Security Analyst II
Telephon & Data Systems
2020-03-01-Present
- Actively responded to incidents, including isolating impacted systems, containing threats, and initiating incident response plans
- De...
- Actively responded to incidents, including isolating impacted systems, containing threats, and initiating incident response plans
- Developed Python and Bash scripts to automate the security data enrichment processes necessary to identify and investigate security events efficiently
- Developed incident response procedures for prioritizing detections and addressing threat hunting leads using security intelligence
- Researched, developed, and implemented threat detection logic necessary for generating alerts for anomalous/suspicious event patterns
- Developed log management processing logic to ingest and parse actionable intelligence for threat detection and response procedures using the Elastic Stack
- Lead security engineering team to adopt a DevOps workflow and transitioned to a source code version control system to manage application configuration code for security information and event management (SIEM) solution
- Managed daily operational security alerts and triaged according to team incident response procedures
- Evaluated implementation and transition to an API management solution and advised project team on proactive security measures integrated into the development team's workflow
Bash
PowerShell
Pandas
View more
Bash
PowerShell
Pandas
Elasticsearch
Python 3
Kibana
Logstash
Splunk
Apache Kafka
Linux System Administration
View more