Belton, Texas, United States
Results driven cybersecurity professional supporting enterprise Security Operations Center (SOC) environments across information technology and cybersecurity consulting organizations. Proven ability to detect, investigate and mitigate complex threats by analyzing high-volume security telemetry and leveraging SIEM, EDR/XDR, and SOAR platforms including Splunk, QRadar, Microsoft Sentinel, CrowdStrike, and Cortex XSOAR. Demonstrated success improving detection accuracy, reducing false positives, and preventing potential breaches through proactive threat hunting, detection engineering, and incident response operations. Recognized for delivering measurable security improvements, including 30% detection accuracy gains, 20% false positive reduction, and disruption of previously undetected threats, while strengthening defensive security capabilities across complex enterprise environments.
• Improve detection accuracy by 30% across a multi-platform SOC environment by monitoring and investigating security alerts, logs, and network telemetry using SIEM platforms (QRadar, Splunk, Microsoft Sentinel), EDR/XDR solutions (CrowdStrike, Microsoft Defender, SentinelOne), and SOAR automation through Cortex XSOAR while refining correlation rules and reducing alert noise • Identify and mitigate 25+ previously undetected threats through proactive threat hunting operations leveraging EDR telemetry, SIEM analytics, behavioral indicators, and threat intelligence to uncover IOC patterns, disrupt adversary activity, and deliver hardening recommendations that strengthened enterprise defenses • Prevent 15+ potential security breaches through advanced log and network telemetry analysis detecting anomalous behaviors, covert indicators of compromise, and lateral movement attempts during early stages of the attack lifecycle • Reduce SOC false positives by 20% through operationalizing threat intelligence feeds and detection tuning enriching alerts with actionable intelligence to improve threat prioritization and accelerate response workflows • Strengthen incident response operations by designing and optimizing SOC playbooks and standard operating procedures standardizing detection, containment, and remediation processes while improving cross-team coordination and reducing MTTR • Enhance detection engineering and SOC threat readiness through malware analysis and reverse engineering extracting attacker TTPs and translating findings into actionable detections that eliminated recurring threats and improved defensive coverage
• Managed lifecycle operations for 1,000+ enterprise IT assets, overseeing procurement, deployment, tracking, and secure decommissioning while ensuring compliance with organizational security policies and asset governance • Maintained 99% asset inventory accuracy across enterprise systems, enabling effective vulnerability management, risk assessments, and audit readiness for security and compliance initiatives • Enforced secure provisioning and deprovisioning workflows aligned with least privilege principles, reducing unauthorized access risk and strengthening endpoint security posture across managed assets • Conducted recurring asset reconciliation audits across large device inventories, identifying unauthorized or non-compliant devices and reducing operational and security risk exposure by improving asset visibility and control
• Maintained operational integrity of 500+ endpoint systems, ensuring system availability, configuration compliance, and adherence to security best practices across client environments • Diagnosed and resolved 100+ hardware, software, and network incidents, proactively identifying security vulnerabilities and misconfigurations to reduce potential attack surface • Implemented system hardening, patch management, and access control measures, improving endpoint security and reducing exposure to known vulnerabilities across managed systems • Configured and secured network infrastructure including routers and Wi-Fi environments, applying encryption, secure authentication, and basic network security configurations to protect client networks • Delivered cybersecurity awareness training to 50+ end users, improving phishing recognition, password hygiene, and secure data handling practices to reduce human-related security risks