Summary
Overview
Work History
Education
Skills
Certification
Affiliations
Timeline
Generic

Joshua George

DC Metro Area,VA

Summary

Experienced cybersecurity professional with specialization in Cloud-based security operations and Incident Response. Excellent communicator and strategist with the proven skills to thrive in a fast-paced, team-oriented environment.

Overview

10
10
years of professional experience
1
1
Certification

Work History

Lead Incident Response Analyst

TikTok - USDS
08.2024 - Current
  • Developed and implemented cloud-specific forensic automation processes for AWS and Oracle Cloud Infrastructure (OCI), enhancing the organization's ability to respond, at-scale, to host-based incidents in complex environments.
  • Led cross-functional efforts to transfer containment capabilities (e.g. host isolation, network blocks, user account disablement) to CSOC, reducing reliance on other teams, improving response times, and advancing incident response maturity
  • Built XSOAR automations to streamline BAU tasks, creating a single-pane-of-glass interface and automating data routing for improved efficiency.
  • Led a team of 5 analysts through high-visibility incidents, briefing executives and driving cross-functional collaboration with legal, compliance, and engineering to close visibility and response gaps.


Incident Response Analyst - Senior Consultant

Visa Inc.
08.2022 - Current
  • Assumed Incident Command role to coordinate with relevant stakeholders, in order to drive high severity incidents to resolution
  • Lead IR efforts to assist security engineering with implementation and deployment of cloud threat detection measures (AWS Guard Duty/GCP Security Command Center)
  • Led initiative to define and automate cloud-native response capabilities in order to effectively mitigate threats in Visa's multi-cloud environment
  • Oversaw 20+ analysts and provided consultation for complex and high-impact security incidents.
  • Tasked with drafting and publishing SOPs, playbooks, and other documentation for VSIRT team.

Security Incident Handler - GovCloud CSIRT

Salesforce
11.2018 - 08.2022
  • Lead incidents by coordinating and directing multiple subject matter experts internal and external to the organization
  • Perform log reviews to investigate possible system compromise and/or unauthorized access
  • Develop monthly reports sharing information on incidents occurring within the Salesforce Government Cloud Boundary.
  • Worked with GRC and Legal teams to address gaps that caused incidents, and, and subsequently implemented preventative actions to reduce the likelihood of similar incidents
  • Create documentation and playbooks focused on enhancements to detection and incident response capabilities and other improvements to CSIRT workflow and processes

Senior Security Analyst

Howard University
01.2018 - 10.2019
  • Utilized Network auditing, and SIEM tools to perform investigations during security incidents
  • Worked directly with CISO to implement campus-wide VPN and multi-factor authentication solutions
  • Assisted legal team with eDiscovery and device forensics requests
  • Performed routine vulnerability assessment scans on production servers and provided mitigation recommendations to necessary parties

SOC Analyst

MKA Cyber
05.2017 - 01.2018
  • Monitored and investigated alerts generated by SIEM tools. Reviewed logs to hunt for malware, traffic anomalies, and any compromise to the overall security posture of the network.
  • Performed semi-monthly scans on client network to asses critical vulnerabilities, and track network assets.

Security Analyst

Cyberdata Technologies/U.S. Census Bureau
07.2015 - 05.2017
  • Assisted networking team in troubleshooting VPN issues related to laptops assigned to Census employees
  • Assisted in configuring and managing virtual smart cards assigned to Census employees.

Help Desk Analyst

American Institutes for Research
05.2015 - 07.2015
  • Initiated video conferencing sessions (Citrix GoToMeeting) sessions for executive meetings. Provided live support and troubleshooting.


Education

Prince George's Community College
Upper Marlboro, MD

Master of Science - Cybersecurity

Georgia Institute of Technology
Atlanta, GA
2025

Bachelor of Arts - Communications

University of Maryland
College Park, MD
2014

Skills

  • Reporting and Documentation: Incident Reports, Regulatory Compliance, IR SOPs/Runbooks
  • Incident Command/Unified Command training
  • DFIR in Cloud environments: AWS, GCP, Azure
  • Malware/PCAP/Forensics Analysis: CAPE, Moloch, Corelight, SIFT
  • EDR/XDR: Microsoft Defender, Crowdstrike, Tanium, Sentinel One
  • Vulnerability Management: Nexpose, Nesses, Qualys
  • SIEM/SOAR: Splunk, SumoLogic, QRadar, Elastic, Resilient
  • Automation & Orchestration proficiency: creating SOAR workflows (XSOAR), scripting (Python, PowerShell, Bash), and cloud-native (AWS Lambda, Google Cloud Functions)

Certification

  • SANS - SEC573: Automating Information Security with Python
  • SANS - GIAC Certified Forensic Analyst (GCFA)
  • SANS - GIAC Certified Incident Handler (GCIH)
  • Certified Information Systems Security Professional (CISSP)
  • AWS Certified Security - Specialty
  • AWS Solutions Architect - Associate
  • CompTIA Security+

Affiliations

  • National Society of Black Engineers (Washington DC Chapter) - Youth Mentor
  • International Information System Security Certification Consortium (ISC)² - Scholarship Review Committee

Timeline

Lead Incident Response Analyst

TikTok - USDS
08.2024 - Current

Incident Response Analyst - Senior Consultant

Visa Inc.
08.2022 - Current

Security Incident Handler - GovCloud CSIRT

Salesforce
11.2018 - 08.2022

Senior Security Analyst

Howard University
01.2018 - 10.2019

SOC Analyst

MKA Cyber
05.2017 - 01.2018

Security Analyst

Cyberdata Technologies/U.S. Census Bureau
07.2015 - 05.2017

Help Desk Analyst

American Institutes for Research
05.2015 - 07.2015

Prince George's Community College

Master of Science - Cybersecurity

Georgia Institute of Technology

Bachelor of Arts - Communications

University of Maryland
Joshua George