
Results-driven Cybersecurity and Security Operations professional with 5+ years of experience in Security Operations Center (SOC) environments, incident response, threat detection, security monitoring, vulnerability management, and threat hunting across enterprise hybrid and cloud environments. Experienced in investigating and responding to security incidents involving phishing, Business Email Compromise (BEC), malware, suspicious authentication, account compromise, endpoint threats, and network-based attacks. Proven success reducing SIEM false positives by 30–45% and improving Mean Time to Respond (MTTR) by 25–35% through detection tuning, incident response playbooks, automation, and improved escalation workflows. Hands-on experience with Microsoft Sentinel, IBM QRadar, Splunk, Microsoft Defender XDR, CrowdStrike Falcon, SentinelOne, Proofpoint, Microsoft Entra ID, Intune, Nessus, Qualys, Wireshark, and Nmap. Strong knowledge of NIST CSF, NIST SP 800-61, MITRE ATT&CK, Cyber Kill Chain, incident response, vulnerability management, threat intelligence, and security risk management.