Security Operations, SIEM & Detection Engineering
- SIEM and observability engineering across Splunk, ArcSight, Elastic Stack, Panther, and related telemetry platforms.
- Telemetry onboarding, parsing, normalization, key-value mapping, enrichment, and dashboard/report design.
- SOC modernization, incident workflows, runbooks, playbooks, detection tuning, and executive reporting.
- Threat intelligence enrichment, log correlation, forensic collection support, and malware/threat-analysis workflows.