[ PROFILE ]
Cyber Security Operation Center Engineer working across detection engineering, incident response, vulnerability assessment, penetration testing, and systems auditing.
- SentinelOne detection engineering โ authoring and tuning SIEM detection rules, running incident response on what they fire, and handling agent deployment and third-party integration across tenants.
- Incident response end to end: log analysis and host triage across Windows and Linux estates, through to formal incident reporting.
- Penetration testing for web applications, infrastructure, and Active Directory environments โ reconnaissance, exploitation, privilege escalation, lateral movement.
- Auditing information systems and networks to identify structural and information security weaknesses, reported with remediation priorities.
- No-code automation, custom integrations, and AI-assisted workflows to cut time-to-response on repetitive triage.
- Technical support for security products and services, from deployment and configuration through to escalated troubleshooting.