

Cybersecurity professional with 5+ years of experience across Security Operations, Incident Response, Cloud Security, and Data Compliance. Proven expertise in monitoring, analyzing, and responding to security incidents using Splunk, QRadar, and ServiceNow (SNOW), with hands-on experience in IDS, EDR, and SIEM tools. Skilled in conducting Cyber Kill Chain and MITRE ATT&CK analyses, performing root cause investigations, and coordinating with Incident Response, Forensics, and third-party teams to mitigate risks. Experienced in developing and maintaining ATO documentation, cloud security configurations in AWS and Azure, and continuous monitoring aligned with NIST and FISMA standards. Adept at enhancing cyber awareness, implementing security controls, and mentoring junior analysts, contributing to improved organizational security posture and operational resilience.
Security Monitoring & SIEM: Splunk ES, QRadar, ServiceNow (SNOW), Tenable, IDS/IPS, EDR tools (CrowdStrike, Carbon Black)
Incident Response & Threat Analysis: Cyber Kill Chain, MITRE ATT&CK, Root Cause Analysis, Threat Detection & Mitigation, Malware Analysis, IOC Handling
Cloud Security & Compliance: AWS (EC2, S3, VPC, IAM), Azure (VM, VNet, Security Center), Cloud Security Assessments, NIST RMF, FISMA, NIST SP 800-137
Networking & Protocols: TCP/IP, DNS, NetFlow, HTTP/HTTPS, Web Traffic Analysis, Wireshark
Vulnerability & Risk Management: Risk Assessments, POA&Ms, SSPs, SARs, Security Control Implementation, Third-Party & Vendor Risk Reviews
Tools & Platforms: ServiceNow, Splunk, QRadar, Wireshark, EDR Solutions, Microsoft Office Suite, SOC Dashboards
Processes & Documentation: Standard Operating Procedures (SOPs), Operational Level Agreements (OLAs), ATO Documentation, Incident Reports, Compliance Reports