Cybersecurity Engineer at MyCloudDoor S.A. (2024-04 – Present)
Research and implement security techniques, manage vulnerabilities, and improve security infrastructure.
- Research and implement the best security techniques based on the CIS Controls v8 framework, following an action plan designed by the GRC manager. Document both the procedures and technical instructions required for execution and configuration.
- Managed vulnerabilities identified by Microsoft Defender, automated remediation with Intune, and extended coverage to legacy systems using Azure Arc.
- Set up Bitwarden as the company's password manager, integrating it with Azure AD through SSO and SCIM to ensure secure access and automatic user management.
- Research and propose improvements to increase the Microsoft Defender Secure Score.
- Research possible remediation actions to implement after hardening firewalls based on CIS Controls v8, and after conducting Active Directory audits using Forest Druid and PingCastle.
Cybersecurity Analyst L1/L2 at Sothis S.A. (2023-03 – 2024-04)
Alert review and analysis, security recommendations, and MISP platform management.
- Reviewed and prioritized alerts from Qradar and TheHive, performing initial assessments and diving deeper when incidents required further investigation. Relied on client tools like TrendMicro, Microsoft Defender, Armis, CrowdStrike, SentinelOne, and Kibana to support the analysis and gather context.
- Prepared tailored security recommendations for clients, drafted monthly executive reports, and managed the company's MISP platform—keeping it consistently ranked among the national TOP 10.
- Create Use Cases in Qradar by parsing new sources and handling exceptions for debugging. Integrate sources like Defender and Cato via API into Sentinel.
Head of Operations and Production at Manufacturas Taberner S.A. (2006-02 – 2022-09)
Process optimization, team leadership, and IT infrastructure management.
- Optimize processes in Quality, Production, and Maintenance. Lead production teams and middle management.
- Manage the planning of the company's computer system and communications, keep the telecommunications environment secure and updated.