Drag

PROFILE SUMMARY

Sr. Cybersecurity executive with 20+ years of expertise in risk management, GRC, cloud security, IAM, CI/CD, and compliance. Skilled in SIEM, SOAR, AST frameworks, and security controls, with hands-on experience in AWS, Azure, and GCP.

PROFESSIONAL EXPERIENCE

Sr. Cyber Analysis & Triage Analyst

Accenture | Mar  2024 - Present

 

  1. Performed event and log analysis across security tools, including SIEM and SOAR, enhancing threat detection and response.
  2. Managed Azure Sentinel, reducing response time by 30%, integrating multiple data sources, and improving threat detection by 40%.
  3. Developed and automated security monitoring with Splunk, Python scripts, REST APIs, and GraphQL, optimizing data ingestion and compliance tracking.
  4. Enhanced network security with Azure Firewall, NSGs, and Microsoft Defender for Office 365, reducing phishing incidents by 30% and unauthorized access attempts by 25%.
  5. Conducted security assessments, identified vulnerabilities using OWASP Top Ten, and implemented mitigation measures for risks like Injection and Broken Access Control.
  6. Led CyberArk PAM deployment, configured IDS (Snort), and initiated customer data protection by tokenizing payment information for enhanced security and compliance

 

Cybersecurity Engineer

Amtrak | Oct  2023 - Dec 2023

 

  1. Assessed security risks for new applications at Amtrak, provided mitigation recommendations, and ensured compliance with NIST and COBIT frameworks.
  2. Managed host-based security infrastructure, deployed Microsoft Security Suite (MDCA, Defender, EMS), and reduced phishing incidents by 30% through advanced security policies.
  3. Developed and optimized SIEM detection programs, integrated log data into Sentinel, and conducted root cause analysis for AITM attacks with preventive playbooks.
  4. Automated security operations using PowerShell, Python, and KQL, improving query efficiency, reducing data processing overhead, and streamlining remediation workflows.
  5. Configured and managed firewalls, GPOs, and Conditional Access policies in Azure AD to enhance network security, automate rule deployment, and enforce compliance.
  6. Conducted threat modeling, code reviews, and security assessments, ensuring robust data protection and strengthening Amtrak’s cybersecurity posture.

 

Sr. Cybersecurity Engineer

SecureNick | Oct  2022 - Oct 2023

 

  1. Assisted SMBs with risk assessments, security recommendations, and SIEM integration, enhancing cybersecurity for businesses like Nixon & Vanderhye.
  2. Managed AWS and Azure cloud security, implementing services like AWS GuardDuty, Azure Sentinel, and Microsoft EM+S to improve threat detection and compliance.
  3. Deployed and configured cybersecurity tools such as Carbon Black, FireEye, CyberArk, and Checkpoint firewalls, strengthening endpoint security, threat response, and privilege management.
  4. Conducted API security assessments, web application vulnerability testing, and compliance audits using OWASP, Nessus, and OneTrust, ensuring regulatory adherence and data protection.
  5. Automated security operations with scripting, integrated monitoring tools like Splunk and ServiceNow, and enhanced incident response with XDR and forensic analysis.
  6. Provided training, documentation, and administrative support for cybersecurity tools, including Zoom, ConnectWise, and threat modeling frameworks, improving security posture and team efficiency.

 

Sr. Cyber Security Engineer

Various Projects | Oct  1995 - Oct 2022

 

  1. Designed and implemented security solutions using Cisco, Microsoft, AWS, and various security tools.
  2. Managed daily security operations, ensuring compliance and addressing network vulnerabilities.
  3. Automated Active Directory tasks using PowerShell and Python scripts.
  4. Implemented Zero Trust security strategies with Okta for identity management.
  5. Configured and maintained firewalls, including Checkpoint and Cisco Firepower.
  6. Deployed Microsoft AIP and Intune for data protection and endpoint security.
  7. Led the migration of SIEM from RSA NetWitness to Azure Sentinel, optimizing security monitoring.
  8. Ensured GDPR compliance, conducted audits, and implemented security policies.
  9. Managed security tools like Tenable, Qualys, LogRythm, and Splunk for threat detection.
  10. Developed security playbooks and incident response strategies for enterprise security.

 

Nicole - 20 years of experience in cyber security

Nicole

Sr. Cyber Security Engineer

Experience: 20 Years

TECHNICAL SKILLS

Operational Risk Management  Risk and Control Self-Assessments  Microsoft Security Stack  AWS Azure GCP  SAST DAST SCA API testing

EDUCATION

MS, Information Systems (George Mason University) - 1999

CERTIFICATIONS

  • CompTIA Security+
  • (ISC)2 CISSP