Summary
Overview
Work History
Education
Skills
Accomplishments
Certification
Timeline
Generic

Michael Hemming

Hudson,WI

Summary

Cybersecurity professional with experience working in a Security Operations Center as an alerts analyst, SOAR, Threat Intelligence, and deploying security tools in customer environments. Several years of experience in system and network administration with several security adjacent duties including achieving and maintaining compliance standards. Proficiency in online security research, planning, execution and maintenance. Skilled at training internal users on security procedures and preventive measures.

Overview

18
18
years of professional experience
1
1
Certification

Work History

Security Analyst - Senior Alert Manager

Ascent Solutions
07.2022 - Current
  • Triaged alerts using Microsoft Sentinel (SIEM) and Microsoft Defender for Endpoint (EDR) product suites for MSSP clients
  • Developed tools as part of SOAR team focusing on tuning alerts and developing automation.
  • Other SOAR operations included developing logic apps, playbooks, and workbooks along with documentation for these tools
  • Onboarding new customers through ARM template deployment, syslog server stand-up and API connections for data ingestion into our SIEM
  • Researching and assisting with deployment of new Microsoft security products including Microsoft Purview, Azure Active Directory Identity Protection, and Microsoft Defender for Cloud Apps
  • Integrated our SIEM with other security products like Splunk Phantom, SentinelOne, Cisco DUO and ASA amongst others
  • Worked in Threat Intelligence cell and drafted customer CTI bulletins
  • Conducted security audits to identify vulnerabilities.
  • As Senior Alert Manager, handled customer escalations and coordinated Incident Response with customer security team.
  • Actively contained threats while performing Tier 2 and 3 incident response.
  • Created a new escalation workflow using automation tools which saved the org $30k on ITSM expenses annually.

Teaching Assistant - Cybersecurity Bootcamp

EdX
09.2022 - 06.2024
  • Primarily assist in 6 month Cybersecurity boot camp teaching several concepts.
  • Helped with grading assignments and tests, providing constructive feedback to students based on results.
  • Assisted teachers with classroom management and document coordination to maintain positive learning environment.
  • Supported classroom activities, tutoring, and reviewing work.
  • Assisted in maintaining engaging and respectful educational environment by promoting discipline and cooperation.
  • Facilitated activities in small groups to reinforce concepts taught by class teacher.
  • Managed classroom behavior effectively, creating a positive learning atmosphere conducive to academic success.

Assistant General Manager

Overhead Door Co
04.2022 - 07.2022
  • Mentored and motivated team members to achieve challenging business goals
  • Resolved problems promptly to elevate customer approval
  • Managed team schedule with eye for coverage needs and individual strengths

Operations Manager

Crawford Door Sales Co. Of The Twin Cities
03.2017 - 02.2022
  • Extensive experience with Win OS (XP - 10) and experience with Windows Server 2012 r2 and 2019
  • Stayed up to date on current network security threats, worked with MSPs to improve security
  • Used education and compliance testing to ensure employees followed email and network security protocols
  • Rewrote company handbook and safety manual focusing on deficient areas for added employee protections and reduced company liability
  • Assisted in development and deployment of a new proprietary business app and deployed to AWS cloud to improve accessibility and business continuity.
  • Spearheaded and completed a project migrating all critical business tools to the Cloud (Azure).

Project/Service Manager

Crawford Door Sales Co. Of The Twin Cities
08.2014 - 03.2017
  • Receive, create, and dispatch service requests
  • Create quotes for large ticket items and manage project
  • Verify jobsite requirements and safety protocols are met
  • Maintained effective customer service by responding to service requests quickly to increase overall sales by 15%
  • Procured materials and equipment for completion of projects.

Residential Service Manager

Crawford Door Sales Co. Of The Twin Cities
08.2006 - 08.2014
  • Received and scheduled service calls, maintained stock levels, provide customer service, dispatch technicians
  • Managed company cell phone network as well as company vehicle fleet and equipment
  • Redirected marketing budget to SEO from print and increased social media presence, reducing overall budget by 25% while substantially increasing market reach

Education

MN | Bootcamp / CompTIA Security + Certification Cybersecurity/CompTIA Certification Prep -

University of Minnesota - Twin Cities
Minneapolis, MN
06.2022

Bachelor of Science - Law Enforcement

Minnesota State University
Mankato, MN
05.2006

Skills

  • Cybersecurity Operations
  • SOAR development and Implementation
  • Employee relations and conflict resolution
  • Microsoft Security Products (SIEM, EDR)
  • Risk analysis and management
  • System and Network Administration
  • Operations Management
  • Threat Intelligence Research
  • Azure Security Expertise
  • AWS Administration
  • PowerShell, CLI, Linux experience
  • Technical Writing and md formatting
  • Project Management
  • Security Certified
  • Tenable Nessus

Accomplishments

Escalation Playbook and Zendesk replacement

  • Create a new escalation workflow to replace the existing workflow
  • Reduced Senior Alert Manager required workflow actions from 15-20 depending on client, to an average of 5.
  • This reduced time to escalation from over 15 minutes to less than 5 minutes.
  • Eliminated complicated processes that required integrating our ITSM system with the client's ITSM.
  • The new workflow integrated with several disparate ITSM platforms and customer escalation procedures
  • Removed the need for additional ITSM licenses for the SOC team, reducing organizations costs by $30k annually immediately upon implementation with another $10k realized after org was able to re-negotiate licenses with the seat reduction
  • Workflow was designed for easy deployment and customization to customer environment


Development of proprietary accounting package


  • Represented client-side for development, testing, and deployment of ground-up build of proprietary accounting package
  • Performed all client-side alpha testing, sandbox deployments, and live deployments
  • Assisted developer in code debugging, feature lists, and troubleshooting
  • Software is proprietary so no sample work is available but references are available upon request
  • Professional contact for the project was Jack Baugh, Data Access Worldwide


Azure Cloud Migration


  • Researched and partnered with MSP for migrating all on-prem servers and resources to the cloud
  • Was on-site point of contact for deployment and troubleshooting
  • Deployed security resources related to DLP, Identity protection, and maintaining CIA for IP and resources.

Certification

  • Cybersecurity Boot Camp https://www.credly.com/badges/5526b35e-440b-43c7-93fa-1de7a1c3e006/public_url
  • CompTIA Security+ Certification https://www.credly.com/badges/90f749b5-037c-4228-b973-bd01542cf32c/public_url

Timeline

Teaching Assistant - Cybersecurity Bootcamp

EdX
09.2022 - 06.2024

Security Analyst - Senior Alert Manager

Ascent Solutions
07.2022 - Current

Assistant General Manager

Overhead Door Co
04.2022 - 07.2022

Operations Manager

Crawford Door Sales Co. Of The Twin Cities
03.2017 - 02.2022

Project/Service Manager

Crawford Door Sales Co. Of The Twin Cities
08.2014 - 03.2017

Residential Service Manager

Crawford Door Sales Co. Of The Twin Cities
08.2006 - 08.2014

MN | Bootcamp / CompTIA Security + Certification Cybersecurity/CompTIA Certification Prep -

University of Minnesota - Twin Cities

Bachelor of Science - Law Enforcement

Minnesota State University
Michael Hemming