- Spearheaded the design and execution of phishing simulations for over 5000 users across 60 countries, significantly enhancing the organization's resilience against cyber threats by over 250%.
- Presented engaging "Brown Bag" learning sessions to various country offices and departments, elucidating information security practices and fostering a proactive security culture.
- Elevated the organization's security posture through comprehensive education on diverse cyber security attacks and the implementation of effective defense strategies.
- Systematically generated, maintained, and updated documentation and procedures for all processes, ensuring clarity and consistency in operational workflows.
- Led the implementation of PhishER, a sophisticated SIEM dashboard, streamlining the identification and containment of phishing emails.
- Automated the feedback process for reported mails, boosting overall efficiency and response capabilities.
- Proactively monitored and responded to security events on SIEM, IDS/IPS, Endpoint, and SOAR tools, ensuring the timely identification and resolution of potential threats.
- Engaged with clients in a consultative role, documenting, escalating, and resolving security alerts. Conducted informative sessions with prospective clients to showcase the value of security services offered.
- Demonstrated expertise in triaging and containing alerts within a specified SLA window of 24 hours, emphasizing efficiency and adherence to security protocols.
- Collaborated seamlessly with cross-functional teams to fine-tune rules in the SIEM, significantly reducing alert noise and improving the overall efficacy of the security infrastructure.
- Conducted comprehensive threat hunting for indicators of compromise and suspicious network traffic, contributing to a proactive security stance.
XSoar, Microsoft Defender, ServiceNow, Splunk, KnowBe4, Siemplify, IBM QRadar, Microsoft Azure, PhishLabs, Okta, VirusTotal, Urlscanio, Citrix, IDS, Information Security