Igor G.

Security Manager - Detection & Response Solutions @NEVERHACK Italy

Naples, IT
MOBILE NUMBERS
+91 *********19

Signup · Get unlimited contacts

WORK HISTORY

Mar 2025 — Present

Security Manager - Detection & Response Solutions @NEVERHACK Italy

View department →

Napoli, IT

I specialize in Endpoint Detection and Response (EDR) and Security Automation, leading efforts to enhance threat detection, incident response, and cyber resilience. My role involves designing and implementing automated security workflows, optimizing EDR platforms, and driving orchestration strategies that minimize response time and maximize efficiency.Key Focus Areas: EDR Strategy & Implementation – Managing and fine-tuning EDR solutions to detect, investigate, and remediate threats in real-time. Security Automation & Orchestration – Developing playbooks and automated workflows to accelerate response to security incidents. Threat Hunting & Incident Response – Proactively identifying threats, analyzing attack patterns, and coordinating swift mitigation strategies. SIEM & XDR Integration – Ensuring seamless collaboration between EDR, SIEM, XDR, and other security tools for holistic threat management. NDR (Network Detection and Response) – Implementing network traffic analysis to detect and respond to anomalous activities, mitigating potential threats at the network level. Email Security – Managing and optimizing email security solutions (e.g, anti-phishing, spam filtering, and data loss prevention) to safeguard against email-borne threats. Policy & Compliance Enforcement – Aligning security automation with industry frameworks (MITRE ATT & CK, NIST) to maintain compliance. Cross-Team Collaboration – Partnering with SOC, IT, TI to drive security-first initiatives across the organization.

EDUCATION

2020 — 2020

Pluralsight

Managing Security in Google Cloud Platform

N/A

Fortinet

NSE1

2020

Coursera

Google Cloud Platform Fundamentals: Core Infrastructure

N/A

EC-Council University

How to stop network attacks from winning

N/A

ICS-CERT

Cyber security ICS

2017 — 2017

Splunk

Splunk Admin ES and Power User Course, Enterprise Security Data Administering

2020 — 2020

CyberArk

Trustee

2008 — 2011

Università degli Studi di Salerno

Laurea L in Scienze e Tecnologie Informatiche, Computer Science

2017 — 2017

ITIL Foundation

ITIL v3, ITIL v3 in IT Service Management

N/A

Qualys

Qualys web application scanning

N/A

Splunk

Boss of the SOC

2020

Google

Cloud Architecture

ABOUT IGOR G.

CVE form-input 1.8 ui-autocomplete-input XSS:https://attackerkb.com/topics/e90l0ebMus/cve-20•••••74Hack the box profile Security Professional with experience in Cyber Defence, MITRE ATT & CK framework for developing use case.Red Canary Framework for testing use case.Threat Intelligence MISP Platform and Feed, STAXI, TAXII, OWASP Top 10. NIST, ENISA, Admiralty Scale NATO taxonomies, mitigation, incident handling, incident response. Principal SIEM technologies (Spunlk ES, IBM Qradar, HP arcsight, Rsa Netwitness, McAfee ESM), and integration with Ticketing System like ServiceNow, Remedy and OTRS. Mainly threat intelligence platform (Recorded Future, EcleticIQ, ThreatStream, Maltego), knowledge in security ratings (Bitsight). Understandings of DDos mitigation with specific appliances like ArborNetwork, Akamai. Cloud Architect and Security Engineer: Oracle, Azure, AWS.Google Cloud Platform: Core Infrastructure.Managing Security Google Cloud Platform.Network Engineer: Fortinet, Cisco, Paloalto.Certifications:Splunk fundamentals, ITIL Foundation v3, Security+ and etichal hacking, Vulnerability Management, CTIA Threat Intelligence Analyst EC Council, CyberArk Trustee, Oracle Cloud Architect, AWS Fundamentals, Azure 900 Fundamentals, NSE1, NSE2 Fortinet, Google Cloud Platform fundamentals: Core Infrastructure, Managing Security Google Cloud Platform.

This profile is compiled from publicly available professional sources. Unifers is not affiliated with or endorsed by LinkedIn. Request removal of this profile.