The keywords that represent my professional skillset are SOC, SIEM engineering, security monitoring, use-case development, Microsoft Sentinel / Arcsight, ELK, Python scripting
CISSP, GCIA, GPEN
I have been working in the field of information Security for 10+ years now, in various SOC environments and in different roles, including
- operational security analyst in a continious secmon service
- use case developer
- SIEM platform engineer
- maintenance
- SIEM product migration
- log source onboarding
During the first chapter of my IT carrier I worked as a software developer/programmer (also, heavily utilized RDBMS databases) that gave me a solid foundation on various scripting/programming languages, software architecture and analysis, automation.
In the past couple of years I have been working as a SIEM consultant, supporting various SOC projects to deliver high quality technical components for their security monitoring process.
Most recently, I have been working on Azure Sentinel use cases, and log data processing on Azure ADX.