Incident Response Specialist
CurrentConduct forensic analysis of Windows/Linux endpoints and cloud-based platforms to identify and respond to incidents of email and data compromise.Act as a focal point for incidents, communicating with affected customers.Utilize defined workflows and processes to drive Incident Response efforts effectively.Conduct technical analysis on impacted systems to determine the scope, impact, and recovery from active and potential Cyber incidents.Created system to ingest/analyze various Microsoft365 and Azure logs. Saved significant time in analyzing logs.Deliver clear and comprehensive reports of incidents to partners with recommendations for remediation and prevention.Explore tools and techniques to enhance the efficiency of incident response operations such as automation scripts, threat intelligence platforms, and digital forensics software.Write technical articles for knowledge sharing and provide mentoring to junior team members.