Cyber Security Analyst
CurrentConduct advanced threat intelligence and actor profiling using Anomali and Mandiant FireEye, analyzing TTPs and IOCs to enhance organizational security. Lead SOC operations, responding to security incidents and performing cyber triage to contain and remediate threats effectively. Utilize Splunk Enterprise Security for proactive threat detection and investigation, leveraging SPL for deep-dive data analysis. Develop comprehensive After-Action Reports (AARs) and SPOT Reports detailing timelines and impact of high-priority cyber incidents. Conduct vulnerability assessments using Tenable and Qualys, identifying CVEs and implementing remediation strategies. Monitor and investigate mobile device security using Zimperium, ensuring endpoint protection and compliance. Collaborate with cross-functional teams to address security alerts, enhance cloud security posture, and improve threat detection workflows.