Skills

The tools and technologies I work with every day.

SOC & Incident Response

  • SIEM Operations
  • Threat Detection & Triage
  • Incident Response
  • Containment & Eradication
  • Alert Investigation
  • Documentation & Reporting

SIEM Platforms

  • Microsoft Sentinel
  • Splunk ES
  • IBM QRadar
  • Google SecOps
  • ArcSight
  • RSA NetWitness
  • XSIAM
  • McAfee
  • NG SIEM
  • Akamai
  • Azure Sentinel
  • AlienVault
  • CheckPoint Harmony

EDR / XDR

  • Microsoft Defender for Endpoint
  • CrowdStrike Falcon
  • Cortex XDR
  • Cytomic
  • Trend Micro

OT / ICS Security

  • Nozomi Networks
  • OT/ICS Monitoring

Networking & Systems

  • Windows
  • Active Directory
  • Linux
  • Networking & Protocols
  • Microsoft 365 Security

Programming & AI

  • Python
  • PowerShell
  • Bash
  • AI applied to Cybersecurity

Ticketing & ITSM

  • ServiceNow
  • OTRS
  • Lucia

Certifications

BTL1 — Blue Team Level 1

Security Blue Team · 2025

[active]