Summary
Overview
Work History
Education
Skills
Certification
Timeline
Projects
Generic

Alan Ledesma

Greater Chicago Area,IL

Summary

Security Analyst with experience in endpoint detection, incident response, identity security, and vulnerability management. Leads investigations into email and account compromise incidents, supports web and network penetration testing engagements, and advises clients on Microsoft Entra hardening and risk mitigation. Integrates offensive expertise with defensive operations to strengthen enterprise security posture.

Overview

1
1
year of professional experience
1
1
Certification

Work History

Security Analyst

Proven IT
Tinley Park, IL
05.2025 - Current

Investigate and triage endpoint and identity-based security alerts in CrowdStrike and Microsoft Entra, performing analysis and supporting containment and remediation efforts.

• Handle a consistent volume of incident response cases, including phishing

investigations and business email compromise scenarios, conducting mailbox scoping,log analysis, and coordinating credential resets and hardening actions.

• Analyze suspicious emails using Proofpoint and Microsoft 365 tooling, identifying

malicious indicators and advising on remediation and prevention strategies.

• Scope and support web application and network penetration tests, assisting in

vulnerability validation and client-facing reporting.

• Advise clients on Microsoft Entra hardening, including Conditional Access

configuration, MFA enforcement, and identity protection best practices.

• Complete cybersecurity insurance documentation and risk assessment questionnaires, aligning client environments with security and compliance requirements.

Cybersecurity Specialist

Preferred Communications Systems
Tinley Park, IL
09.2024 - 04.2025

• Investigated and responded to security alerts across endpoint and network environments, performing threat analysis, coordinating remediation efforts, and supporting compliance requirements.

• Conducted vulnerability and risk assessments to identify critical exposures, prioritizing remediation and implementing both manual and automated mitigation strategies across client systems.

Education

Bachelor of Science - Information Technology

Governors State University
University Park, IL
05.2026

Associate of Applied Science - Information Technology

Prairie State College
Chicago Heights, IL
05.2024

Skills

  • Active Directory
  • Alert Monitoring & Response
  • Burp Suite
  • Cobalt Strike
  • Network Security
  • OSINT
  • Penetration Testing
  • Python
  • Vulnerability Management
  • Web Application Security

Certification

  • Hack The Box Certified Penetration Testing Specialist - Hack the Box (10/21/2024)
  • Hack The Box Certified Web Exploitation Specialist - Hack the Box (04/15/2025)
  • Red Team Operator - Zero-Point Security LTD (03/30/25)
  • CompTIA PenTest+ CompTIA (10/18/2025 - 10/18/2025)
  • CompTIA CySA+ - CompTIA (03/2025 - 03/2028)
  • CompTIA Security+ - CompTIA (06/2023 - 06/2026)

Timeline

Security Analyst

Proven IT
05.2025 - Current

Cybersecurity Specialist

Preferred Communications Systems
09.2024 - 04.2025

Associate of Applied Science - Information Technology

Prairie State College

Bachelor of Science - Information Technology

Governors State University

Projects

Bug Bounty & Security Research (Ongoing)

• Active security researcher on HackerOne, identifying web application vulnerabilities through manual testing and targeted exploitation techniques.

• Perform application-layer assessments using Burp Suite, custom payload development, and fuzzing methodologies to uncover logic and access control flaws.