Summary
Overview
Work history
Education
Skills
Timeline
Generic
Gianluca Santus

Gianluca Santus

Greater London,United Kingdom

Summary

Cyber Security Analyst with strong expertise in Security Operations, Incident Response, Threat Detection, and SIEM/SOAR engineering within enterprise environments. Experienced in identifying, analysing, and mitigating advanced cyber threats while improving organisational security posture through proactive monitoring, automation, and threat intelligence.

Specialised in Google Chronicle SecOps, including parser development, detection engineering, playbook automation, integrations, YARA-L rules, and SIEM/SOAR optimisation. Strong understanding of MITRE ATT&CK methodologies, threat hunting techniques, OSINT investigations, and security incident management.

Demonstrated leadership capabilities through coordination and operational guidance of external MSSP security teams to improve detection coverage, rule tuning, and operational efficiency.

Passionate about continuous improvement, cyber defence innovation, and developing scalable security solutions in fast-paced enterprise environments.

Overview

3
3
years of professional experience
2
2
years of post-secondary education

Work history

Cyber security analyst

Burberry
London, Greater London
2023.04 - Current
  • Implemented cybersecurity measures, safeguarded company's digital assets.
  • Ensured data privacy by enforcing strict access controls.
  • Improved system security by implementing advanced encryption techniques.
  • Conducted regular audits, ensured compliance with data protection regulations.
  • Conduct advanced threat analysis and incident investigations across enterprise environments using Google Chronicle SecOps SIEM and SOAR platforms.
  • Conduct advanced threat hunting via Google Chronicle SecOps, Tanium, Microsoft Defender for Endpoint, Advance Hunting (KQL), Powershell, Zscaler, and OSINT.
  • Develop and optimise detection rules, parsers, playbooks, and integrations to improve security monitoring capabilities and incident response efficiency.
  • Lead threat detection initiatives aligned with MITRE ATT&CK methodologies to strengthen detection coverage against modern attack techniques.
  • Perform proactive threat hunting and security investigations leveraging OSINT platforms including VirusTotal, URLScanio, WHOIS, and other threat intelligence sources.
  • Coordinate and provide operational guidance to external MSSP security teams to improve alert quality, rule governance, and SOC operational processes.
  • Support and manage incident response activities including triage, containment, analysis, escalation, and remediation of security incidents.
  • Contribute to continuous enhancement of SOC processes, detection engineering standards, and automation initiatives.
  • Collaborate with internal stakeholders and cross-functional teams to strengthen enterprise cyber resilience and reduce organisational risk exposure.
  • Create and maintain documentation for security detections, response procedures, and operational workflows.

Education

Cyber Security risk analyst level 4 apprenticeship - Cyber Security - IT

QA Ltd - (certification released by City & Guilds)
London
2023.04 - 2024.10

Diploma of Higher Education - IT Level 3

Michele Giua
Cagliari

Skills

  • Security Operations Centre (SOC)
  • Threat Detection & Threat Hunting
  • Incident Response & Triage
  • SIEM & SOAR Engineering
  • Google Chronicle SecOps
  • Tanium
  • Microsoft Defender for Endpoint
  • Advance Hunting (KQL)
  • Detection Engineering
  • YARA-L Rule Development
  • MITRE ATT&CK Framework
  • Cyber Threat Intelligence (CTI)
  • Security Monitoring & Analysis
  • OSINT Investigations
  • Security Automation (Playbooks via Google Chronicle)
  • Log Analysis & Correlation
  • Parser Development (Google Chronicle)
  • Security Playbooks
  • Vulnerability & Risk Analysis
  • Stakeholder Communication
  • MSSP Coordination & Leadership
  • Python Scripting
  • PowerShell
  • Linux CLI
  • Splunk
  • Jira / ServiceNow

Timeline

Cyber security analyst

Burberry
2023.04 - Current

Cyber Security risk analyst level 4 apprenticeship - Cyber Security - IT

QA Ltd - (certification released by City & Guilds)
2023.04 - 2024.10

Diploma of Higher Education - IT Level 3

Michele Giua
Gianluca Santus