Summary_

Highly experienced Digital Forensics and Incident Response (DFIR) with 8 years of programming, tool development experience, within various cybersecurity domains, with a particular focus against Advanced Persistent Threats (APTs).
Skilled at performing forensics for large scale intrusions, incident response, detection engineering, cloud forensics, tool development, malware triage and reverse engineering.
Strong, proven critical thinking leader who challenges root problems and others with innovative and future driven solutions. Bringing forth prior experience and knowledge from working in the Intelligence Community (IC) married with experience from enterprise engagements.
Certifications
  • CISSP
  • GCFA, GCED, GCIH
  • COMPTIA Security+
Certifications
  • CISSP
  • GCFA, GCED, GCIH
  • COMPTIA Security+
Digital Forensics
Cloud Forensics
Threat Hunting
Enterprise IR
Communication
HTML/CSS/Javascript
AWS
Python/C++/Jupyter
Reverse Engineering
Networking
Bash/Batch
Linux
Windows AD
VSphere/ESXI
Docker
DevSecOps
Cyber Tool Dev
Azure
Git
CI/CD Pipelines
Timeline Explorer
Volatility
KAPE
Elastic/ELK (SIEM)
Endgame/Aurora (EDR)
Checkout my projects

Experience_

12/2024 - Current

Forensics Escalation Engineer - Varonis Systems

Forensics and incident commander for escalated cases, involving a wide range of malicious threats. Provided live incident triage with customers, forensics analysis, recommendations and remediation advice based on analysis. Developed the below projects for work between cases over many months, as the lead architect and primary developer.

Projects:

  • Extensible wizard allowing the team to fully customize what artefacts we want to collect, including 3rd party binaries;
  • Designed and engineered a complete pipeline for converting raw forensics artefacts and ingesting it to SIEMs.

12/2021 - 11/2023

Senior Cyber Threat Hunter - USCYBERCOM/USAF

Forensics and incident commander for escalated cases, involving a wide range of malicious threats. Provided live incident triage with customers, forensics analysis, recommendations and remediation advice based on analysis. Developed the below projects for work between cases over many months, as the lead architect and primary developer.

Projects:

  • Extensible wizard allowing the team to fully customize what artefacts we want to collect, including 3rd party binaries;
  • Designed and engineered a complete pipeline for converting raw forensics artefacts and ingesting it to SIEMs.

06/2020 - 12/2021

Cyber Threat Hunter - USCYBERCOM/USAF

Forensics and incident commander for escalated cases, involving a wide range of malicious threats. Provided live incident triage with customers, forensics analysis, recommendations and remediation advice based on analysis. Developed the below projects for work between cases over many months, as the lead architect and primary developer.

Projects:

  • Extensible wizard allowing the team to fully customize what artefacts we want to collect, including 3rd party binaries;
  • Designed and engineered a complete pipeline for converting raw forensics artefacts and ingesting it to SIEMs.

09/2016 - 05/2020

Senior Data Link & Threat Intelligence Analyst

Forensics and incident commander for escalated cases, involving a wide range of malicious threats. Provided live incident triage with customers, forensics analysis, recommendations and remediation advice based on analysis. Developed the below projects for work between cases over many months, as the lead architect and primary developer.

Projects:

  • Extensible wizard allowing the team to fully customize what artefacts we want to collect, including 3rd party binaries;
  • Designed and engineered a complete pipeline for converting raw forensics artefacts and ingesting it to SIEMs.
Xynaptik
hireme@kaladin.dev
© 2023 Xynaptik. All rights reserved.