Work Preference
Summary
Overview
Work History
Education
Skills
Certification
Timeline
Cybersecurity Projects
Professional Development
Generic
Open To Work

LOUIS BOAH

Silver Spring,MD

Work Preference

Job Search Status

Open to work
Desired start date: Flexible

Desired Job Title

SOC AnalystCyber Net Defense Analyst (SOC)IT Security AnalystHelp Desk Supportsecurity operation analyst

Work Type

Full TimePart TimeContract WorkGig WorkConsultingVolunteerSeasonal Work

Location Preference

RemoteHybrid
Location: Silver Spring, MDVirginia Beach, VAWashington, DC
Open to relocation: Yes

Important To Me

401k matchHealthcare benefitsCareer advancement

Summary

CompTIA CySA+ certified Cybersecurity Analyst with hands-on experience in Security Operations Center (SOC) environments, specializing in threat detection, incident response, threat hunting, vulnerability management, and security monitoring. Experienced in investigating endpoint, identity, network, and cloud security events using Microsoft Sentinel, Microsoft Defender XDR, Splunk Enterprise, Elastic Stack, CrowdStrike Falcon, Microsoft Entra ID, and Nessus. Skilled in analyzing Indicators of Compromise (IOCs), identifying malicious activity across multiple log sources, supporting incident containment and remediation, and improving organizational security posture. Passionate about continuous learning and committed to protecting enterprise environments through proactive threat detection and security best practices.

Overview

1
1
Certificate
16
16
years of professional experience

Work History

SOC Analyst

Miracle Cyber
06.2025 - Current
  • Monitor, investigate, and triage security alerts across Microsoft Sentinel, Microsoft Defender XDR, Splunk Enterprise, Elastic Stack, and Suricata IDS to identify and respond to potential cyber threats.
  • Perform proactive threat hunting using SIEM platforms, endpoint telemetry, and threat intelligence to identify indicators of compromise and suspicious activity.
  • Investigate endpoint, identity, and network security incidents using Microsoft Defender for Endpoint, Defender for Identity, CrowdStrike Falcon, and Microsoft Entra ID.
  • Investigated phishing attacks by analyzing malicious email headers, attachments, embedded URLs, and authentication events, recommending containment and remediation actions to mitigate threats.
  • Reviewed and analyzed user sign-in logs (Entra ID), Windows Event Logs, Sysmon logs, IIS logs, DNS traffic, HTTP, ICMP, and FortiGate firewall logs to identify anomalous behavior and facilitate incident investigations.
  • Reviewed Nessus vulnerability assessment results, validated findings, prioritized risks, and collaborated with IT teams to enhance remediation efforts.
  • Escalate high-severity incidents while maintaining accurate documentation throughout containment, eradication, and recovery activities.
  • Produce detailed incident reports, documenting timelines, evidence, root causes, and remediation recommendations.

Cyber Net Defense Analyst (SOC)

Royal Bank of Canada
09.2019 - 05.2025
  • Investigated security alerts and coordinated incident response activities for phishing, malware infections, unauthorized access attempts, and suspicious endpoint behavior, enhancing overall security posture.
  • Performed endpoint and network artifact analysis to identify attack techniques, support forensic investigations, and assist with threat containment.
  • Collaborated with security engineering teams to tune SIEM detection rules, reducing false positives and improving alert quality.
  • Documented Indicators of Compromise (IOCs), contributing to threat intelligence and improving future detection efforts.
  • Maintained comprehensive incident documentation to support operational reporting and compliance, facilitating effective knowledge sharing across teams.
  • Supported phishing simulation campaigns by identifying common attack vectors and recommending targeted user awareness initiatives.

IT Security Analyst

CIG Microfinance Ghana Ltd
08.2015 - 08.2019
  • Monitored endpoint protection, antivirus, firewall, and security solutions to identify and respond to potential threats, enhancing overall security posture.
  • Investigated phishing emails, malware incidents, and suspicious user activity, mitigating security risks and protecting sensitive data.
  • Conducted vulnerability assessments, documented findings, and supported remediation initiatives.
  • Implemented Multi-Factor Authentication (MFA) to strengthen identity security across enterprise systems.
  • Installed endpoint protection software, applied security patches, and maintained system hardening practices to safeguard systems against vulnerabilities.
  • Managed Active Directory users, groups, permissions, and access controls.
  • Maintained security documentation, incident records, and change management activities.
  • Delivered cybersecurity awareness training to employees, promoting phishing awareness and secure computing practices.

Help Desk Support

Dream Finance Ltd
07.2010 - 07.2015
  • Delivered technical support for Windows, Microsoft 365, Outlook, Teams, VPN, DNS, DHCP, printers, and networking infrastructure.
  • Diagnosed and resolved hardware, software, and connectivity issues, ensuring adherence to service-level expectations.
  • Managed Active Directory user provisioning, password resets, permissions, onboarding, and offboarding.
  • Educated users on password security, phishing awareness, and Multi-Factor Authentication (MFA) to enhance overall security awareness.
  • Installed operating systems, enterprise software, and security updates, ensuring endpoint compliance and system integrity.

Education

HND - Accountancy

Takoradi Technical University
Takoradi, Ghana

Skills

  • Endpoint security
  • Log analysis
  • Threat intelligence
  • Compliance standards
  • Network monitoring
  • Regular expressions
  • Malware analysis
  • Security policies
  • Python programming
  • SIEM management
  • Vulnerability assessment
  • Web security
  • Access control
  • Security analysis
  • TCP and IP protocols
  • Encryption techniques
  • Mobile security
  • Incident response
  • Nmap scanning
  • Security awareness training
  • Data loss prevention
  • Forensic investigation
  • Identity management
  • Wireless security
  • Intrusion detection
  • Virtualization security
  • PowerShell scripting
  • DNS management
  • Penetration testing
  • Physical security
  • Social engineering
  • Database security
  • Packet analysis
  • Cloud security
  • Application security

Certification

  • CompTIA CySA+
  • Certificate in Cyber Security Analysis (CBA & IIBA)
  • Certified Ethical Hacker (CEH) – In Progress
  • Microsoft SC-200 (Planned)
  • Microsoft SC-900 (Planned)

Timeline

SOC Analyst

Miracle Cyber
06.2025 - Current

Cyber Net Defense Analyst (SOC)

Royal Bank of Canada
09.2019 - 05.2025

IT Security Analyst

CIG Microfinance Ghana Ltd
08.2015 - 08.2019

Help Desk Support

Dream Finance Ltd
07.2010 - 07.2015

HND - Accountancy

Takoradi Technical University

Cybersecurity Projects

  • Impossible Travel Investigation using Microsoft Sentinel
  • Device Code Phishing Investigation
  • Brute Force Attack Detection & Investigation
  • Ransomware Investigation
  • Malware Detection & Analysis
  • Suspicious PowerShell Investigation
  • Privilege Escalation Investigation
  • Lateral Movement Detection
  • Microsoft Defender XDR Incident Investigation
  • Microsoft Entra ID Sign-in Investigation

Professional Development

  • Continuous SOC Lab Practice
  • Threat Hunting Exercises
  • Microsoft Security Hands-on Labs
  • Incident Response Simulations
  • Vulnerability Management Labs
LOUIS BOAH