For employers

Hire this AI Trainer

Sign in or create an account to invite AI Trainers to your job.

Invite to Job
T
Thomas M.

Thomas M.

Security Operations & Threat Hunting (M.S. Cybersecurity, University of Tulsa)

USA flagBroken Arrow, Usa

Key Skills

Software

No software listed

Top Subject Matter

Cybersecurity threat hunting and incident analysis
Incident response and digital forensics
Legal Services & Contract Review

Top Data Types

TextText
DocumentDocument

Top Task Types

Function CallingFunction Calling

Freelancer Overview

Security Operations & Threat Hunting (M.S. Cybersecurity, University of Tulsa). Brings 12+ years of professional experience across complex professional workflows, research, and quality-focused execution. Core strengths include Splunk and Wireshark. Education includes Master of Science, University of Tulsa (2026) and Bachelor of Arts, Oral Roberts University (2014). AI-training focus includes data types such as Text and labeling workflows including Evaluation, Rating, and Function Calling.

Labeling Experience

Incident Response & Digital Forensics (M.S. Cybersecurity, University of Tulsa)

TextTextFunction CallingFunction Calling

Built and applied NIST 800-61 aligned incident response playbooks to structure detection, containment, eradication, recovery, and lessons learned. Performed malware triage and forensic analysis using network and endpoint inspection tools to support investigation outcomes. Generated consistent analysis artifacts for case documentation, including observations about suspicious PowerShell payloads and obfuscation. • Created incident response playbooks following NIST 800-61 lifecycle stages. • Analyzed malware artifacts and suspicious process execution chains. • Investigated encoded PowerShell payloads, Base64 obfuscation, and LOLBin abuse. • Examined DNS/HTTP traffic patterns to identify command-and-control indicators.

2023 - Present

Security Operations & Threat Hunting (M.S. Cybersecurity, University of Tulsa)

TextText

Conducted threat hunting and log analysis by examining telemetry and generating structured findings for suspicious activity and indicators of compromise. Mapped observed behaviors to MITRE ATT&CK tactics and techniques to support incident analysis and reporting. Produced investigation notes and triage outputs based on analysis of Windows event logs, Sysmon telemetry, and command-line artifacts. • Used Splunk and Elastic Security to analyze logs and identify anomalies. • Investigated Windows Event Viewer and Sysmon telemetry for malicious execution patterns. • Identified persistence mechanisms and potential log tampering. • Documented attacker behavior aligned to MITRE ATT&CK for reporting.

2023 - Present

Education

U

University of Tulsa

Master of Science, Cybersecurity

Master of Science
2023 - 2026
O

Oral Roberts University

Bachelor of Arts, Ministry and Leadership

Bachelor of Arts
2010 - 2014

Work History

V

Vehlo

IT Administrator & D&I Team Lead

Broken Arrow
2020 - 2025
U

U.S. Army National Guard

Signal Support Systems Specialist

N/A
2014 - 2020