Experienced SOC Analyst with more than 5 years experience in Information security with a proven track record of successfully performing network, endpoint, and phishing investigations. Skilled in Incident Response, Threat Hunting, Windows forensics, Intrusion Detection, Vulnerability Assessment, and strategies needed to safeguard highly sensitive systems, data, and communications resources. Self-motivated and goal-oriented cyber security professional with a demonstrated ability to handle complex responsibilities in a demanding environment.
Overview
6
6
years of professional experience
1
1
Certification
Work History
SOC Analyst II
TMNA Services
12.2018 - Current
Performed Incident Response, threat hunting and Forensic analysis on infected hosts and ensuring that incidents are recorded and tracked in accordance with organizational SOPs.
Investigated phishing alerts up until containment and eradication.
Performed vulnerability assessments and management.
Performed real-time log monitoring for different devices/servers hosted both on prem and in Azure/AWS such as Firewalls, IDS, IPS, Operating Systems like Windows, Linux, Proxy Servers, Windows Servers, System Application, Databases, Web Servers, and Networking Devices.
Assisted with development of processes and procedures to improve incident response times, analysis of incidents, and overall, SOC functions.
Utilizing Azure Identity Protection to detect and mitigate potential security threats related to identity and access management.
Identified root causes of security breaches through thorough investigation and analysis of log data.
Provided technical support during high-priority incidents, ensuring timely resolution with minimal impact on business operations.
Provided expert guidance on cybersecurity trends and emerging threats to internal stakeholders for informed decision making.
Improved incident management workflows through streamlined communication between SOC Analysts, IT departments, and other relevant parties.
Leveraged advanced analytics tools for proactive identification of cyber threats, enabling early response actions against potential attacks.
Evaluated new cybersecurity solutions through rigorous testing procedures, recommending most appropriate technologies based on specific requirements and budget constraints.
Trained junior analysts in threat intelligence gathering techniques, improving overall team efficiency.
Educated and trained users on information security policies and procedures.
Technical Analyst
Texas Department of Criminal Justice
02.2018 - 12.2018
Expertly installed and repaired facility and division IT equipment and software per TDCJ standards and guidelines, including terminals, personal computers, printers, cabling, and related software products.
Provided exceptional customer support by promptly responding to and resolving inquiries and requests for assistance with division or facility computer systems.
Demonstrated analytical skills by providing hands-on support for simple to moderate inquiries and determining appropriate technical areas or vendors to resolve problems and coordinating with other technical areas, as needed.
Maintained documentation for each incident or request and escalated complex problems to appropriate level of support per documented procedures.
Delivered 24x7 on-call support based on division IT staff rotation and carried pager as warranted.
Trained and aided users on division and facility technology, performed preventative maintenance and effectively worked with customers, Service Desk and Technical Services personnel.
Skills
Windows Forensic analysis
Incident Response
Intrusion Detection
Threat Hunting
Phishing Email Investigations
Malware Analysis/Endpoint Security
Network Security Protocols/ TCP/IP
Data Loss Prevention
Vulnerability management
AWS/Azure
Threat Hunting/Threat intelligence
Splunk/Rapid7/Sentinel
ServiceNow/ConnectWise
CarbonBlack/CrowdStrike/Defender ATP/SentinelOne/
Windows/Linux/Unix/Powershell
Fast Learner/Self-motivated/ability to multitask/work in a fast-paced environment/problem-solving
Creative, innovative, and strategic thinker
Certification
MSc . CyberSecurity and Information assurance - Pending
CISSP - Certified Information System Security Professional