Igor G.
Security Manager - Detection & Response Solutions @NEVERHACK Italy
Signup · Get unlimited contacts
WORK HISTORY
Security Manager - Detection & Response Solutions @NEVERHACK Italy
Napoli, IT
I specialize in Endpoint Detection and Response (EDR) and Security Automation, leading efforts to enhance threat detection, incident response, and cyber resilience. My role involves designing and implementing automated security workflows, optimizing EDR platforms, and driving orchestration strategies that minimize response time and maximize efficiency.Key Focus Areas: EDR Strategy & Implementation – Managing and fine-tuning EDR solutions to detect, investigate, and remediate threats in real-time. Security Automation & Orchestration – Developing playbooks and automated workflows to accelerate response to security incidents. Threat Hunting & Incident Response – Proactively identifying threats, analyzing attack patterns, and coordinating swift mitigation strategies. SIEM & XDR Integration – Ensuring seamless collaboration between EDR, SIEM, XDR, and other security tools for holistic threat management. NDR (Network Detection and Response) – Implementing network traffic analysis to detect and respond to anomalous activities, mitigating potential threats at the network level. Email Security – Managing and optimizing email security solutions (e.g, anti-phishing, spam filtering, and data loss prevention) to safeguard against email-borne threats. Policy & Compliance Enforcement – Aligning security automation with industry frameworks (MITRE ATT & CK, NIST) to maintain compliance. Cross-Team Collaboration – Partnering with SOC, IT, TI to drive security-first initiatives across the organization.
EDUCATION
Pluralsight
Managing Security in Google Cloud Platform
Fortinet
NSE1
Coursera
Google Cloud Platform Fundamentals: Core Infrastructure
EC-Council University
How to stop network attacks from winning
ICS-CERT
Cyber security ICS
Splunk
Splunk Admin ES and Power User Course, Enterprise Security Data Administering
CyberArk
Trustee
Università degli Studi di Salerno
Laurea L in Scienze e Tecnologie Informatiche, Computer Science
ITIL Foundation
ITIL v3, ITIL v3 in IT Service Management
Qualys
Qualys web application scanning
Splunk
Boss of the SOC
Cloud Architecture
ABOUT IGOR G.
CVE form-input 1.8 ui-autocomplete-input XSS:https://attackerkb.com/topics/e90l0ebMus/cve-20•••••74Hack the box profile Security Professional with experience in Cyber Defence, MITRE ATT & CK framework for developing use case.Red Canary Framework for testing use case.Threat Intelligence MISP Platform and Feed, STAXI, TAXII, OWASP Top 10. NIST, ENISA, Admiralty Scale NATO taxonomies, mitigation, incident handling, incident response. Principal SIEM technologies (Spunlk ES, IBM Qradar, HP arcsight, Rsa Netwitness, McAfee ESM), and integration with Ticketing System like ServiceNow, Remedy and OTRS. Mainly threat intelligence platform (Recorded Future, EcleticIQ, ThreatStream, Maltego), knowledge in security ratings (Bitsight). Understandings of DDos mitigation with specific appliances like ArborNetwork, Akamai. Cloud Architect and Security Engineer: Oracle, Azure, AWS.Google Cloud Platform: Core Infrastructure.Managing Security Google Cloud Platform.Network Engineer: Fortinet, Cisco, Paloalto.Certifications:Splunk fundamentals, ITIL Foundation v3, Security+ and etichal hacking, Vulnerability Management, CTIA Threat Intelligence Analyst EC Council, CyberArk Trustee, Oracle Cloud Architect, AWS Fundamentals, Azure 900 Fundamentals, NSE1, NSE2 Fortinet, Google Cloud Platform fundamentals: Core Infrastructure, Managing Security Google Cloud Platform.
This profile is compiled from publicly available professional sources. Unifers is not affiliated with or endorsed by LinkedIn. Request removal of this profile.