Lorenzo Savastano Longo
Soc Analyst L2 @Retelit
Signup · Get unlimited contacts
WORK HISTORY
Soc Analyst L2 @Retelit
Milano, IT
Grown from Junior to SOC Analyst, I contribute to the protection of clients\' digital infrastructures through continuous monitoring, threat detection, incident response, and cybersecurity compliance. I operate in a structured environment aligned with MITRE, ISO/IEC 27001/27035, NIS 2, and TC-ACN Taxonomy standards.I support compliance efforts by performing regulatory analysis, implementing technical controls, managing documentation, and producing audit-ready evidence. I design and maintain SIEM Use Cases, Playbooks, and SOAR automations to ensure a consistent and effective incident response process.My role includes threat hunting with ZeroFox and OSINT platforms (VirusTotal, AbuseIPDB, OTX, Sandboxes, Phishing Email Analysis) to identify and block malicious IPs or domains. I conduct behavioral analysis of SIEM insights, user/admin activities, and network patterns to detect anomalies or potential threats.I also train Level 1 SOC Analysts on how to investigate SIEM alerts and insights, improving the efficiency and accuracy of our first-line response.Additional duties involve managing phishing investigations and responding to CSIRT bulletins, ensuring timely incident resolution and proper documentation. I prepare both technical and executive reports and attend monthly Service Alignment Meetings (SAL) to present KPI and SLA metrics to clients.Technology Stack- SumoLogic (SIEM & SOAR): Investigation of insights, log analysis, Use Case and Playbook development, automation- Panda/SentinelOne (EDR/XDR): Endpoint monitoring, alert investigation, threat remediation- Darktrace (IDS/IPS): AI-driven network monitoring and anomaly detection- OSINT: IP/Domain/File reputation analysis to enrich threat investigations- Radware Cyber Controller: DDoS monitoring and mitigation.This role has strengthened my expertise in cybersecurity operations while enhancing soft skills such as analytical thinking, precision, client communication, and teamwork under pressure.
EDUCATION
IIS Carlo Emilio Gadda, Paderno Dugnano
High School Diploma, Liceo Linguistico
ITS Angelo Rizzoli
Associate’s Degree - European Qualifications Framework (EQF) Level 5, Cyber Defense Specialist
ABOUT LORENZO SAVASTANO LONGO
Greetings, I\'m Lorenzo! As a dedicated Level 2 SOC Analyst at Retelit, I’m specialized in cybersecurity operations, alert monitoring, incident analysis, and the implementation of cutting-edge solutions on SIEM and SOAR platforms. My daily work revolves around leveraging tools such as SumoLogic (SIEM), Darktrace (IDS/IPS), Panda and SentinelOne (EDR/XDR), OSINT and the Anti-DDoS Cybercontroller by Radware to ensure robust defenses against evolving cyber threats. Through meticulous monitoring and proactive measures, I strive to provide secure and reliable environments for our clients.In addition to these tools, I possess extensive experience with technologies including Qualys, ZeroFox, Grafana, and various online Threat Hunting platforms such as VirusTotal, AbuseIPDB, Shodan, and AnyRun. These are just a few of the many tools I confidently manage, complemented by the ability to create and optimize RegEx queries for data analysis and threat detection. My continuous learning mindset allows me to adapt to new challenges, leveraging a wide range of security solutions to maintain a comprehensive defense strategy.With a strong work ethic, fluency in English and Spanish, and a passion for both defensive and offensive aspects of cybersecurity, I excel at collaborating with diverse teams and presenting actionable insights to clients. If you\'d like to discuss cybersecurity innovations or explore opportunities for collaboration, I’m always open to connecting.“The science of today is the technology of tomorrow.”
This profile is compiled from publicly available professional sources. Unifers is not affiliated with or endorsed by LinkedIn. Request removal of this profile.