Results-driven Cyber Security Analyst specializing in CrowdStrike Falcon, vulnerability management, and incident response. Resolved 1,333 vulnerabilities, strengthening security posture and threat detection. Enhanced insurance premium retention through improved post-bind security support and effective remediation strategies.
Work History
Cyber Security Analyst
4 Years 3 Months
Coalition | 05.2022 - Current
Implemented incident response protocols to mitigate potential breaches effectively.
Analyzed security alerts, prioritizing threats for timely resolution and risk management.
Conducted vulnerability assessments to identify security gaps and enhance system defenses.
Collaborated with cross-functional teams to ensure compliance with regulatory standards.
Senior leader on security team that helped protect 170 million in cyber insurance premium
Root cause analysis reviews including sharing perspectives on MDR/EDR gaps, breach response for VPN vulnerabilities
Over 1,333 vulnerabilities resolved. Managed threat monitoring/attack surface monitoring and response for internal operations and client-facing environments.
Resolved high-volume support tickets and introduced standardized processes using Salesforce
Assisted over 100 business owners with incident response planning using IR template.
Align discovered vulnerabilities and security controls against industry frameworks such as NIST CSF, NIST 800-53, CIS Controls, and MITRE ATT&CK to assess policyholder risk postures.
CVE Deconstruction: Analyze newly published CVEs, zero-day exploits, and threat actor tactics to understand their potential impact on policyholders.
Identify critical infrastructure weaknesses (e.g., missing SPF/DKIM, unpatched remote access tools, lack of MFA) and triage alerts based on real-world threat intelligence.
Translate complex technical vulnerabilities into clear, actionable remediation steps for client stakeholders, IT directors, and C-level executives.
Delivered technical support and troubleshooting for CrowdStrike Falcon endpoint security platform across Windows, macOS, and Linux environments, ensuring optimal system performance and user satisfaction.
Diagnose Falcon Sensor installation, deployment, connectivity, health, and communication issues across enterprise endpoints.
Investigate endpoint telemetry, sensor logs, system events, and diagnostic data to identify root causes of technical and security-related issues.
Utilize CrowdStrike Falcon Exposure Management to identify, assess, prioritize, and remediate security exposures across enterprise endpoints and infrastructure.
Leverage CrowdStrike Falcon Sensor telemetry to maintain visibility into endpoint vulnerabilities and software exposure.
Apply knowledge of CVEs, CVSS, vulnerability assessment, endpoint security, patch management, and risk-based prioritization to vulnerability-management activities.
IOC system support for SHA-256 and MD5 hashes, along with IP addresses and domains to track known malicious behavior.
Leveraged Splunk SIEM/log-management platform
Application Support Engineer II – Abuse Operations
2 Years 3 Months
Ticketmaster | 03.2019 - 06.2021
Provided BOT mitigation and investigation using Elk Stack tools to reduce incidents. malicious web traffic during Livenation/Ticketmaster onsales.
Examine Splunk logs for threat detection and security investigation as well as BOT tracking.
Analyzed application and traffic telemetry to identify abnormal request patterns, account activity, and transaction behavior; modified structured configuration rules to support bot detection, throttling, challenge, and blocking workflows during high-volume onsales.
Evaluated, configured, and deployed new security tools, including comprehensive documentation and knowledge transfer of GIT repositories.
Used JSON-based configuration and text-editing tools to maintain and modify application rules supporting abuse detection and mitigation workflows.
Mentor internal employees regarding automated fraud attacks intended to interfere with Verified Fan accounts and cause operational problems during high-demand sales.
NOC
1 Year
J2 Global Communications, Efax.com | 01.2017 - 01.2018
Ensured rapid fault isolation, supported escalations and incident communications, and assumed accountability for operational effectiveness of NOC through administration of business processes, maintenance of interdepartmental relationships, and identification of improvement opportunities.
Provide root cause analysis complete with a timeline.
Monitored and supported 24×7 network operations for J2 Global's telecommunications and cloud-based services. Monitored all systems across multiple platforms which include: servers, phone systems, and networks.
Served as point of escalation for high-complexity technical issues, delivering advanced troubleshooting and rapid resolution across critical enterprise infrastructure.
Coordinated with network engineering, systems administration, application support, and other technical teams during production incidents.
Analyzed monitoring alerts, system logs, and network events to identify the source and impact of production incidents.
Troubleshoot and resolve level1 incidents on UNIX, Windows systems, remote co-lo capacity such as power and connectivity problems, and telecom and carrier functions such as circuit outages and device failures.
Network Support Engineer
3 Years
Ticketmaster | 01.2013 - 01.2016
Configured Cisco routers and switches, ensuring reliable IPv4 connectivity through Telnet and SSH.
Performed Tier 1 Cisco network troubleshooting, diagnosing connectivity, routing, and device availability issues.
Monitored AWS cloud infrastructure and production applications for availability, performance, and service-impacting incidents.
Utilized monitoring and performance-management platforms including Nimbus, SolarWinds, Keynote, Rigor, and Nagios to identify infrastructure and application issues.
Verified that network devices and infrastructure components were properly communicating, pingable, and successfully integrated into monitoring systems.
Investigated infrastructure alerts using network telemetry, ping, traceroute, Linux CLI, TCP/IP, and OSI-model troubleshooting to determine incident scope and root cause.
Education
Associate of Applied Science - Information And Computer Systems
Southwestern College | Chula Vista, CA | 06-2000
No Degree - Computer And Information Sciences
Cape & Bern Technical Institute | Atlanta, GA | 09-2001
High School Diploma
Blair High | Pasadena, CA | 06-1998
Skills
Security information systems
Network security
Firewall configuration
Incident response management
Security operations center
Firewall management
Intrusion detection
Two-factor authentication
SIEM management
Security protocols
Decision-making
Security auditing
Accomplishments
Rock Star Award at Ticketmaster
Continuous growth and learning
Maintained strong customer service performance with a 92% satisfaction rate
Certification
Comptia A+
NIST compliance
Cisco Networking certificate
Timeline
Cyber Security Analyst
Coalition
05.2022 - CurrentRead More
Technical Support Engineer
CrowdStrike
10.2021 - 03.2022Read More
Application Support Engineer II – Abuse Operations
Ticketmaster
03.2019 - 06.2021Read More
NOC
J2 Global Communications, Efax.com
01.2017 - 01.2018Read More
Network Support Engineer
Ticketmaster
01.2013 - 01.2016Read More
Cape & Bern Technical Institute
No Degree from Computer And Information Sciences
Read More
Southwestern College
Associate of Applied Science from Information And Computer Systems