At CAI, Inc., I investigate and triage security alerts across endpoint, identity, cloud, and email environments. I use CrowdStrike Falcon, Microsoft Defender XDR, and Microsoft Sentinel to investigate threats, analyze phishing campaigns, and reduce false positives.
I also perform proactive threat hunting with KQL, investigate IOC matches and authentication anomalies, and document findings and response actions in ServiceNow. In earlier SOC Analyst roles at VD Logistic and on a freelance/contract basis, I monitored SIEM alerts, investigated logs, and supported incident response.

