Summary
Overview
Work history
Education
Skills
Certification
Timeline
Generic

Jake Wilson

Oldham,United Kingdom

Summary

Proactive and dedicated Cyber Security Analyst with 6+ years of experience in a CySOC environment, progressing from new apprentice to valuable assimilated cyber security professional. Capable in threat detection, rule tuning, and incident response, with expertise working with leading security solutions including Microsoft Sentinel and Defender, Qradar and CrowdStrike. Proven track record of detailed and high-quality live incident handling, mentoring analysts, and assisting the onboarding and tuning of customer environments to improve detection fidelity and reduce false positives. Experience in threat hunting techniques, especially within Sentinel/Defender telemetries, including behavioural based TTP detection and remediation. Passionate continuous improvement of security operations.

Overview

7
7
years of professional experience
6
6
years of post-secondary education
1
1
Certification

Work history

Cyber Security Operations Professional

BT Group
Manchester
2023.06 - Current
  • Assimilated into a full Cyber Security Analyst role after successfully completing a 4-year apprenticeship and BSc in Cyber Security Technical Professional.
  • Acted as Subject Matter Expert on Microsoft Defender and Sentinel platforms, supporting real-time incident response, investigation, and remedial actions.
  • Acted as a primary point of escalation for L1 analysts during live security incidents, offering guidance and technical insight to facilitate efficient and accurate triage and remediation of complex incidents.
  • Proven as a trusted individual within the team being frequently tasked with the mentoring and training of new team members, guiding them through system access setup, SOC processes, and live incident workflows via shadowing and coaching. Received consistently positive feedback from both new team members and management during this process.
  • Supported SIEM onboarding and tuning for multiple customer environments, which improved detection accuracy and reduced analyst fatigue by minimising false positives before launch.
  • Created knowledge articles, processes in line with the CySOCs ISO27001 accreditation.
  • Worked directly with customers during onboarding periods, including leading on customer calls, to explain and answer questions surrounding complex incidents and review potential rule tuning opportunities to further reduce false positive triggers.
  • Delivered technical insight and high-quality analysis during post-incident reviews, clarifying incident details to identify improvement areas for future cases.
  • Supported the development and refinement of detection rules and playbooks to improve threat coverage and efficiency of triage. This reduced the full time effort required to effectively triage a wide array of detection rules.
  • Recognised consistently as a dependable and knowledgeable team member who conducted high-quality analysis, contributing to a strong security posture and operational efficiency across client environments.
  • Utilised multiple features across Microsoft Sentinel and Defender platforms to improve the service including the development of logic applications and automation rules to automate escalation procedures, reduce false positive triggers and reduce analyst fatigue.
  • Frequently covered other roles within the CySOC, primarily a threat hunting specialist position during periods of annual leave. This work was heavily Microsoft XDR focused and involved developing custom KQL queries to detect IOCs across customer environments, hunt for behavioural flags that indicate activity related to specific TTPs and write comprehensive reports for customers detailing findings, including appropriate recommendations that would sufficiently mitigate and cover threats.

Cyber Security Apprentice

BT Group
Manchester
2019.09 - 2023.06
  • Gained hands-on experience with SIEM tools, including IBM Qradar, Microsoft Sentinel/Defender and CrowdStrike supporting threat detection, investigation, and response.
  • Conducted real-time monitoring and analysis of security events across networks, identifying indicators of compromise (IoCs) and escalating threats as needed.
  • Improved internal documentation and playbooks for incident response procedures, streamlining processes for future incidents.
  • Balanced full-time responsibilities in live Cyber Security Operations Centre while completing cyber security degree, enhancing practical application of academic knowledge.

Education

Bachelor of Science - Cyber Security Technical Professional

Northumbria University
Newcastle upon Tyne
2019.09 - 2023.06

A-Levels - Computer Science, Economics, Political Studies

Oldham Sixth Form College
Oldham
2017.09 - 2019.09

Skills

  • Leading security solutions experience with expertise within Microsoft Sentinel and Defender

  • Knowledge of KQL, logic app development, automation rules, detection tuning and false positive reduction

  • Incident response and escalations of complex incidents

  • Real-Time system monitoring

  • Security log analysis

  • Cyber threat remediation and recommendations

  • Task and workload prioritisation

Certification

  • Microsoft SC-200 Security Operations Analyst Associate
  • CrowdStrike CCFR-201 - Certified Falcon Responder

Timeline

Cyber Security Operations Professional

BT Group
2023.06 - Current

Cyber Security Apprentice

BT Group
2019.09 - 2023.06

Bachelor of Science - Cyber Security Technical Professional

Northumbria University
2019.09 - 2023.06

A-Levels - Computer Science, Economics, Political Studies

Oldham Sixth Form College
2017.09 - 2019.09
Jake Wilson