Information Security Engineer
• Designed, implemented, and optimized security tools and processes, including SIEM and EDR systems, ensuring they aligned with industry benchmarks and best practices.• Configured and maintained SIEM (Splunk, Microsoft Sentinel) and EDR (CrowdStrike, Microsoft Defender for Endpoint) platforms, enhancing detection capabilities by creating custom rules, alerts, and dashboards.• Used Cribl to streamline data collection and optimize data flow to security monitoring tools.• Developed and maintained runbooks, playbooks, and incident response workflows to improve the organization's response to security incidents.• Assessed the effectiveness of security tools and performed regular security assessments to identify vulnerabilities and mitigate risks.• Provided security recommendations for new technology initiatives and communicated findings to technical and non-technical stakeholders.• Actively participated in SOC operations, investigating and responding to security incidents, threats, and vulnerabilities.• Managed vulnerability assessments, remediation plans, and tracked resolution efforts to minimize security risks across client's organization.