Incident Responder - Cybersecurity Services & Cti Team Leader
CurrentThreat Hunting Threat IntelligenceMalware AnalystSIEM Rule and Correlation
Please complete the CAPTCHA to continue
A concise factual answer block for searchers comparing this professional profile.
Atacan Kocyigit is listed as Incident Responder & CTI Team Leader - Logsign at Logsign, a with 57 employees, based in Istanbul, Türkiye, Turkey. AeroLeads shows a matched LinkedIn profile for Atacan Kocyigit.
Atacan Kocyigit previously worked as Incident Responder - Cybersecurity Services & CTI Team Leader at Logsign and Security Specialist at Logsign. Atacan Kocyigit holds Associate'S Degree, Cyber Security, 3,52/4 from İstanbul Bilgi Üniversitesi.
This section adds company-level context without repeating Atacan Kocyigit's masked contact details.
Review company-level records connected to Atacan Kocyigit before choosing the right outreach path.
Atacan Kocyigit is a Incident Responder & CTI Team Leader - Logsign at Logsign. Colleagues describe them as "Atacan, siber güvenlik alanında çalıştığım yetkin insanlardan birisi. Özellikle incident response ve Cyber Threat Intelligence (CTI) konularında olağanüstü bir tecrübeye sahip. Olay müdahalesinde hızlı ve doğru kararlar alarak tehditlere zamanında müdahale etme konusunda büyük bir uzmanlık gösteriyor. SOC ortamında yaptığı analizler son derece derinlemesine ve titizlikle sürdürmekte. Onunla çalışmak, büyük bir ayrıcalıktı."
Company context helps verify the profile and gives searchers a useful next step.
A career timeline built from the work history available for this profile.
Ataşehir, İstanbul, Türkiye
Threat Hunting Threat IntelligenceMalware AnalystSIEM Rule and Correlation
Ataşehir, İstanbul, Türkiye
• Creating Alarms on the SIEM side and updating existing Alarms, preparing and checking Alarm Bucket Detection Lists to protect systems and information infrastructure, including firewall and data encryption programs.• Realizing possible Threat Scenarios with the Institution's IT Teams, preparing the report output findings, providing information, repair and prevention steps against the identified vulnerabilities so that the related Incident does not occur, and preparing their reports,• Within the scope of being in the inventory of institutions; Providing False Positive debugging by providing advanced scanning and reporting with Netsparker, Acunetix, Nessus, OpenVas Vulnerability Scanning tools• Ensuring the development of alarm detection mechanisms on the SIEMs of institutions by providing controls in accordance with the inventory and scope of the OWASP and SANS Institutes,• Making use of Open Source Projects to enrich log resources, ensuring their installation and connection with SIEM; Ensuring all adjustments of BRO, Suricata, Wazuh to be directly integrated into the Institution with SIEM,• Designing and reporting of Alarms within the framework of Technical, Tactics and Procedure within the scope of MITRE ATT&CK,• Increasing Windows Logging Systems with Sysmon and NxLog by providing active controls on Customer Systems and ensuring their integration with SIEM,
Administration of SIEM products • IBM QRadar • Logsign • Cryptosim • Log collection with NXLog and SIEM agents • Management of correlation and alerts • Optimizing dashboardsAdministration of open source log management tools • Graylog • Log forwarding with NXLog and syslog • Optimizing alerts • Maintenance of Elasticsearch • Preparing RegEx statements for parsing logsAdministration of system monitoring tools • Zabbix • Grafana • Maintenance of databases (MySQL, SQLite) • Maintenance of alerting medias with custom scripts (Slack, E-mail, SMS)Administration of open source IDS solutions • Setup and maintenance of Security Onion • Optimizing rules and adding custom rules • Management of Squert, Sguil, Kibana, Mitre Att&ck Framework modulesAdvanced incident analysis • Analysing incidents passed from L1 Analysts • Analysing assets (Windows events, network packets, firewall logs, AV/EDR/E-mail Security Gateway/DNS Security logs etc.) • Deep threat analysis in customer servers (SentinelOne EDR)DoS/DDoS pentest projects • Layer 4 ICMP Ping Flood attacks with hping tool • Layer 7 HTTP Flood attacks with Hulk, Tor's Hammer and GoldenEye tools
• Performing daily detect & respond functions, working closely with CDC processes on SIEM and SOAR.• Performing detailed analysis of alerts and potential threats.• Identify and analyze anomalies in event data to identify security issues.• Provide analysis and reporting of threats, vulnerabilities, and incidents.• Document and disseminate reports and notifications of findings in a timely SLA.• Additional risk management activities as needed for threats.• Knowledge on MITRE ATT&CK to detect and appropriately respond to certain types of attacks. • Conducted analysis to determine the legitimacy of files, domains and emails using online resources.
İstanbul, Türkiye
• Orchestrated efficient large-scale software deployments, including testing features and correcting code.• Reviewed project specifications and designed technology solutions that met or exceeded performance expectations.• Interfaced with cross-functional team of business analysts, developers and technical support professionals to determine comprehensive list of requirement specifications for new applications.• Coordinated with hardware and system engineering leads to gather and develop system requirements.• Created procedures for system monitoring, recovery, backup and optimization.• Researched, designed and implemented scalable applications for data extraction, analysis, retrieval and indexing.• Installed and configured software applications and tested solutions for functionality.
Other employees you can reach at logsign.com. View company contacts for 57 employees →
Beraat Eğmeci
Colleague at LogsignIstanbul, Türkiye, Turkey
View →
EA
Erkut Altunbaş
Colleague at LogsignIstanbul, Türkiye, Turkey
View →
YÇ
Yargı Çetinkaya
Colleague at LogsignIstanbul, Türkiye, Turkey
View →
TP
Tolga Pala
Colleague at LogsignAnkara, Türkiye, Turkey
View →
EK
Elif Kurt
Colleague at LogsignTürkiye, Turkey
View →
DE
Duygu Erisir
Colleague at LogsignIstanbul, Türkiye, Turkey
View →
BY
Bayram Yol
Colleague at LogsignAfyonkarahisar, Afyon, Türkiye, Turkey
View →
MÖ
Mert Özdemir
Colleague at LogsignBolu, Türkiye, Turkey
View →
KY
Kaan Yapar
Colleague at LogsignÜmraniye, Istanbul, Türkiye, Turkey
View →
MO
Murat Ozkaynak
Colleague at LogsignAnkara, Türkiye, Turkey
View →
Quick answers generated from the profile data available on this page.
Atacan Kocyigit works for Logsign.
Atacan Kocyigit is listed as Incident Responder & CTI Team Leader - Logsign at Logsign.
Atacan Kocyigit is based in Istanbul, Türkiye, Turkey while working with Logsign.
Atacan Kocyigit has worked for Logsign, Uitsec Security Technologies Group, and Iski.
Atacan Kocyigit's colleagues at Logsign include Beraat Eğmeci, Erkut Altunbaş, Yargı Çetinkaya, Tolga Pala, and Elif Kurt.
You can use AeroLeads to view verified contact signals for Atacan Kocyigit at Logsign, including work email, phone, and LinkedIn data when available.
Atacan Kocyigit holds Associate'S Degree, Cyber Security, 3,52/4 from İstanbul Bilgi Üniversitesi.
Search by job title, company, industry, location, and seniority. Export verified B2B contact data when you need it.
Start free trial Search contacts