Jasmine Ford
Cybersecurity Analyst
jasmine.ford@example.com(555) 664-3327San Diego, CALinkedIn: www.linkedin.com/in/jasmineford
Summary
Cybersecurity analyst with 4 years in SOC operations for healthcare and defense-adjacent environments. Triage 60+ alerts per shift in Splunk and CrowdStrike, cut false positives 38% through detection tuning, and worked 15 confirmed incidents end to end.
Work Experience
Cybersecurity Analyst II
May 2023 – Present- Triage 60+ SIEM alerts per shift (Splunk ES) for a 15,000-endpoint healthcare environment, holding median time-to-triage under 12 minutes
- Tuned 40+ detection rules against MITRE ATT&CK, cutting false positives 38% while adding coverage for 9 previously unmonitored techniques
- Worked 15 confirmed incidents end to end — containment, forensics timeline, and after-action reporting — including a ransomware attempt stopped at lateral movement
- Run phishing response: analyze 30+ reported emails weekly, maintaining auto-quarantine rules that cut user-reported phish reaching inboxes by half
SOC Analyst (Tier 1)
Jun 2021 – Apr 2023- Monitored a 24/7 SOC queue for federal clients, escalating per playbook with 100% SLA compliance over two years
- Documented 200+ investigations in ServiceNow SIR with evidence chains that passed client audit review
- Contributed 12 playbook updates adopted across the 20-analyst floor
Certifications & Clearance
CompTIA CySA+ — CompTIA (Feb 2023)
CompTIA Security+ — CompTIA (Apr 2021)
GIAC Security Essentials (GSEC) — SANS/GIAC (Aug 2024)
Skills
Operations: SIEM (Splunk ES, Microsoft Sentinel), EDR (CrowdStrike Falcon, Defender), Incident response and containment, Phishing analysis and email security, Vulnerability management (Tenable)
Frameworks & scripting: MITRE ATT&CK, NIST 800-61 / CSF, HIPAA security controls, Python and PowerShell for triage, KQL and SPL queries