Privacy Analyst and Cyber Threat Intelligence Researcher. I build compliance-grade data portals and conduct OSINT investigations to combat a broad spectrum of cybercrimes and extremism. I leverage "vibe coding" and full-stack development as strategic enablers to rapidly automate threat intelligence pipelines and operationalize digital justice.
I'm a Privacy Analyst and Cyber Threat Intelligence (CTI) Researcher focused on combating cybercrime, ensuring data protection, and advancing digital civic safety.
While I am highly proficient in full-stack engineering, I approach coding strictly as a strategic enabler ("vibe coding"). Instead of pursuing traditional software engineering roles, I utilize development skills to rapidly prototype OSINT tools, automate threat intelligence pipelines, and architect systems that comply with rigid privacy laws (GDPR, BSI IT-Grundschutz).
My core mission is digital justice. I actively research and build solutions at the intersection of security and civic duty — ranging from an anti-scam resilience platform and cybercrime investigation workflows, to a RAG-based counter-extremism (PCVE) assistant.
// privacy note
Contact details omitted from this public page.
Reach out via LinkedIn or professional channels to connect.
A comprehensive portfolio of Governance, Risk, and Compliance (GRC) projects focusing on global data protection frameworks. Includes deep-dive legal text analyses on GDPR Purpose Limitation, HIPAA vs GDPR ISO comparative mapping, CCPA-compliant privacy engineering for automotive tech, and corporate Terms of Service human rights assessments.
Enterprise patient management system engineered strictly for German healthcare law (§630f BGB, §33 DSGVO, BSI IT-Grundschutz). Enforces privacy by design with immutable medical records (soft-delete only), strict RBAC across 4 organizational roles, 72h BSI breach notification tracking, and a comprehensive audit log for legal compliance.
Platform designed to combat financial cybercrime by analyzing messages, URLs, phone numbers, and bank accounts for scam indicators. Utilizes automated OSINT workflows to generate scored risk reports. Features anonymous incident reporting to protect whistleblower identities, serving as a frontline defense against digital fraud.
RAG-based AI platform supporting evidence-based intelligence and prevention in: counter-radicalization, PVE (Prevention of Violent Extremism), and disinformation analysis. Automates knowledge retrieval regarding ideology-based extremism and separatist contexts. Built specifically to assist security practitioners and CTI researchers.
Security platform extending the SafePulse ecosystem toward infrastructure-layer defense. Automates network threat monitoring, anomaly detection, and digital safety tooling for endpoint environments. Utilizes engineering as a vehicle to streamline threat intelligence gathering.
Comprehensive security audit and hardening framework for production web deployments. Focuses on database encryption, access control enforcement (RBAC), intrusion detection, and automated secure backup workflows. Derived from real production infrastructure securing organizational data.
Legacy engineering project demonstrating the ability to architect complex, secure, multi-tenant database systems (NexStay Hotel Platform). Showcases deep understanding of JWT authentication, role-based access control, and backend logic which now supports my ability to audit and secure similar enterprise systems.
Open to roles in Privacy (GRC), Cyber Threat Intelligence, OSINT Investigations, and broader Cybercrime compliance. Also available for research collaborations in PCVE and digital safety.