At Comtel Infosystems, I monitor 120–180+ daily security alerts, investigate incidents across Windows and Linux, and contain threats using CrowdStrike Falcon, SentinelOne, and FortiGate Firewall.
I've reduced false positives by 30% through alert tuning, threshold adjustments, and SIEM correlation-rule optimization. I also hunt for lateral movement and privilege misuse by mapping SIEM queries to MITRE ATT&CK techniques.
I build practical security automation, including Python tools for bulk IOC enrichment and phone-number intelligence. My work combines Elastic SIEM, threat intelligence, vulnerability assessment, incident response, and digital forensics.

