Cybersecurity · OSINT · Behavioral Intelligence · Romania

Daniel Sălăgean

Infrastructure, security and sound decisions.

I design and build IT systems around the real problem. I choose technology for what it needs to solve, explain risks to decision-makers and prefer systems that remain manageable long after the sales presentation.

I am also interested in what sits between systems: digital traces, context, behaviour and decisions that do not fit neatly into a log.

Daniel Sălăgean

About me

I work in IT infrastructure and cybersecurity. I am interested in how things connect: architecture, access, data flows and the decisions of the people using the system. A good product helps. A poorly designed foundation can keep it busy for all the wrong reasons.

I am CEO of CyberSec Intelligence, where I coordinate security, operations and IT infrastructure projects. The title fits neatly in a signature. The useful part starts when an unclear problem has to become a technical decision someone can understand and own.

I value clear explanations, uncomfortable questions and the freedom to choose the right technology. When assumptions come up, I prefer checking them before building on them.

I also work at the intersection of OSINT, digital investigation and behavioural analysis. Technology shows what happened. Context, relationships and the way people make decisions often explain why. I do not confuse probability with certainty, or intuition with evidence.

Outside work, I am an amateur radio operator: YO3DSG. It is a hobby in which I have worked on many projects, bringing together technology, people and curiosity. I also write about relationships, boundaries, choices and our everyday contradictions, usually with coffee nearby and enough irony to avoid taking myself too seriously.

How I work

Understand the context. What needs to work, what gets in the way and what is worth changing.

Choose and build. Open-source or proprietary, according to the requirements. Security and continuity belong in the design from the start.

Document and verify. The system must remain manageable, and risk must be understandable to both technical teams and decision-makers.

Areas of expertise

Security Operations

  • Building and maturing a SOC
  • Continuous monitoring and alert triage
  • Playbooks and operational procedures

Threat Detection & Response

  • Detection engineering
  • Investigation and post-incident analysis
  • Tabletop exercises and team readiness

Risk & Compliance

  • Risk assessment and prioritization
  • Security policies that survive practice
  • Data protection and access control

Security Awareness

  • Awareness programs for employees
  • Communicating risk to leadership
  • Mentoring technical teams

Infrastructure, Planning & Implementation

  • IT infrastructure architecture and planning
  • Vendor-agnostic implementation
  • Custom solutions for specific requirements

Notes & writing

Technology, people and amateur radio. Things I build, notice or try to understand.

Projects & experiments · Romanian article

Am facut o piesa. N-a ramas singura.

Bucuresti, intalniri si libertatea de a fi bine cu mine. Cateva ganduri pe care am ales sa le pun pe muzica.

All writing

Contact

Open to conversations about security, consulting, talks, and collaborations. Write to me directly through the form or on WhatsApp.