
Results-driven SOC Lead with extensive expertise in developing robust detection capabilities across hybrid environments. Specialization in advanced log analysis and threat hunting at both endpoint and cloud layers, with a proven track record of engineering custom SIEM use cases to address critical blind spots. Successfully transformed reactive monitoring into proactive detection by optimizing workflows and significantly reducing response latency. Strong leadership in mentoring junior analysts, crafting structured incident response playbooks, and aligning SOC operations with overarching business risk and compliance objectives.
Experienced with security operations, including risk assessment and crisis management. Utilizes strategic planning to enhance security measures and protect assets effectively. Track record of leading security teams and ensuring compliance with safety regulations.
Security operations management
Wazuh SIEM implementation
Log analysis
Expertise in identifying threats in endpoint and cloud systems
Incident response management
MTTR improvement
Experience in automating alert workflows
Cloud & Identity Security
Proficient in Microsoft 365 security solutions
Access control and security measures
Data loss prevention with Microsoft Purview, Cososys, Forcepoint
Risk assessment for insider threats
Network security management
IT operations Enhancement