Security Analyst (SOC) - Festo
You monitored global security news and assessed applicability to the organization’s environment, focusing on breaches, ransomware, and relevant CVEs. You investigated phishing emails and improved detection use cases to strengthen security operations. You managed and analyzed daily alerts in Microsoft Sentinel and Defender EDR while supporting threat hunting using MITRE ATT&CK. • Monitored 50+ daily alerts and improved threat classification accuracy. • Reduced critical incident MTTR using optimized playbooks and Azure Logic App automated triage scripts. • Conducted threat hunting and mitigated advanced persistent threats (APTs) involving lateral movement and data exfiltration. • Authored incident reports, participated in purple teaming, and supported blue team and security awareness activities.