Türkiye
Hi, I am Emre Güler. I work as an Expert Cybersecurity Engineer in the Solution and Detection Engineering Team at Garanti BBVA Technology, where I develop automation solutions to reduce manual tasks in detection and response processes. I am proficient in Python, Splunk, SOAR and Linux. In my current and previous roles, I have developed playbooks, integrations, scripts, and applications for SOAR platforms like Palo Alto Networks Cortex XSOAR. Additionally, I have managed the configuration, performance, and maintenance of SOAR solutions for both internal and external clients. I have strong communication skills and enjoy collaborating with diverse and cooperative teams. I am always eager to learn new technologies and tools. My strong leadership and team management skills enable me to not only lead teams effectively but also inspire and motivate team members. My excellent communication abilities give me an edge in interacting effectively with internal teams, clients, and external stakeholders. I enjoy communicating and collaborating with various teams to achieve common goals. I have a proven track record of strategic thinking, solving complex problems, and making effective decisions in fast-paced environments. I graduated from high school as a High Honor Student and completed my cybersecurity master’s program as an Honor Student. This year, I am also proud to have been recognized with an achievement award by my company. With my passion for technology, I am always ready to learn new tools and methodologies. I am excited about contributing to innovation and enhancing security in the cybersecurity industry.
I currently serve as an Expert Cyber Security Engineer at Garanti BBVA Teknoloji. My role focuses on elevating the cybersecurity posture of the bank and its affiliates by developing advanced detection and response capabilities. Specifically, I leverage big data, machine learning, and artificial intelligence technologies to create proactive and intelligent solutions against cyber threats. Key Responsibilities Within detection and response processes, I am responsible for the following: • Conducting architectural studies, research, and tests to ensure the most efficient use of technologies. • Designing and developing solutions that enable the implementation of detection and response requirements in technology. • Executing detection engineering (Detection Engineering) activities for security rules. • Preparing runbooks within the scope of response engineering (Response Engineering). Within my role, I actively carry out the following activities: • Conducting architectural research, tests, and applications aimed at the most efficient use of technologies in detection and response processes. • Delivering solutions on technologies to enhance detection and response capabilities based on emerging needs. • Ensuring the design, development, testing, production deployment, and maintenance of security rule (Use Case) scenarios within detection engineering. • Managing the detection engineering process flow. • Managing the coverage strategy for security rules (e.g., Mitre coverage). • Carrying out the design and preparation of runbooks to be used by L1 analysts within response engineering (Response Engineering). • Developing SOAR automations. • Performing scripting tasks for detection and response. • Executing SOAR product management. • Ensuring the design and preparation of dashboards for detection and response. • Utilizing big data, ML, and AI technologies to enhance detection and response capabilities. • Kanban Master
SOC System Management • Palo Alto Networks Cortex XSOAR (Security Orchestration, Automation and Response) • Ensuring the configuration, management, performance-capacity monitoring and coordination of SOAR solutions, • Carrying out project planning, installation maintenance and consultancy activities of SOAR services offered to customers, • Performing SOAR installation and integration in new customer environments, • To resolve future requests and changes regarding SOAR from customers and internal teams, • Making playbook developments. • Taking an active role in projects focused on automation and workforce recruitment. • Performing management, maintenance, installation and integration of SOAR Tools and scripts, • Conducting root cause analysis of problems related to SOAR system components, • To carry out research, project planning and management support functions of other SOC security products in parallel with developing technologies, • Conducting POC studies of products and services that can be offered to customers.
Cyber Security Operations Center System Management Assistant Specialist IBM QRadar SIEM Management
Cyber Security Operations Center System Management Assistant Specialist OT/ICS Security Project Manager Claroty OT/ESS Continuous Threat Detection (CTD) Product/System Manager • Advising organizations on the best strategy to secure their Operational Technologies and Industrial Control Systems (or ICS) assets against current cyber threats and risks, • Maintaining the database of Cyber Threat Intelligence in the field of OT/ICS, increasing organizations' awareness of new threats and risks and recommending relevant protection measures, • Developing Industrial Control Systems security management documents and references, including security policies, procedures, standards and guidelines, • Supporting organizations in the evaluation of Cyber Security controls implemented for ICS/OT, • Strengthening the security architecture to ensure the resilience of systems, equipment and networks against cyber attacks, • Defining vulnerability management programs for Operational Technology systems and Industrial Control Systems, developing recommendations and supporting organizations in the development of relevant detection, reporting and remediation procedures, • Performing audits and vulnerability analysis of ICS/OT, effectively communicating the results to various managerial and technical audiences, and recommending effective solutions to reduce identified risks, • Supporting organizations in ensuring and maintaining compliance of ICS/OT environments with current regulations, norms and standards, • Advise and support organizations in developing and strengthening procedures for detecting and responding to ICS/OT-related incidents, • Contribute to maintaining and expanding the cybersecurity department's knowledge through active monitoring of current threats and vulnerabilities as well as the latest technologies and standards
eguler.net is a software company.