
Results-driven Cybersecurity Analyst with extensive hands-on experience supporting enterprise-scale Security Operations Centers (SOC). Proven expertise in threat detection, incident response, SIEM monitoring, log analysis, vulnerability management, and endpoint security. Highly skilled in operating within 24/7 SOC environments, collaborating with cross-functional teams, and proactively reducing organizational risk through threat hunting and security automation.
Security Operations:
SOC Tier I/Tier II, Incident Detection & Response, Threat Hunting, Log Analysis, Alert Triage, Escalation, Runbooks
SIEM & Monitoring:
Splunk Enterprise / Splunk ES, Microsoft Sentinel, IBM QRadar, LogRhythm, ELK Stack
Endpoint, Network & Cloud Security:
Microsoft Defender for Endpoint, CrowdStrike, Firewalls, IDS/IPS, VPN, Active Directory, Azure AD, AWS & Azure Security Monitoring
Vulnerability & Risk:
Vulnerability Management, CVE Analysis, Patch Validation, Risk Assessment
Frameworks & Standards:
NIST CSF, NIST 800-53, NIST 800-61, MITRE ATT&CK, ISO 27001, SOC 2
OS & Scripting:
Windows, Linux, PowerShell (basic), Python (basic), Bash