Threat Hunter
Pondurance
Jan 2021 - Apr 2022 (1 year 4 months)
Researches current relevant threats based on all-source intelligence and identify potential weaknesses to mission systems.
Performs analysis on data received from numerous sensors and SIEMs to identify potential and existing threat vectors.
Conduct Threat Intelligence research, author reports for SOC team to create more effective Hunts.
Leads Security Operations Communications Team, coordinates monthly meetings for over a 100 client and a Monthly Webinar.
Authored policy, process and training materials to create a relevant documentation framework for team use.
Conducted malware analysis in anyrun.
Create Dashboards and Custom Hunts based on known IOCs and behavioral indicators.
Utilizes Splunk, Humio, SentinelOne, CrowdStrike Falcon, Endgam