Experienced cybersecurity professional with specialization in Cloud-based security operations and Incident Response. Excellent communicator and strategist with the proven skills to thrive in a fast-paced, team-oriented environment.
Overview
10
10
years of professional experience
1
1
Certification
Work History
Lead Incident Response Analyst
TikTok - USDS
08.2024 - Current
Developed and implemented cloud-specific forensic automation processes for AWS and Oracle Cloud Infrastructure (OCI), enhancing the organization's ability to respond, at-scale, to host-based incidents in complex environments.
Led cross-functional efforts to transfer containment capabilities (e.g. host isolation, network blocks, user account disablement) to CSOC, reducing reliance on other teams, improving response times, and advancing incident response maturity
Built XSOAR automations to streamline BAU tasks, creating a single-pane-of-glass interface and automating data routing for improved efficiency.
Led a team of 5 analysts through high-visibility incidents, briefing executives and driving cross-functional collaboration with legal, compliance, and engineering to close visibility and response gaps.
Incident Response Analyst - Senior Consultant
Visa Inc.
08.2022 - Current
Assumed Incident Command role to coordinate with relevant stakeholders, in order to drive high severity incidents to resolution
Lead IR efforts to assist security engineering with implementation and deployment of cloud threat detection measures (AWS Guard Duty/GCP Security Command Center)
Led initiative to define and automate cloud-native response capabilities in order to effectively mitigate threats in Visa's multi-cloud environment
Oversaw 20+ analysts and provided consultation for complex and high-impact security incidents.
Tasked with drafting and publishing SOPs, playbooks, and other documentation for VSIRT team.
Security Incident Handler - GovCloud CSIRT
Salesforce
11.2018 - 08.2022
Lead incidents by coordinating and directing multiple subject matter experts internal and external to the organization
Perform log reviews to investigate possible system compromise and/or unauthorized access
Develop monthly reports sharing information on incidents occurring within the Salesforce Government Cloud Boundary.
Worked with GRC and Legal teams to address gaps that caused incidents, and, and subsequently implemented preventative actions to reduce the likelihood of similar incidents
Create documentation and playbooks focused on enhancements to detection and incident response capabilities and other improvements to CSIRT workflow and processes
Senior Security Analyst
Howard University
01.2018 - 10.2019
Utilized Network auditing, and SIEM tools to perform investigations during security incidents
Worked directly with CISO to implement campus-wide VPN and multi-factor authentication solutions
Assisted legal team with eDiscovery and device forensics requests
Performed routine vulnerability assessment scans on production servers and provided mitigation recommendations to necessary parties
SOC Analyst
MKA Cyber
05.2017 - 01.2018
Monitored and investigated alerts generated by SIEM tools. Reviewed logs to hunt for malware, traffic anomalies, and any compromise to the overall security posture of the network.
Performed semi-monthly scans on client network to asses critical vulnerabilities, and track network assets.
Security Analyst
Cyberdata Technologies/U.S. Census Bureau
07.2015 - 05.2017
Assisted networking team in troubleshooting VPN issues related to laptops assigned to Census employees
Assisted in configuring and managing virtual smart cards assigned to Census employees.
Help Desk Analyst
American Institutes for Research
05.2015 - 07.2015
Initiated video conferencing sessions (Citrix GoToMeeting) sessions for executive meetings. Provided live support and troubleshooting.
Education
Prince George's Community College
Upper Marlboro, MD
Master of Science - Cybersecurity
Georgia Institute of Technology
Atlanta, GA
2025
Bachelor of Arts - Communications
University of Maryland
College Park, MD
2014
Skills
Reporting and Documentation: Incident Reports, Regulatory Compliance, IR SOPs/Runbooks