 116-test pytest suite, deployed on Fly.io with full CI/CD. Rebuilt on GitLab as a transparent, modular, fully open-source model.
FastAPINetworkXSTIX 2.1TAXIIMISPDockerGitLab CIFly.io
OSINT · GEOSPATIAL
Shadowbroker
Real-time geospatial OSINT dashboard. Spain and USA CCTV intelligence layers, GPS jamming detection, pixel-level change-detection alert pipeline, and STIX 2.1 export. Fork grew past 8,000 during a live incident that turned into a supply-chain attribution case study.
PythonSTIX 2.1GeospatialOSINTAlert Pipeline
CRYPTOGRAPHY · CIVIC
Secure Apportionment System
Huntington-Hill parliamentary seat allocation with AES-256-CBC encryption. Full Docker containerization, Tkinter + Flask UI, and comprehensive PDF documentation.
PythonAES-256FlaskDockerTkinter

03 // WRITING

Notes from the field.

01

LANGUAGE DESIGN · SECURITY ANALYSIS · JUL 2026

Lox Under the Microscope: Design Trade-offs, Measurable Faults, and What Real Languages Do Differently

A three-chapter deep dive into interpreter design using Lox from Crafting Interpreters as the lens — typing, memory management, mutability, and macros, followed by static analysis (SpotBugs, cppcheck), fuzzing, and AFL++ against jlox and clox to see where a toy language's design choices become real attack surfaces.

Read
02

INCIDENT REPORT · SUPPLY CHAIN · MAY 2026

Thundering Herd via Inherited Scheduler: How My Fork Became Someone Else's Threat Feed

A live incident write-up: an inherited hardcoded scheduler in a forked OSINT repo synchronized thousands of independent machines onto a single endpoint at the same second each day, producing a DDoS-shaped signature and a supply-chain attribution failure — plus the five-line jitter fix and the patches applied along the way.

Read
03

CONCURRENCY · SYSTEMS DESIGN

Threading the Needle: Race Conditions, Atomic Violations, and the Concurrency Flaws That Break Systems

A technical article on race conditions built from first principles — TOCTOU, atomicity violations, GIL internals, and mutex design — grounded in a companion Vault Heist Simulator that demonstrates the same failure both by design and by bug.

Read

04 // SKILLS

The stack.

// THREAT INTELLIGENCE
STIX 2.1 / TAXII95%
MISP88%
MITRE ATT&CK85%
OpenCTI80%
// DEVSECOPS
Docker / CI/CD90%
GitLab / GitHub Actions88%
Splunk / Sentinel78%
Fly.io / Cloud Deploy82%
// ENGINEERING
Python / FastAPI92%
Linux / Bash88%
Compilers / Interpreters84%
pytest / Test Design86%

05 // CONTACT

Let's connect.

Open to cybersecurity engineering roles across the EU. DevSecOps, threat intelligence, security engineering. Full EU work authorization. Remote-friendly.