ABOUT / ZORAN ZHOU

I'm Zoran.I build, and I write.

A network and security engineer curious about how systems work, what makes them reliable, and how we keep learning.

Something on your mind? ↗
Zoran ZhouBUILD · OBSERVE · WRITE

BACKGROUND

Network & Security Engineer

I design and operate secure, resilient network infrastructure, with a focus on the intersection of reliability and security engineering.

My work spans network engineering, web security testing, endpoint operations, system hardening, and practical automation.

This site is where I document technical research, work in progress, what I am learning, and experiences from everyday life.

Outside work, I read, take photographs and run. This site also holds observations from my travels and thoughts from everyday life.

Life beyond work ↗

A WAY OF WORKING

How I work

01

Understand the system

Start with networks, identity and access boundaries to understand why a system works the way it does.

02

Test the idea

Break a question into steps that can be checked, considering reliability, security and practical limitations.

03

Write it down

Keep a record of the process, decisions and open questions, so one experiment can inform the next.

FOCUS & PRACTICE

Focus & practice

Offensive Security & Web Testing

  • Web application penetration testing
  • Burp Suite
  • Metasploit
  • SQLMap
  • Authentication & authorization testing
  • Business-logic testing
  • Vulnerability assessment
  • Secure configuration review
  • Remediation verification
  • Secure code review fundamentals

Network Engineering & Multi-Vendor Platforms

  • BGP / MPLS / VLAN
  • Routing & switching
  • Network segmentation
  • Campus network design
  • SDN deployment concepts
  • Firewall policy design
  • Network traffic analysis
  • Cisco / Huawei / ZTE / H3C

Systems, Automation & Security Operations

  • Python / Shell / PowerShell
  • Windows & Linux operations
  • Endpoint security operations
  • Trellix ePO administration
  • Endpoint policy orchestration
  • Security deployment automation
  • IDS / IPS & SIEM operations
  • Vulnerability remediation workflows
  • Incident response support