Über Adrian
- Threat Intelligence as a Service: vigilancia de la dark web, foros y fuentes abiertas para detectar filtraciones, amenazas reputacionales y exposición de activos.
- Threat Hunting y análisis de incidentes: identificación de comportamientos anómalos, correlación de IOCs y respuesta técnica.
- Análisis de malware (estático y dinámico): identificación de familias, IOC/TTPs y creación de reglas para EDR/SIEM.
- Desarrollo de herramientas y automatización basadas en IA para detección temprana de amenazas.
- Formación y asesoría técnica para equipos SOC, Blue Team o analistas junior.
Spanisch
Muttersprachlich oder zweisprachig
Englisch
Verhandlungssicher
Projekt- und Berufserfahrung
- Wise Security GlobalSenior Threat Intelligence & Hunting Analyst/ConsultantSeptember 2023 - Heute (2 Jahre und 9 Monate)Seville, SpainOn-demand Threat Hunting service for clients:• Creation of detection rules for Sentinel and Windows Defender.• Data analysis.• Investigation of indicators.• On-demand OneShoot service.• Search for data leaks.• Search for mentions in forums and the dark web.• Investigation of potential brand reputation impacts. Digital Surveillance service:• Monitoring of forums, websites, and the dark web to detect data leaks.• On-demand monitoring of the attack surface.• Digital protection of brand and corporate reputation. Threat Modeling:• Study of criminal groups to create an attack map based on MITRE ATT&CK, tailored to clients, to implement defensive improvements.• Responsible for managing, automating, and maintaining the National SOC Network (RNS) project based on MISP.• Monitoring and analysis of criminal groups and their tools for incident response.
- BabelThreat Intelligence & Hunting AnalystJanuar 2022 - Heute (4 Jahre und 6 Monate)Seville, SpainThe main responsibilities within the Cybersecurity Innovation Department are:• Research and development of an automatic malware analysis ecosystem for the SOC (both static anddynamic), enabling the automated extraction of IOCs, TTPs, and threat behavior.• Investigation and response to security incidents related to criminal groups and APTs, analyzing their patterns and TTPs, and extracting IOAs and IOCs to respond to threats quickly and effectively.• Study and tracking of criminal groups and malware used in cyber incidents.• Project leader for the National SOC Network (RNS) at Babel. Using knowledge generated and shared acrossdepartments, events are sent to and received from CCN-CERT via MISP.• Design and management of a Threat Hunting (threat detection) ecosystem to collect IOCs from various onlineplatforms and MISP, convert them into STIX format, and upload them to an OpenTaxii server for use by SIEMs, XDRs, firewalls, and other network elements for early threat detection.• Study and implementation of Threat Hunting methodologies to detect threats within organizations.• Analyze and investigate security incidents affecting clients in order to respond to or mitigate them.• Management of the entire Malware and Innovation server ecosystem using VMware vSphere.• Research and development of machine learning and deep learning tools to detect malware and malicious emails in early stages.• Analysis of third-party security products for potential integration into Ingenia's client portfolio (XDR/EDR, commercial sandboxes, CTI platforms).
- Ingenia S.AThreat Intelligence & Hunting AnalystFebruar 2019 - Dezember 2021 (2 Jahre und 10 Monate)Seville, SpainThe main responsibilities within the Cybersecurity Innovation Department are:• Research and development of an automatic malware analysis ecosystem for the SOC (both static anddynamic), enabling the automated extraction of IOCs, TTPs, and threat behavior.• Investigation and response to security incidents related to criminal groups and APTs, analyzing their patterns and TTPs, and extracting IOAs and IOCs to respond to threats quickly and effectively.• Study and tracking of criminal groups and malware used in cyber incidents.• Automation of Ingenia's SOC processes and protocols to improve efficiency, scalability, and performance.• Analysis and investigation of client security incidents to provide response or mitigation.• Management of the entire Malware and Innovation server ecosystem using VMware vSphere.• Research and development of machine learning and deep learning tools to detect malware and phishing emails in early stages.• Evaluation and analysis of vendor products for integration into Ingenia's client portfolio (XDR/EDR solutions, commercial sandboxes, threat intelligence platforms).
Empfehlungen
Sei die erste Person, die Adrian empfiehlt
Teile Deine Erfahrung aus der Zusammenarbeit mit diesem Freelancer.
Diese Freelancer passen auch zu Ihren Kriterien
Agatha Frydrych
Backend Java Software Engineer
4.7
(3)
2
Baptiste Duhen
Fullstack developer
4.6
(4)
5
Amed Hamou
Senior Lead Developer
4
(2)
7
Audrey Champion
Web developer
4.3
(3)
4
Ausbildung und Abschlüsse
- University Master's DegreeSeville University2025University Master's Degree
- Bachelor's DegreeSeville University2016Bachelor's Degree