Senior Security Consultant with 5+ years of experience in SOC operations, incident response, and threat intelligence. Skilled in SIEM use case development, EDR, vulnerability management, and Windows AD/Domain administration. Experienced in coordinating global incident response, mentoring SOC analysts, and enhancing detection accuracy using tools like Splunk, QRadar, Microsoft Sentinel, CrowdStrike, and Qualys. Recognized for reducing false positives, improving security posture, and driving efficient incident handling.
Incident Response & Coordination: IR Phases, IOC/IOA Analysis, Threat vs Vulnerability vs Actor distinction, Global Incident Management
Threat Intelligence & Hunting: MITRE ATT&CK, Intel Correlation, Use Case Development, SOC Operations Optimization
Security Monitoring & Analysis: Log Analysis, Use Case Tuning, False Positive Reduction
Vulnerability & Risk Management: Identification, Assessment, and Mitigation of Threats
Network, Cloud & System Security: Firewalls, IDS/IPS, Windows AD Hardening, SaaS Security Monitoring
Analytical Thinking & Communication: Problem-Solving, Incident Escalation, Team Collaboration, Mentoring, Continuous Learning