Soc Analyst 1
Current• Utilized SIEM tools like AlienVault and Microsoft Sentinel to identify and respond to potential attacks.• Led the effort to implement and execute vulnerability scanning for the MSSP using Cyrisma, establishing processes that ensured consistent risk identification and mitigation.• Facilitated clear and concise communication with clients, providing detailed updates on flagged or unresolved tickets, along with recommendations for resolution.• Analyzed email headers and embedded links to uncover phishing attempts disguised as legitimate correspondence, preventing unauthorized access to corporate resources.• Monitored web server logs to identify suspicious activity and deployed immediate countermeasures to block potential remote file inclusion attacks.