I specialize in 24/7 SOC operations, threat hunting, and incident response, using tools like CrowdStrike Falcon, Microsoft Defender ATP, Splunk, and QRadar. My experience spans healthcare, consulting, and IT services, where I’ve managed end-to-end SOC processes, automated incident response playbooks, and improved audit readiness by 15%.
I’m skilled at analyzing logs from firewalls, EDR, and NDR solutions, proactively identifying and containing threats. I’ve developed custom correlation rules and dashboards, reducing repeated incidents by 10% and improving phishing awareness by 30% through targeted training.
Clear communication is a core strength—I translate complex findings for all audiences and lead incident briefings. I also mentor junior analysts and drive best practices, ensuring teams stay ahead of evolving threats.
Entdecken Sie andere Experten mit ähnlichen Qualifikationen und Erfahrungen.