Summary
Overview
Work History
Education
Skills
Timeline
Accomplishments
Websites
Projects
Generic

BRENNAN BOSS

Phoenix,AZ

Summary

Detail-oriented security risk analyst experienced in online security research, planning, execution, and maintenance. Certificate in cybersecurity from Arizona State University, with a background in training and crisis management collaborating with teams and stakeholders regarding incident response, physical security, and preventative measures. Critical thinker who has training in network monitoring, aspiring to prevent cyber attacks in government, business and corporate settings.

Overview

8
8
years of professional experience
1
1
Certificate

Work History

Crisis Manager

Amazon Global Security Operations Center, GSOC
07.2018 - 03.2023

Triaged incoming high-priority security incidents involving Amazon personnel life safety, operations, or brand, ensuring swift and effective measures were taken to mitigate risks and minimize impact. Coordinated cross-functional teams, analyzed emerging threats, and implemented incident response plans, maintaining operational readiness and resilience against future incidents.


Key Accomplishments:

  • Utilized comprehensive risk analysis to identify, assess and manage emergency management risks
  • Leveraged KPIs and diagnostics to boost incident productivity by 15% and elevate answer rates by 25%, streamlining team performance
  • Innovatively developed, refined, and optimized multiple Standard Operating Procedures (SOPs) to enhance operational efficiency and effectiveness.

Security Risk Analyst

Amazon Global Security Operations Center, GSOC
02.2015 - 07.2018

Monitored multiple systems and communication systems for incoming critical incidents. Collected information, evaluated and analyzed potential risks, threats, and vulnerabilities for documentation in reports, escalation, and action. Collaborated with cross-functional teams for incident resolution.

Key Accomplishments:

  • Initiated and collaborated with department training team to establish online based training curriculum for new hires that did not previously exist
  • Designed, improved, and implemented Workplace Violence Template that was adopted company-wide and significantly increased efficiency of incident response process
  • Initiated extensive open-source intelligence research by monitoring and searching various media outlets, social media, databases, and web to write reports and alert stakeholders of potential threats

Education

Cybersecurity Certificate -

Arizona State University
Phoenix, AZ
11.2023

Bachelor’s Degree - Global Security and Intelligence Studies

Embry-Riddle Aeronautical University
Prescott, AZ
12.2015

Skills

  • Operating Systems: Windows, Linux (Kali, Ubuntu, CLI), MacOS
  • Networking: TCP/IP, DNS
  • Security Tools: Wireshark, Metasploit, Nessus, Snort, Splunk, MITRE ATT&CK Matrix
  • Programming Languages: Python, PowerShell, Bash
  • Cybersecurity Principles: Risk Assessment and Management, Incident Handling, Cryptography, OSINT

Timeline

Crisis Manager

Amazon Global Security Operations Center, GSOC
07.2018 - 03.2023

Security Risk Analyst

Amazon Global Security Operations Center, GSOC
02.2015 - 07.2018
  • Career and Technical Education Certificate (Industrial and Emerging Tech.), Arizona Dept. of Education - 2023
  • Level 1 Fingerprint Clearance Card, Arizona Dept. of Public Safety - 2023

Cybersecurity Certificate -

Arizona State University

Bachelor’s Degree - Global Security and Intelligence Studies

Embry-Riddle Aeronautical University

Accomplishments

  • Certifications: CompTIA Security+ (in progress)

Projects

Azure Personal Web App

  • Summary: Created and secured personal web app using Microsoft Azure platform.
  • Responsibilities: Configured firewalls/Network Security Group (NSG), Configured inbound/outbound rules, configured load balancer, configured Virtual Machines.
  • Tools / languages used: Microsoft Azure, Linux Command Line, Docker


Penetration Test Report for Fictional Organization

  • Summary: Created a report for a fictional organization after testing the organization’s security posture.
  • Responsibilities: Used various attack methods (e.g. SQL injection, XSS) to test security on web apps and servers. Used user enumeration and device enumeration for privilege escalation.
  • Tools / languages used: HTML, Metasploit, Nessus, XSS, SQL, PowerShell, Linux Command Lin


Splunk Dashboards and Alerts

  • Summary: Analyzed logs using Splunk to identify attack on fictional organization and prevent future attacks.
  • Responsibilities: Analyze pre and post attack data to determine abnormal activity; create alerts and dashboards using Splunk Queries; identify date/time of attack, accounts used, and attack vector.
  • Tools / languages used: Splunk, Open Source Research/Google Dorkin


Automated Home Network Scanner

  • Summary: Created script that executes Nmap vulnerability scans against my home network and sends a text message to the user's phone if a known vulnerability is found.
  • Responsibilities: Learn Python to write script; create cron job with permissions to execute script; act on found vulnerabilities
  • Tools / languages used: Pycharm, Python, Nmap, Crontab, Mac Terminal, Tines SOAR platform
BRENNAN BOSS