Summary
Overview
Work History
Education
Skills
Websites
Certification
Threat Hunting Experience
Timeline
Generic

LAURYN WORRENT

Laurel

Summary

Security Operations Center (SOC) Analyst with 5+ years of experience investigating enterprise security incidents across SIEM, EDR, and network telemetry in high-volume SOC environments supporting federal and commercial organizations. Specialized in incident triage, malware investigation, threat hunting, and endpoint analysis using tools such as Splunk Enterprise Security and CrowdStrike Falcon. Experienced identifying attacker behaviors including credential dumping, persistence mechanisms, lateral movement, and suspicious process execution. Proven ability to perform hypothesis-driven threat hunts, analyze process trees and registry artifacts, and coordinate containment actions with incident response teams. Highly-motivated employee with desire to take on new challenges. Strong work ethic, adaptability, and exceptional interpersonal skills. Adept at working effectively unsupervised and quickly mastering new skills.

Overview

7
7
years of professional experience
1
1
Certification

Work History

SOC Analyst II

Nightwing (formerly Raytheon Technologies)
02.2022 - Current
  • Investigate security alerts and potential compromises across enterprise environments using SIEM, EDR, and network telemetry.
  • Monitor and triage alerts across Splunk ES, firewall logs, IDS, and CrowdStrike EDR telemetry.
  • Conduct investigations involving malware activity, suspicious authentication behavior, phishing, and remote access abuse.
  • Analyze process execution chains, command-line arguments, registry artifacts, and file hashes using CrowdStrike Falcon.
  • Perform IOC sweeps and retrospective searches within Splunk to determine scope of compromise.
  • Map attacker behavior to MITRE ATT&CK tactics including credential access, persistence, and lateral movement.
  • Coordinate containment actions including host isolation, credential resets, malicious indicator blocking, and remediation.
  • Document investigative findings and remediation actions within ServiceNow case management.

SOC Analyst I (Contract)

TEKGlobal
01.2020 - 01.2022
  • Provided Tier 1 / Tier 2 SOC monitoring and incident triage support within a 24/7 enterprise SOC environment.
  • Monitored security alerts across SIEM, IDS/IPS, firewall telemetry, and email security systems.
  • Investigated phishing emails, malicious domains, and IP indicators using OSINT tools and threat intelligence platforms.
  • Conducted log analysis in Splunk to distinguish true security events from false positives.
  • Escalated validated incidents to engineering and incident response teams based on severity and risk.

IT Support I

TEKGlobal
02.2019 - 12.2019
  • Delivered Tier II support for enterprise endpoints and mobile devices.
  • Conducted remote diagnostics and troubleshooting across Windows and enterprise applications.
  • Documented incidents and resolutions within ServiceNow.
  • Provided technical support for desktop and mobile devices to enhance user experience.
  • Maintained inventory of IT supplies and equipment to ensure availability.
  • Responded to user inquiries via phone, email, and ticketing system promptly.

Education

B.S. - Biology

University of Maryland, Baltimore County
Baltimore

Skills

  • Security Operations Center (SOC)
  • Incident Response & Triage
  • Threat Hunting
  • SIEM Monitoring (Splunk Enterprise Security)
  • Endpoint Detection & Response (CrowdStrike Falcon, Sophos)
  • Malware Investigation
  • Credential Theft & LSASS Analysis
  • Persistence Mechanisms (Registry / Scheduled Tasks / Services)
  • Process Tree Analysis
  • IOC Development & Indicator Sweeps
  • MITRE ATT&CK Mapping
  • Detection Tuning & False Positive Reduction
  • Network Security Fundamentals (DNS, TCP/IP, HTTP/S)
  • ServiceNow Case Management
  • OSINT & Threat Intelligence Analysis
  • Windows, Linux, macOS Investigation

Certification

  • CompTIA Security+
  • CompTIA CySA
  • EC-Council Digital Forensics

Threat Hunting Experience

  • Conducted ransomware-related threat hunts by analyzing endpoint telemetry and process execution logs.
  • Investigated Windows registry persistence mechanisms used by attackers for maintaining access.
  • Analyzed LSASS access activity indicative of credential dumping attempts.
  • Performed hypothesis-driven hunts based on emerging CVEs and threat intelligence reports.

Timeline

SOC Analyst II

Nightwing (formerly Raytheon Technologies)
02.2022 - Current

SOC Analyst I (Contract)

TEKGlobal
01.2020 - 01.2022

IT Support I

TEKGlobal
02.2019 - 12.2019

B.S. - Biology

University of Maryland, Baltimore County
LAURYN WORRENT