Nashville, Tennessee, United States
• Constructed and delivered intelligence-based reports for each security incident and potential events identified through web scraping tools, ensuring clear communication of security risks and recommended actions to business stakeholders and partners.
• Developed an automation script to deploy over 200,000 VMs and honeypots at scale, enhancing security measures and operational efficiency, and saving security analysts 2-3 hours per 100 VMs.
• Demonstrated expertise in formulating strategically tailored Boolean rules for multiple SIEM/data monitoring platforms, optimizing threat detection, and enhancing the organization's overall security posture. This has enabled analysts to reuse these rules for fast and efficient data aggregation, parsing through 10 million daily events.
• Leveraged advanced OSINT techniques to develop detailed reports on potential threat actors targeting healthcare companies. Created scripts and SIEM rules to detect anomalies associated with these threat actors, improving speed to detection by 30% and bolstering the organization's defense mechanisms.