Experienced Security Analyst specialising in incident investigations, detection logic tuning, and enhancing response maturity in enterprise SOCs. Proficient in Microsoft Sentinel, Defender XDR, Tenable, and Azure security, with expertise in applying MITRE ATT&CK frameworks. Skilled in mentoring junior analysts and optimising detection strategies and response workflows.
Overview
5
5
years of professional experience
4
4
years of post-secondary education
1
1
Certification
Work history
Information Security Analyst
Charities Aid Foundation Bank (CAF)
Kent, United Kingdom
2025.08 - 2026.02
Triage and resolve security incidents using tools across the Microsoft Azure security suite (Defender, Sentinel, Intune) to maintain a strong enterprise security posture.
Led remediation governance across cloud, infrastructure, and third-party teams, tracking SLAs to ensure timely closure of high-risk findings.
Developed and maintained the organisation's vulnerability management dashboard, improving visibility and understanding of key risk metrics across security and IT teams.
Reduced incident backlog by 15% through proactive investigation, triage, and response to security alerts and phishing reports.
Drove a 15% reduction in phishing click rates through training, phishing simulations (KnowBe4), and targeted awareness campaigns.
Supported projects such as the Cloudflare implementation, leading design and testing phases, developing incident response playbooks, and documenting new workflows.
Created run books and knowledge materials to streamline SOC processes, enhancing consistency in team responses.
Liaised with internal teams and third-party vendors to coordinate and resolve security incidents and vulnerability findings effectively.
Senior Cyber Security Analyst/Engineer
Davies Group
London
2024.03 - 2025.07
Led the advanced configuration and tuning of SIEM tools (Microsoft Sentinel, Defender, and Azure), enhancing threat detection by 30% and reducing false positives by 25%, improving SOC efficiency.
Managed and secured cloud environments, leveraging Microsoft Azure security tools to reduce configurations by 40% and improve compliance with industry security standards.
Managed vulnerability assessment cycles using InsightVM, applying risk-based prioritisation to critical CVEs and coordinating remediation efforts to reduce exposure across key infrastructure assets.
Collaborated with IT and DevOps teams to secure deployments, resulting in a 35% improvement in patch management efficiency and a 20% decrease in exploitable vulnerabilities.
Played a key role in migrating from Microsoft E3 to E5 licenses, optimizing Microsoft Defender for Endpoint and ATP, leading to a 30% improvement in threat visibility and endpoint security.
Developed and implemented incident response playbooks, streamlining detection and mitigation processes, which reduced incident response time by 40% and increased SOC efficiency.
Provided mentorship and training to junior analysts, leading to a 20% faster onboarding process and a significant improvement in team-wide threat-hunting skills.
Cyber Security Analyst
Davies Group
London
2023.03 - 2024.03
Led the continuous monitoring of security alerts and events using advanced SIEM tools, including Microsoft Defender, Sentinel, and Azure, resulting in a 20% improvement in overall threat detection.
Regularly review and optimize email security policies via Mimecast, ensuring robust protection against phishing, malware, and email spoofing while fine-tuning filtering rules, attachment handling, and domain allow/block lists to enhance organizational email security.
Conducted in-depth investigations utilizing Rapid7 IDR, contributing to a comprehensive understanding of security incidents, their scope, and impact, thereby reducing incident resolution time by 15%.
Swiftly detected and mitigated security threats, leading to an impressive 25% reduction in response time for critical incidents.
Developed and delivered targeted security awareness training programs, achieving a notable 12% decrease in employees falling victim to phishing attacks.
Collaborated in the development and documentation procedures, contributing to a 30% enhancement in overall security preparedness.
Vulnerability Manager
Emergence Network
Gravesend, United Kingdom
2022.07 - 2023.02
Conducted in-depth forensic analysis on security incidents, identifying root causes and preventing recurrence, leading to a 30% decrease in repeated incidents.
Managed vulnerability assessments using InsightVM and other tools, identifying and prioritizing critical CVEs, resulting in timely remediation of vulnerabilities and reducing exposure to potential exploits.
Enhanced threat detection capabilities through continuous monitoring and vulnerability scanning, contributing to a 10% decrease in successful advanced persistent threats (APTs) against the organization.
Investigated computer crimes and phishing incidents, collecting and analyzing forensic evidence while performing security awareness training for employees, which improved loss prevention by 15%.
Monitored cybersecurity threats and implemented fixes where possible, collaborating with other teams to resolve escalated issues quickly and efficiently, resulting in faster threat mitigation.
Performed daily SOC tasks, including system health checks and vulnerability tracking, leading to a 10% decrease in cybersecurity-related incidents.
Maintained detailed records of security measures, policies, and vulnerability remediation activities, ensuring comprehensive tracking of the organization's security posture.
Sales Executive
Mipa Paints
2021.12 - 2022.06
Marketing Executive
Jeeni
2021.07 - 2021.12
Account Executive
Vohkus
2021.03 - 2021.07
Education
MA - Digital Marketing
University of Portsmouth
Portsmouth
2019.09 - 2020.10
BSc - Computer Games Technology
University of Portsmouth
Portsmouth
2016.09 - 2019.09
Skills
Microsoft Azure
Microsoft Sentinel
Mimecast
Microsoft Defender
Active Directory
Rapid 7 IDR
Rapid 7 VM
Qualys VM
Forcepoint Web security
Forcepoint DLP
Illumio
Sophos
CyberArk
Email Engineering
Endpoint detection & response
Vulnerability management
Playbook development
Ironscales
Phishing campaign
Tenable
Office 365
Malware Analysis
Microsoft Admin Centre
Sharepoint
Crowd strike
AWS
AAD/Entra
Threat hunting
Network monitoring
Asset Management
Mitre Framework
Cyber kill chain
IP Analysis
IAM
KQL
Cloud security
Playbook & runbooks
Ransomware
Threat Intel
Certification
Comptia Security +, Comptia, 2025-11-01
Microsegmentation Trained, Illumio, 2024-05-01
Microsoft Defender / XDR certifications, 2024-01-01
Information Security Analyst, Charities Aid Foundation Bank (CAF), Kent, United Kingdom, 2025-08-01, Present, Triage and resolve security incidents using tools across the Microsoft Azure security suite (Defender, Sentinel, Intune) to maintain a strong enterprise security posture., Manage and track vulnerabilities using Defender for Endpoint and Tenable, collaborating with infrastructure and user support teams to patch and remediate high-risk assets, reducing MTTR by 20%., Developed and maintained the organisation's vulnerability management dashboard, improving visibility and understanding of key risk metrics across security and IT teams., Reduced incident backlog by 15% through proactive investigation, triage, and response to security alerts and phishing reports., Drove a 15% reduction in phishing click rates through training, phishing simulations (KnowBe4), and targeted awareness campaigns., Supported projects such as the Cloudflare implementation, leading design and testing phases, developing incident response playbooks, and documenting new workflows., Created run books and knowledge materials to streamline daily SOC processes and improve team response consistency., Liaised with internal teams and third-party vendors to ensure effective coordination and resolution of security incidents and vulnerability findings.
Senior Cyber Security Analyst/Engineer, Davies Group, London, United Kingdom, 2024-03-01, 2025-07-31, Led the advanced configuration and tuning of SIEM tools (Microsoft Sentinel, Defender, and Azure), enhancing threat detection by 30% and reducing false positives by 25%, improving SOC efficiency., Managed and secured cloud environments, leveraging Microsoft Azure security tools to reduce configurations by 40% and improve compliance with industry security standards., Conducted over 500 vulnerability assessments using InsightVM, identifying and prioritizing critical CVEs, leading to a 45% reduction in exposure to high-risk threats through effective remediation., Collaborated with IT and DevOps teams to secure deployments, resulting in a 35% improvement in patch management efficiency and a 20% decrease in exploitable vulnerabilities., Played a key role in migrating from Microsoft E3 to E5 licenses, optimizing Microsoft Defender for Endpoint and ATP, leading to a 30% improvement in threat visibility and endpoint security., Developed and implemented incident response playbooks, streamlining detection and mitigation processes, which reduced incident response time by 40% and increased SOC efficiency., Provided mentorship and training to junior analysts, leading to a 20% faster onboarding process and a significant improvement in team-wide threat-hunting skills.
Cyber Security Analyst, Davies Group, London, United Kingdom, 2023-03-01, 2024-03-31, Led the continuous monitoring of security alerts and events using advanced SIEM tools, including Microsoft Defender, Sentinel, and Azure, resulting in a 20% improvement in overall threat detection., Regularly review and optimize email security policies via Mimecast, ensuring robust protection against phishing, malware, and email spoofing while fine-tuning filtering rules, attachment handling, and domain allow/block lists to enhance organizational email security., Conducted in-depth investigations utilizing Rapid7 IDR, contributing to a comprehensive understanding of security incidents, their scope, and impact, thereby reducing incident resolution time by 15%., Swiftly detected and mitigated security threats, leading to an impressive 25% reduction in response time for critical incidents., Developed and delivered targeted security awareness training programs, achieving a notable 12% decrease in employees falling victim to phishing attacks., Collaborated in the development and documentation procedures, contributing to a 30% enhancement in overall security preparedness.
Vulnerability Manager, Emergence Network, Gravesend, Kent, United Kingdom, 2022-07-01, 2023-02-28, Conducted in-depth forensic analysis on security incidents, identifying root causes and preventing recurrence, leading to a 30% decrease in repeated incidents., Managed vulnerability assessments using InsightVM and other tools, identifying and prioritizing critical CVEs, resulting in timely remediation of vulnerabilities and reducing exposure to potential exploits., Enhanced threat detection capabilities through continuous monitoring and vulnerability scanning, contributing to a 10% decrease in successful advanced persistent threats (APTs) against the organization., Investigated computer crimes and phishing incidents, collecting and analyzing forensic evidence while performing security awareness training for employees, which improved loss prevention by 15%., Monitored cybersecurity threats and implemented fixes where possible, collaborating with other teams to resolve escalated issues quickly and efficiently, resulting in faster threat mitigation., Performed daily SOC tasks, including system health checks and vulnerability tracking, leading to a 10% decrease in cybersecurity-related incidents., Maintained detailed records of security measures, policies, and vulnerability remediation activities, ensuring comprehensive tracking of the organization's security posture.