Lead incident response, including full remediation of numerous account compromises, mitigated several active ransomware attacks, and resolved countless business email compromise (BEC) incidents.
Spearheaded the implementation of security solutions, including Zscaler, managing all project phases from planning and execution to successful deployment and ongoing maintenance.
Administered and maintained SentinelOne across 1200 endpoints, optimizing its performance and augmenting its capabilities to significantly strengthen the organization's endpoint security posture.
Enhanced security in Azure and Intune by implementing LAPS for local account security and conditional access policies for cloud resource access, strengthening the overall security posture.
Identified and directed the remediation of critical vulnerabilities, minimizing the organization's attack surface and reducing the risk of exploitation.
Directed all phases of penetration testing engagements, from initial scoping and vendor selection to detailed report analysis and remediation tracking, ensuring comprehensive vulnerability coverage and timely mitigation.
IT Security Specialist
Hylant
05.2022 - 04.2024
Revamped the company's IT security training program, leveraging the platform to deliver targeted training on phishing awareness, security best practices, and compliance requirements
Led security incident investigations, meticulously following triaging and remediation procedures, and maintaining comprehensive documentation to ensure swift containment and minimize business impact.
Managed the penetration testing process, from initial planning and scoping to vulnerability analysis and remediation tracking
Collaborated proactively with IT department members to minimize system vulnerabilities and strengthen overall security posture.
Administered and enhanced a comprehensive suite of security tools, including Proofpoint for email security and threat protection, SentinelOne for endpoint detection and response, Intune for mobile device management, and Azure for cloud security and identity management.
Information Security Intern
Hylant
11.2021 - 05.2022
Triaged and analyzed all reported suspicious emails received through a shared inbox, prioritizing and escalating potential threats.
Designed and executed monthly phishing simulation campaigns to enhance employee security awareness and resilience against phishing attacks.
Responded to and remediated security alerts from various sources, including antivirus and Proofpoint TAP, minimizing the impact of potential security incidents.
Maintained and updated the company IT Security portal, providing self-service resources and information to empower employees.