Summary
Overview
Work History
Education
Skills
Certification
Relocation
Selected Operational Experience
Core Skills
Timeline
Generic

Mason Hill

Sydney,Australia

Summary

Seasoned specialist offering several years of comprehensive experience interpreting and implementing quality assurance standards and investigating customer complaints and non-conformance issues. Practiced and knowledgeable professional possessing excellent problem solving and analytical skills paired with strong knowledge of qa terms, tools and methodologies. Committed to improving overall business processes.

Overview

1
1
Certification
6
6
years of professional experience

Work History

Cyber Warfare Specialist

Australian Army
, Australia
09.2020 - Current
  • Led threat hunting across operational networks using SIEM data, endpoint artifacts, network traffic, and adversary behavior analysis to identify suspicious activity and support remediation.
  • Conduct cybersecurity operations across defense environments, including threat hunting, security monitoring, incident response, forensic analysis, network defense, and operational reporting.
  • Deployed on 2 international and 3 domestic cyber operations supporting threat hunting, intrusion analysis, attack detection, incident response, and technical reporting in mission focused environments.
  • Served as Lead SOC Analyst for Defense Security Operations Centre (DSOC), coordinating alert triage, investigation workflows, escalation decisions, and daily security operations activity.
  • Mapped suspicious activity and investigation findings to MITRE ATT&CK tactics and techniques to support reporting, detection validation, and threat informed defensive actions.
  • Conducted forensic analysis across Windows systems, memory captures, network traffic, endpoint artifacts, and mobile evidence sources to support cyber investigations.
  • Developed and standardized SOPs, operational playbooks, and deployment guidance for Velociraptor rollout, Splunk implementation, and incident response processes, enhancing documentation efficiency and saving 20 man hours per week across SOC and incident response workflows.
  • Led selected NATO exercise activities with approximately 20 personnel, coordinating analysis, reporting, and operational decision making in high tempo multinational scenarios.
  • Cyber Warfare Specialist | Sep 2020 to Present | Australia and international operational environments

Education

Master of Cyber Security -

University of New South Wales Sydney
Sydney, Australia
12-2026

Skills

  • Security operations and threat hunting
  • Incident response and digital forensics
  • SIEM and detection strategies
  • Threat intelligence
  • Endpoint and network defense
  • Process improvement leadership
  • Systems and frameworks management

Certification

  • CompTIA Security+ SY0-701, completed
  • GIAC Defensible Security Architecture (GDSA)
  • GIAC Enterprise Vulnerability Assessor (GEVA)
  • GIAC Security Essentials Certification (GSEC)
  • SANS SEC560: Network Penetration Testing and Ethical Hacking, coursework completed
  • SANS SEC599: Defeating Advanced Adversaries and Purple Team Tactics, coursework completed
  • SANS MGT415: Security Leadership Essentials for Managers, completed
  • CISSP, currently studying

Relocation

United States, E-3 visa eligible, no H-1B lottery required

Selected Operational Experience

  • Supported defensive cyber objectives on live networks where clear communication, disciplined evidence handling, and rapid technical decisions were required., Analyzed host, network, and SIEM data to identify suspicious activity and support containment and remediation actions.
  • Coordinated SOC workflows, prioritized alerts, supported analyst decision making, and briefed findings to technical and non-technical stakeholders., Supported detection validation and operational reporting to improve visibility, escalation quality, and response consistency.
  • Built repeatable workflows for endpoint collection, SIEM onboarding, investigation handoff, reporting, and analyst guidance., Improved repeatable analyst guidance for endpoint collection, SIEM onboarding, investigation handoff, reporting, and escalation workflows, reducing duplicated documentation effort and improving consistency across SOC and incident response activities.

Core Skills

SOC leadership, alert triage, incident escalation, log analysis, detection validation, reporting, analyst mentoring, Hypothesis led hunting, endpoint analysis, network based hunting, adversary behavior analysis, suspicious activity identification, Incident triage, containment support, evidence preservation, root cause analysis, remediation guidance, IR checklist development, Windows artifacts, disk forensics, memory forensics, mobile evidence, network forensics, timeline reconstruction, Splunk, ELK Stack, Elastic Security, log onboarding, dashboarding, alert investigation, detection validation, Velociraptor, Arkime, Wireshark, packet analysis, TCP/IP, DNS, HTTP/S, VPNs, firewalls, Team leadership, analyst mentoring, SOP creation, deployment guidance, operational playbooks, multinational collaboration, Windows, Linux, Active Directory fundamentals, PowerShell, MITRE ATT&CK, incident response lifecycle, Zero Trust, risk management

Timeline

Cyber Warfare Specialist

Australian Army
09.2020 - Current

Master of Cyber Security -

University of New South Wales Sydney
Mason Hill