Elliot Ramsden
Insider Threat Hunter @Santander UK
Signup · Get unlimited contacts
WORK HISTORY
Insider Threat Hunter @Santander UK
Milton Keynes, GB
Threat Hunting- Identify and investigate activity that may indicate an Insider Threat within the business- Perform ad-hoc requests when notified of suspicious users or activity occurring.• Detection Engineering- Build detections within different technologies to identify users performing suspicious behaviour- Tune detections to reduce false positives and reduce alert fatigue.• Automation - Help existing teams recreate their repetitive tasks in an automated way using Power Automate, TypeScript, and Python.
EDUCATION
Pitsford School
GCSEs
University of Staffordshire
BSc (Hons), Cyber Security
Kettering Science Academy
A Levels
ABOUT ELLIOT RAMSDEN
I currently work as an Insider Threat Hunter at Santander, where I conduct threat hunts within different technologies to identify users within the business who may pose an Insider Threat and present a risk to the organisation. Whilst at Santander, I also help existing teams automate their current repetitive tasks so that their workload is reduced and enable them to focus their time on other efforts. Previously, I worked at ReliaQuest where I was responsible for responding to incidents for numerous Fortune 500 companies. Due to performing incident response for multiple customers, I have also had to work with numerous technologies such as CrowdStrike, Microsoft Defender, Splunk, and many more. As part of this role, I also implemented tuning logic for these various technologies to reduce false positive alerts, ensuring customers only received actionable alerts. I graduated with a degree in Cyber Security (Hons) BSc degree from Staffordshire University, where I achieved a 1:1 (First Class) degree. During this time at university, I completed modules such as network security, ethical hacking, software development, and machine learning, amongst others. My dissertation involved creating a reverse shell program between a client and a server; the client code was uploaded to the victim machine using a USB Rubber Ducky.I am eager to connect with like-minded individuals within the IT industry. Please feel free to reach out to me if you\'d like to connect.
This profile is compiled from publicly available professional sources. Unifers is not affiliated with or endorsed by LinkedIn. Request removal of this profile.