Omar Haddad
Summary
Cybersecurity Analyst with experience supporting SOC operations, investigating security events, and improving detection coverage. Proven track record in vulnerability management, access reviews, and incident documentation across healthcare and manufacturing environments.
Experience
- Investigated alerts in the SOC workflow and reduced false positives by refining correlation rules for endpoint activity.
- Coordinated incident response steps and documented containment actions that improved handoffs between IT and security.
- Managed monthly vulnerability scans and tracked remediation status to close prioritized findings within agreed timeframes.
- Performed vulnerability triage and worked with system owners to remediate critical flaws affecting production segments.
- Reviewed privileged access and updated role assignments, improving account ownership tracking for shared administrative groups.
- Supported phishing simulations and revised awareness materials based on recurring failure patterns from user reporting.
- Monitored log sources and validated alert accuracy by tuning thresholds for authentication and network events.
- Maintained incident timelines and evidence packages to support audit requests and internal post-incident reviews.
- Assisted with endpoint hardening checklists and confirmed configuration baselines across managed device groups.
Skills
Incident Response · Log Analysis · SIEM Monitoring · Vulnerability Management · Access Reviews · Threat Hunting · Alert Tuning · Asset Inventory · Risk Assessment · Security Documentation
Certifications
CompTIA Security+ · CompTIA CySA+ · ISC2 Certified in Cybersecurity (CC)
Education
Bachelor of Science in Computer Information Systems, University of North Shore (public, regional).