I design, implement, and operate Security Operations Center (SOC) and Managed Detection & Response (MDR) capabilities, including 24/7 monitoring, alert triage, investigation, and remediation. I also deploy and optimize security platforms such as SIEM, XDR/EDR, and DLP, ensuring detection rules, dashboards, and workflows are tuned to reduce noise and improve response times.
In cloud environments (Azure), I deliver end-to-end security services including architecture, governance, posture management (CSPM), identity and access management (IAM), and workload/data protection. I also support vulnerability and patch management to help teams identify, prioritize, and remediate risks, reducing the attack surface.
When incidents occur, I lead response and recovery efforts, including containment, root cause analysis, reporting, and lessons learned. I also manage phishing investigations and support security awareness initiatives across teams.
Remote Services Offered
Identity & Access Management (IAM) & Privileged Access Security : Implementation and hardening of access controls (Azure AD, AWS IAM), least-privilege policies, and privileged access management.
Cloud Workload & Data Protection : Security for workloads (containers, VMs, serverless), encryption in transit and at rest, and data protection for cloud databases and storage.
Threat Detection & Response in Cloud Environments : Cloud-native detection, logging, investigation, and incident response using SIEM/SOAR or native cloud tools.
Cloud Compliance & Governance : Compliance assessments and governance implementation for ISO 27001, PCI-DSS, SOC 2, and other frameworks.
Cloud Migration Security : Security guidance and implementation for cloud migration projects (lift & shift or replatforming), ensuring data protection and secure architecture.
Cloud Penetration Testing & Vulnerability Assessments : Cloud-focused penetration tests and vulnerability assessments tailored to cloud services and configurations.
Cloud Incident Response & Forensics : Response to cloud compromises, forensic evidence collection, and post-incident remediation.