Summary
Overview
Work History
Education
Skills
Certification
Timeline
PROFESSIONAL ATTRIBUTES
Generic

Jonathan Zwygart

Springfield,OR

Summary

Highly motivated cybersecurity professional with 5+ years of experience in Digital Forensics, Incident Response (DFIR), and enterprise security operations, specializing in insider risk investigations, detection triage, threat hunting, and incident lifecycle management. Proven ability to conduct confidential investigations, analyze complex host, network, and cloud telemetry, and deliver clear executive-level communications (EXSUMS). Hands-on experience with CrowdStrike, Splunk, SIEM workflows, and forensic tooling within regulated healthcare environments. Adept at working independently in high-trust roles requiring discretion and sound judgment.

Overview

6
6
years of professional experience
1
1
Certification

Work History

Information Security Analyst

PeaceHealth Hospital
Vancouver, WA
04.2022 - Current
  • Conduct confidential security and insider-related investigations, triaging detections and determining appropriate response actions including containment, escalation, and live response.
  • Perform multi-source investigations leveraging endpoint telemetry, network data, SIEM logs, and open-source intelligence to validate alerts and identify policy violations.
  • Communicate directly with end users when appropriate regarding potential security or policy violations, maintaining professionalism and discretion.
  • Produce clear, concise investigation summaries and executive-level updates (EXSUMs) for senior leadership and stakeholders.
  • Support incident response lifecycle activities, including alert triage, evidence collection, remediation guidance, and post-incident documentation.
  • Assist in alert tuning and detection refinement to reduce false positives and improve fidelity across security tooling.
  • Identify logging, visibility, and control gaps across enterprise systems and contribute recommendations for improved detection coverage.
  • Support security automation initiatives, integrating tools and workflows to accelerate response and investigation efficiency.
  • Maintain accurate documentation and tracking of all investigations within appropriate case management systems.
  • Serve as a trusted advisor and subject matter expert on security incidents, investigations, and emerging threats.

Cyber Security Analyst

Mountain View Hospital
Idaho Falls, ID
08.2019 - 04.2022
  • Provided front-line security event triage and investigation, including cybercrime and advanced threat activity.
  • Conducted host, network, and log analysis to validate detections and support incident containment and remediation.
  • Assisted in forensic evidence collection and analysis in support of internal investigations and compliance requirements.
  • Delivered written and verbal communications translating technical findings for both technical teams and non-technical stakeholders.
  • Contributed to process development, playbooks, and documentation aligned to NIST-based incident response frameworks.
  • Supported ongoing improvements to monitoring, detection logic, and response procedures.

Education

Bachelor of Science - Cybersecurity & Information Assurance

Western Governors University (WGU)
Salt Lake City

Skills

  • Insider Threat & Risk Investigations
  • Incident Response (Triage, Containment, Escalation)
  • Detection Engineering & Alert Tuning
  • Host, Network & Log Analysis (Windows, macOS, Linux)
  • Security Metrics & Risk Reporting
  • Automation & Scripting (PowerShell, Bash, Python)
  • Confidential Data Handling & Policy Enforcement
  • Endpoint & SIEM Platforms: CrowdStrike Falcon, Splunk, Symantec Endpoint Protection, Cisco Security Suite
  • Forensics & IR Tooling: FTK, EnCase, X-Ways, KAPE, Velociraptor, Volatility
  • Operating Systems: Windows, macOS, Linux (theoretical and practical)
  • Networking & Analysis: TCP/IP, IDS/IPS alerting, TCPDump, Wireshark
  • Log & Data Analysis: SIEM workflows, REGEX, SED, AWK, SQL, SQLite3
  • Scripting & Automation: PowerShell, Bash, Python

Certification

  • ISC² - SSCP
  • CompTIA - Security+
  • CompTIA - Project+
  • SANS - GSEC
  • SANS - GCFE
  • SANS - GCFA
  • AXELOS - ITIL

Timeline

Information Security Analyst

PeaceHealth Hospital
04.2022 - Current

Cyber Security Analyst

Mountain View Hospital
08.2019 - 04.2022

Bachelor of Science - Cybersecurity & Information Assurance

Western Governors University (WGU)

PROFESSIONAL ATTRIBUTES

  • Trusted handler of sensitive and confidential information
  • Strong attention to detail with excellent written and verbal communication
  • Ability to manage multiple concurrent investigations independently
  • Collaborative team member with a positive, professional demeanor
  • Continuous learner and contributor to incident response best practices
Jonathan Zwygart