Cyber Security Engineering
Engineering detection, response and resilience across the estate.
- Capabilities
- 5
- Tools & platforms
- 6
- Discipline
- Security
Build and operate the controls that keep enterprise environments defensible — from SIEM detection engineering and vulnerability management to incident response, endpoint and network hardening, and security automation.
- SIEM detection engineering and security monitoring
- Vulnerability management and remediation lifecycle
- Incident response and threat hunting
- Endpoint and network security hardening
- Security automation and tooling in Python and Bash
The stack behind the work.
The tools I reach for day to day — with a rough sense of where my depth sits.
Splunk
AdvancedSIEM, detection & log analytics
Microsoft Sentinel
AdvancedCloud-native SIEM & SOAR
CrowdStrike
AdvancedEDR & endpoint threat detection
Nessus
AdvancedVulnerability scanning & assessment
Wireshark
ProficientNetwork traffic & packet analysis
Python
AdvancedDetection & response automation
Projects that put this to work.
Enterprise AppSec Migration
Driving tiered application onboarding into a unified AppSec program with automated CI/CD gating.
IAM Least-Privilege Redesign
Role redesign and policy enforcement program reducing over-privileged access across cloud accounts.
CI/CD Security Automation
Embedded SAST, DAST and SCA gates into shared CI/CD pipelines for automated pre-deployment validation.
Application Security
Embedding secure-by-design into the SDLC.
Cloud Security
Hardening cloud-native estates at enterprise scale.
API & Identity Security
Securing the perimeter of distributed systems.
Technical Program Management
Turning security strategy into delivered outcomes.
