Experience in security technologies such as: Security information and event management (SIEM), IDS/IPS, Data Loss Prevention (DLP), Proxy, Web Application Firewall (WAF), Endpoint detection and response (EDR), Anti-Virus, Sandboxing, network- and host- based firewalls, Threat Intelligence, Penetration Testing, etc. Analyze network and endpoint data in both structured and unstructured methods using the SIEM and specialized tooling; remain tool-agnostic concepts and methods are key, the tool is only a means.