SOC Analyst / Technical Account Manager
- Lead SOC operations, and serve as Technical Account Manager for an international client spanning 20+ countries.
- Prepared and delivered presentation decks for weekly calls, monthly governance meetings, annual trend reviews, and technical integration sessions with clients and OEMs.
- Maintained asset inventory, managed distribution lists, handled escalations, and coordinated outage communications.
- Conducted threat intelligence and dark web monitoring using Recorded Future to identify emerging threats.
- Utilized Halo for external attack surface management, reducing client risk exposure.
- Tuned SIEM detection rules to minimize false positives and enhance SOC efficiency.
- Developed custom rules and AQL queries (QRadar) to detect defense evasion techniques aligned with the MITRE ATT&CK framework.
- Performed threat hunting, log analysis, and authored detailed, client-facing security reports.
- Reported and managed over 400+ security incidents accross multiple cleints; provided actionable recommendations and remediation support.
- Investigated CrowdStrike alerts, analyzed process behaviors, and supported incident response.
- Published advisories on global attack trends, hunt for IOCs, and recommend timely vulnerability patching.