Sompo SegurosInformation Security Consultant
Mar. 2021 - Feb. 2022São Paulo, Brasil- Management, analysis and correlation of events; (Qradar) - Creation of Runbooks / Playbooks - SIEM deployment, update, configuration, sizing and architecture. (Qradar) - Creation and configuration of use cases (rules, dashboards, reports, lists, filters...) in the SIEM. (Qradar) - SPL, Ariel Query Language and regular expression. (Qradar) - Cyber defense and incident investigation response (CSIRT);(Qradar) - TCP/IP, Routing and Switching. (Qradar) - Technical responsibility for SOC SaaS (Application of intelligence, Management and Supervision of all monitoring) - Mentoring and design of the SOC. ACHIEVEMENTS ● I worked as a technical leader of the incident response team. ● I planned and built the entire infrastructure of the SOC (Security Operation Center).