Edison G.

Cybersecurity Specialist | Claroty · Zscaler · Azure · AWS · SentinelOne · Check Point | OT/ICS · Cloud · Threat Hunting | AI Security · NIST

Colombia

About

Senior Cybersecurity professional with 10+ years of experience designing and implementing security architectures, managing threats, and ensuring compliance across financial services, manufacturing, pharmaceuticals, and managed security environments. Deep expertise in security frameworks (ISO 27001, ISO 42001 AIMS, NIST CSF, NIST AI-RMF, CIS Controls, PCI-DSS, MITRE ATT&CK, MITRE ATLAS, STRIDE), cloud security (Azure, AWS), endpoint detection and response (EDR), and OT/ICS security. Proven ability to lead end-to-end security programs, reduce risk exposure, and communicate complex security risks to executive stakeholders. Bilingual in English and Spanish; advanced French studies in progress.

Experience

  • Information Security Analyst at Masiv
    Jul 2026 - Present · 1 mo

  • Professional development at Career Break
    Jul 2025 - Jul 2026 · 1 yr 1 mo

    • Active cybersecurity upskilling across emerging threat landscapes including cloud-native attacks, ransomware TTPs, and Zero Trust implementation strategies. • Training in Red Team Operations (RTO) at Zero-Point Security - adversary simulation, Cobalt Strike C2 infrastructure, and post-exploitation techniques for red team engagements.

  • IT Cybersecurity Specialist at VaxThera
    Dec 2024 - Jul 2025 · 8 mos

    • Managed Microsoft Defender for Office 365 (Anti-Phishing, Anti-Malware, Safe Links) and Defender for Endpoint across all workstations, maintaining 100% endpoint coverage. • Applied CIS benchmark hardening across Microsoft O365, Entra ID, Intune, SharePoint, and Teams Admin Centers, reducing misconfiguration risk across the M365 environment. • Implemented Check Point Quantum Spark firewall policies including Client-to-Site VPN, application control, web content filtering, and intrusion prevention. • Deployed and enforced IoT/OT security policies using Check Point Harmony IoT and Zero Trust access controls via Check Point Harmony SASE. • Conducted web application vulnerability assessments using Qualys, identifying and remediating application-layer security flaws. • Managed full user access lifecycle (provisioning, modification, deactivation) across Active Directory, Oracle Fusion ERP, and Salesforce TrackWise. • Led Claroty xDome Proof-of-Concept to evaluate OT security posture per ISA/IEC 62443, covering asset discovery, network visibility, risk assessment, and threat detection. • Implemented technical controls aligned with ISO/IEC 27001 and presented security risk reports and mitigation strategies to senior management.

  • Security Architect at Arterra Wines Canada
    Jul 2022 - May 2024 · 1 yr 11 mos

    • Architected and led a comprehensive security program using CIS and NIST frameworks, establishing security strategy, policies, and processes from the ground up, defining the organization's overall risk posture. • Administered Defender for Endpoint and led enterprise-wide SentinelOne deployment with CyberHunter Solutions, achieving full endpoint coverage, strengthening threat visibility, and accelerating automated incident containment. • Strengthened email security by configuring Trend Micro Cloud App Security for M365 to block spam, phishing, and BEC attacks, while managing Cloud One and Vision One to close compliance gaps and mitigate organizational risk exposure. • Managed Netskope SWG enforcing URL filtering, content inspection, and proactive threat prevention across the organization's network perimeter. • Designed and implemented a security awareness training program featuring monthly phishing simulations via the SANS platform, significantly reducing human risk exposure across the workforce. • Executed vulnerability assessments using Qualys across public-facing websites and critical infrastructure IPs including Citrix NetScaler appliances; performed SecureTrust external ASV scans to ensure full PCI-DSS compliance and reduce external attack surface, driving remediation in collaboration with Lumen's MSSP teams in the US and India. • Engaged PacketLabs to conduct comprehensive penetration testing across web applications, network devices, servers, and endpoints; identified critical security gaps and delivered actionable remediation plans with IT and MSSP counterparts. • Managed MS Intune security policies across Windows, Android, Apple endpoints to prevent data leakage; coordinated enterprise-wide software updates and security patch rollouts via MS SCCM. Deployed Wazuh threat detection across Active Directory workstations for real-time monitoring and proactive threat hunting. Leveraged Cisco Firepower for traffic monitoring, and network threat detection.

  • Security Analyst Co-op at Book Depot
    Jan 2022 - Apr 2022 · 4 mos

    • Monitored SentinelOne EDR platform protecting 300+ workstations and servers, ensuring continuous threat visibility and rapid incident response. • Designed and delivered cybersecurity awareness training program, reducing human error-related security breaches by 30%. • Conducted bi-weekly vulnerability scans using Qualys and OpenVAS across servers, network devices, websites, printers, and PLCs averaging 15 findings per scan. • Managed Windows Server and Linux infrastructure (installation, configuration, hardening, and troubleshooting). • Leveraged Cloudflare WAF analytics and security event logs to investigate web application threats, identify attack patterns, and implement adaptive firewall rules in response to active incidents.