I will be your soc analyst for elastic, microsoft defender
SOC and Automation Engineer
Sobre este Serviço
Your SIEM is only as good as the analyst watching it.
Most businesses deploy Elastic Stack, Sentinel, and assume they're protected but alerts pile up unreviewed, rules stay at default, and real threats hide in the noise. By the time something is caught, it's already too late.
I'm a SOC Engineer with hands-on experience in detecting and responding to real threats in production environment.
What makes me different from every other SOC analyst on Fiverr: I don't just analyze I
automate. My n8n background means I can build self-monitoring systems that alert your team
24/7, even when no one is watching.
What I Can Do For You:
- Real-time log analysis & alert triage
- Threat hunting across your environment
- Active incident response & containment
- Custom KQL/Sigma detection rules
- False positive reduction & rule tuning
- Workflows and Playbooks automation.
- Custom dashboards creation.
Tools: Elastic/ELK · Microsoft Sentinel · Microsoft Defender · KQL · Sigma
Message me describing your environment and I'll tell you exactly where your gaps are!
Dispositivo:
Desktop
•
Notebook
•
Servidor
•
Roteador
Sistema operacional:
Windows
•
Linux
•
Ubuntu
Meu portfólio
Perguntas frequentes
What do you deliver at the end?
A written findings report covering every alert reviewed, confirmed threats, false positives tuned, and recommended next steps. Plus any rules or automation built during the engagement.
Do you work with environments outside Elastic, and Microsoft Defender?
Yes, I can adapt to any tool
Can you provide real-time 24/7 monitoring?
I can provide monitoring on a set schedule, and for continuous 24/7 monitoring we can design a flexible plan with multiple slots.
Is my data safe during the engagement?
Yes. I operate under strict confidentiality.

