Manchester, England, United Kingdom
SOC Analyst with expertise in threat detection, incident response, and SIEM operations. Proficient in tools like Wazuh, Elastic Stack, and Splunk for monitoring, triaging, and investigating security alerts. Skilled in mapping adversary behaviour to the MITRE ATT&CK framework and building detection queries to identify brute-force, reconnaissance, and privilege-escalation activity. Technical Skills: SIEM & EDR: Wazuh, Elastic Stack (ELK), Splunk Incident Response: MITRE ATT&CK mapping, phishing analysis, SOC playbooks, IOC extraction Tools: Wireshark, Nmap, Burp Suite, Ghidra, Suricata, TheHive Scripting: Python, C, Bash, x86 Assembly Cloud: Microsoft Azure (VMs, networking, Log Analytics) Operating Systems: Windows 11, Kali Linux, Ubuntu, macOS
- Reviewed engineering drawings and monitored plant operations in real-time. Developed an interest in ICS/OT cybersecurity by understanding how critical infrastructure systems function and identifying potential vulnerabilities.
• Collaborated with the R&D department to design and develop an Android application. • Integrated a heart rate monitor using Bluetooth Low Energy (BLE) technology to enhance user health tracking.