Rory Duncan
Cyber Response Lead @Wella Company
Signup · Get unlimited contacts
WORK HISTORY
Cyber Response Lead @Wella Company
Development of cyber detections, response plans and continuous improvement of cyber defences across cloud, on-premises and OT environments. Worked on cyber projects including cloud security monitoring, Intune build hardening, proxy rule hardening, network segmentation, privileged access management & OT network monitoring- Advanced Detection & Incident Response: Developed and integrated cyber detection and response strategies across cloud, on-premises, and OT environments- Detection Engineering: Created custom detection rules, including MITRE-aligned use cases for DNS threats and web traffic patterns, I also onboarded additional log sources to enhance SIEM capabilities- CTI & XDR Integration: Deployed threat intelligence feeds and integrated XDR solutions into the SOC, improving threat visibility and response efficiency- Process Standardization: Authored run-books, SOPs, and playbooks to streamline incident response processes- Cloud & OT Security: Enhanced proxy and cloud security using native tools and implemented dedicated monitoring solutions for Operational Technology- Automation: Leveraged Azure Logic Apps and Python scripting to automate IOC blocking and key investigative tasks.
EDUCATION
Leeds Beckett University
Computer Forensics & Security
ABOUT RORY DUNCAN
Cyber Security Leader | Enterprise Detection and Response | Owning Strategy, Resilience…
This profile is compiled from publicly available professional sources. Unifers is not affiliated with or endorsed by LinkedIn. Request removal of this profile.