Skip to main content
Anthony CabelloAC
Open to opportunities

Anthony Cabello

@anthonycabello

I build Microsoft Sentinel detections and SOAR automation that reduce SOC triage effort and strengthen incident response.

United States
Message

What I'm looking for

I'm looking to build and optimize enterprise security operations through Microsoft Sentinel architecture, detection engineering, cloud telemetry, and SOAR automation, while mentoring teams and improving incident response at scale.

At Binary Defense, I architect Microsoft Sentinel monitoring solutions for enterprise customers across cloud, hybrid, and multi-tenant environments. I build KQL detections, analytics rules, workbooks, watchlists, and automation playbooks for threat detection, hunting, and incident response.

I've reduced SOC alert triage effort by more than 60% through Azure Logic Apps and Azure Automation Runbooks. My remediation workflows automate actions such as account disablement, password resets, mailbox forwarding rule removal, incident enrichment, and containment.

Previously at Varonis, I automated approximately 80% of repetitive alert response procedures and developed MITRE ATT&CK-aligned KQL detection use cases. I also investigated identity compromise, malware, insider threats, suspicious authentication, and cloud security incidents while mentoring Tier 1 and Tier 2 analysts.

At Itron, I led Microsoft Sentinel implementation initiatives and supported a SentinelOne deployment for approximately 12,000 endpoints. I bring hands-on experience connecting, normalizing, and optimizing telemetry across Azure, AWS, GCP, Microsoft Defender, CrowdStrike, Proofpoint, Palo Alto, CyberArk, Okta, Zscaler, and other security platforms.

Experience

Work history, roles, and key accomplishments

BD
Current

Security Engineer Consultant

Binary Defense

Feb 2025 - Present (1 year 7 months)

Architect and implement Microsoft Sentinel monitoring solutions for enterprise customers across cloud, hybrid, and multi-tenant environments. Design advanced KQL detections, analytics rules, watchlists, workbooks, and automation playbooks supporting threat detection, threat hunting, and incident response.

Varonis logoVA

Senior SOC Engineer

May 2022 - Nov 2024 (2 years 6 months)

Architected and maintained Microsoft Sentinel detections, threat hunting content, security dashboards, and SOAR workflows supporting enterprise security operations. Developed advanced KQL-based detection use cases aligned to MITRE ATT&CK tactics and techniques to improve coverage and reduce false positives.

Education

Degrees, certifications, and relevant coursework

Guilford College logoGC

Guilford College

Bachelor of Science, Cybersecurity and Networking

Bachelor of Science in Cybersecurity and Networking from Guilford College.

Get matched with your dream remote job

Sign up now and join over 250,000+ remote workers who receive personalized job alerts, curated job matches, and more for free!

Sign up
Himalayas profile for an example user named Frankie Sullivan