Timur Engin

Cybersecurity Research and Incident Response at Microsoft, timurengin.com

Türkiye

About

Cybersecurity enthusiast, incident response mostly.

Experience

  • Cybersecurity Researcher at Microsoft

    • Member of DART (Detection and Response Team) - Microsoft's customer facing incident response team. • Specialising in threat hunting and digital forensics. • Working on security research for building into incident response activities. • AI and Copilot security.

  • Mathematics & Python Tutor at Freelance, self-employed

    Tutored over 7 students in mathematics and Python, ranging from ages 8 to 28. Planned lessons and assignments for students.

  • Cybersecurity Consultant at Microsoft

    • Cloud security and architecture - Applying security best practices and baselines to improve security posture in customers Azure environments, architecting Azure security solutions. • Driving cloud consumption with key stakeholders, showing value of Microsoft's security offerings - Defender, Azure, E5, M365. • Building and implementing Security Control Frameworks for customers migrating to Azure. • Training and workshops - part of driving consumption included workshops and training across a wide range of audiences and technical depth. • Content creation - Writing and reviewing blogs for Microsoft’s security pages, leading the blog efforts for my EMEA team. • Driving product innovation - Engaging product and engineering teams with customers to drive consumption of products and services, and act as a bridge between product teams and customers.

  • Incident Response / Cybersecurity Consultant at Microsoft

    • Recovering security breached IT infrastructure and bringing back control over compromised environments. Rebuilding customer environments after ransomware attacks. • Hardening Entra ID (formerly Azure AD), Azure, and Active Directory (on premises). • SOC processes, detection engineering - Utilising the Defender stack (MDE, MDI, MDA) and Microsoft Sentinel to monitor and triage alerts in customer environments. Help customers build processes for their security operations. • Identifying gaps in security and protection and introducing proactive measures against attack vectors. • Monitoring customers environments and identifying security vulnerabilities. • Engaging product and engineering teams with customers, act as a bridge between product teams and customers. • Creating implementation, technical, and test documentation. • Solution planning and delivery for range of security operations.

  • Software Engineer at Viasat

    Full time internship (placement), predominantly worked on development for mobile device security systems.

  • Intern at Elektroland Defence

    Worked with a new prototype of a military autonomous robot Elektroland was developing. This involved testing and handling documentation for the prototype.