Sign in

Customer Service Data

Chandler, Arizona, United States
October 28, 2018

Contact this candidate



Certified Technical Lead Qualified Computer Forensic Examiner


Dynamic and result-oriented Technical Lead with over five years of experience in forensics and project management, data storage, technical support, forensic data recovery and reporting, data processing, problem resolution, and database administration. Great attention to detail and an ability to interface with clients to discuss technical issues and project workflow has led to my success and growth in the industry.


Forensic Data Recovery

Project Management

Problem Resolution

Database Administration


Customer Service

Technical Support

Tableau Write Blocking

Forensic Analysis

Cyber Incident Response

Data Processing

Project Management


McAfee Orchestrator


Check Point

EnCase Forensic

Share Point

Encase Forensic RSA Netwitness Fireeye Microsoft Exchange AWS cloud CVE Assessments FSISAC Qualys Scanning FTK Forensic Sandboxing Nuix Cellebrite HPSM Service Manager

Truecrypt Encase safeguard encryption Macintosh Citrix TIFF Files Passware CCE Boot Camp Virtual Machine Live Note MBX-PST Conversions Robocopy Relativity EnCase v7 Cellebrite Nuix FTK Global scape FTP Digital Intelligence Forensic workstations Aid4Mail Solar Winds Windows Virtual Environments HPSM Ticketing System Tableau Write Blocking Splunk Kali Linux Mobile Forensics OSINT

Highly proficient with standard computer forensic hardware and software

Exceptional planning and organizational skills to set priorities meet deadlines and use discretionary skills when handling confidential and crucial information

Good understanding of network protocols, network devices, multiple operating systems, and secure architecture

Highly qualified with exceptional verbal/written communication and strong leadership skills to effectively resolve problems and provide superior customer service

Proactive Forensic Analyst with the proven ability to prioritize assignments, manage multiple tasks simultaneously, and work efficiently under pressure

Strong critical thinking skills and ability to work independently

Union Bank (MUFG) Apr. 2016 – Present

Cyber Incident Response/e-Discovery/Forensic Analyst

Conduct Forensic (EnCase) Collections/Analysis/Reporting

Manage Exchange Email Collections-EMC Source One and Microsoft SharePoint (Ticketing system to track legal requests)

Competently created Malicious Insider/DLP implementation, Phishing, and SEV1 (Global Tabletops, Conferences, Playbook)

Responsible for SPLUNK Bluecoat Searches for reporting following SOP’s

Serve as the e-Discovery Support through a service vendor

Conduct thorough CVE assessment for patch updates (Qualys, VeriSign)

Function as the Support for legal during internal investigations regarding employee misconduct

Oversee contract negotiation between the bank and e-Discovery vendors for native document review services

RSA NetWitness (PCAP analysis) Packet capture analysis (Identifying Malicious code through HASH\Identifying DDoS attacks and Spear Phishing attempts\Threat Hunting\Creating reports

Handle FIREEYE (Sandboxing Malicious code) and STEATHWATCH (Lancope)

Coordinate CSOC Daily Status Meetings (regarding latest threats through IM tickets) and FSISAC Weekly Meetings on latest Cyber Threats

Ensure proper documentation of lessons learned per incident at the bank

Play a key role in Qualys-scanning for malware and vulnerabilities in the infrastructure, comparing results to Forensic Investigations in EnCase by IP address

Implementation of the Banks e-Discovery workflow for Legal. This included comparing vendors for purchasing hardware/software and setting up demos for the deputy chief counsel

Control AWS-Cloud platform hoisted by Amazon services

Competently proposed and led the implementation of an official forensic procedure for hard drive/machine analysis utilizing Encase Workstation. This has proved extremely successful for multiple investigations and helped meet/close several risk findings for internal forensic capabilities

Seamlessly assumed primary responsibility for Legal and Employee Relations requested investigations. Provided a superior level of support while doing so, which resulted in feedback from multiple business contacts including the banks' Head Deputy Chief Counsel praising efforts and a new level of service

Led daily meetings to facilitate coordination and communication between Enterprise Fraud, CSOC, IR, and 2nd Line for cyber events and investigations. Volunteered to move to Tempe and lead efforts at increased CSOC/IR coordination

Pioneered work on defining a more formal e-Discovery program with Legal. This included efforts to review solutions that the Bank/Legal can utilize to bring e-Discovery review in-house as opposed to current outsourcing for cost savings, increased efficiency, and greater control and security of information involved

Haystack ID LLC, Los Angeles, CA Oct. 2015 – Jan. 2016

Project Manager

Received client requests on new data or collected data from client site (EnCase) (FTK)

Effectively processed clients’ data into LAW/Nuix and promoted it to Relativity

Responded to clients’ calls to discuss project workflow

Managed multiple projects with broad scope, ambiguity, and a high degree of difficulty

Prosearch Strategies, Los Angeles, CA Dec. 2010 – Oct. 1015

e-Discovery Technician/Technical Lead

Developed client workflow including Collection of HDD (Encase) or Cell phones (Cellebrite) and development of an inclusion/exclusion list for processing user-created files; generated cell phone reports out of EnCase for client review; and processed collected data in EnCase for extraction for promotion to the processing tool

Successfully created Encase Reports for verification per custodian; and also created reports for clients’ review. This included tagging file types in EnCase that the client reported were relevant to the case for reporting

Effectively monitored incoming data from the client to ensure client deliverables matched the manifest given to Prosearch. This included hashing the data via FTK for verification

Championed the conversion and consignment of data into document repository (Relativity, E-Capture), staging the data, and conversion of file types to give to our processing team. The processing team was given the specifications of how the data should be processed and loaded into Relativity

Competently created, followed, and enforced security protocols for data. Masterminded Citrix security protocol for added security to Relativity. This also included gathering IP address ranges from law firms to add extra security to log into Relativity

Oversaw the set-up and installation of company-wide tracking system to maintain data deliverables to ensure client data and requests were met

Customized the tracking software for internal users, this included a ticketing system to track, maintain and close client requests off our SLA agreement

Spearheaded and managed new support hires that would help support clients' requests. This included training new hires to maintain Relativity security permissions, ensuring clients' accounts were activated or deactivated, and maintaining the Relativity platform to help with the user experience

Functioned as the Forensics Operation Coordinator; coordinated all the collections for one of our major clients; managed data collections around the globe for our major technology company to ensure custodial data was collected and sent to Prosearch.

University of Arizona, Tucson, AZ 2020

B.A.S- Cyber Operations

University of Arizona, Tucson, AZ 2020

N.S.A. Certification – Cyber Security

Guidance Software – EnCase Forensic, Pasadena, CA 2014

EnCE Certification

California State University East Bay, Hayward, CA 2010

Computer Forensics/Computer Science

The University of California Irvine, Irvine, CA 2009

Paralegal Studies

University of Arizona, Tucson, AZ 2008

B.A. – History, Pre-Law, Political Science


Available on request.

Contact this candidate