Post Job Free
Sign in

Cybersecurity Incident Response & SIEM Specialist

Location:
Orlando, FL
Posted:
March 28, 2026

Contact this candidate

Resume:

CHRISTOPHER J. THATCHER

*********************@*****.*** 609-***-**** Orlando, FL

Summary

Cybersecurity professional with expertise in SIEM monitoring, incident detection, log analysis, and threat investigation. Proficient in Splunk SIEM, network traffic analysis, and vulnerability assessments. Skilled in real-time incident triage, escalation management, and audit-ready documentation aligned with SOC workflows. Focused on maintaining security compliance and risk mitigation through analytical thinking and incident response capabilities.

Skills

Incident management

Threat investigation

Threat Hunting

Vulnerability assessment

SIEM analysis

Security oversight

Identity & Access Governance (Active Directory)

Network analysis

System Monitoring

Policy Enforcement

Experience

The Walt Disney Company Orlando, FL

Security Cast Member

12/2022 - Current

Optimized real-time incident response in a 24/7 high-volume operations environment by efficiently handling 15–25 cases per shift, achieving an average response time under 5 minutes and ensuring swift escalation to the right stakeholders.

Strengthened compliance and security by executing SOP-driven access controls, proactively identifying risk events, and maintaining a 98%+ compliance rate across 500+ monthly incidents.

Improved operational continuity through precise, audit-ready documentation and structured shift handoffs, enabling seamless transitions across a 3-shift rotation and eliminating information gaps.

Managed 100–200 daily interactions, resolved conflicts professionally, and produced clear reports to support effective post-incident analysis.

Streamlined incident workflows and handoff processes, reducing recurring errors and enhancing overall shift productivity.

The Walt Disney Company Orlando, FL

Merchandise Cast Member

12/2021 - 12/2022

Streamlined high-volume front-line operations by applying company policies and exception protocols, resulting in enhanced service reliability during peak periods.

Managed 30+ customer interactions per shift while maintaining precise documentation, improving audit readiness and compliance reporting.

Resolved 8–10 transaction exceptions per shift with 100% same-shift resolution, leveraging POS tracking systems to minimize backlog and maintain accuracy under pressure.

Enhanced loss prevention by proactively identifying and escalating suspicious transactions, contributing to a 20% reduction in risk exposure and supporting management investigations.

Aquatica Orlando Orlando, FL

Shallow Water Guard

12/2020 - 12/2021

Ensured the safety of 500+ daily guests in a high-traffic aquatic environment by proactively monitoring risks and maintaining situational awareness, achieving zero preventable safety incidents over 12 months.

Conducted visual scanning every 3–5 seconds to detect hazards, enabling early intervention and enhancing response effectiveness.

Led emergency responses for 15+ critical incidents, documenting all events in standardized reports for regulatory compliance and post-incident analysis.

Collaborated in weekly safety drills and risk assessments, identifying operational gaps and recommending corrective actions that improved safety protocols.

Championed safety culture through ongoing observation and hazard mitigation, ensuring secure environment for staff and guests.

Education

University of Central Florida Orlando, FL

Bachelor of Science in Criminal Justice

Professional Projects

Splunk SIEM Threat Investigation - Mail 'N Trail.

UCF Cyber Defense / Iron Circle Jaion – Mail ‘N Trailn 2026

Investigated over 500 security log events in Splunk SIEM using SPL queries, event correlation, and alert triage.

Identified 3 confirmed Indicators of Compromise (IOCs) and reconstructed an attack timeline aligned with 5 MITRE ATT&CK techniques.

Prepared incident reports including containment strategies, detection improvements, and system hardening recommendations.

Network Enumeration & Vulnerability Assessment - Nmap security Analysis.

UCF Cyber Defense 2026

Conducted network reconnaissance on a 20-host lab environment using Nmap for service discovery and port scanning.

Discovered 45+ exposed services and 8 high-severity vulnerabilities.

Recommended remediation including patching, service hardening, and network segmentation.

Documented methodology and findings to create reproducible, audit-ready reports.

Identity & Access Management Lab - Active Directory.

UCF Cyber Defense 2026

Implemented least-privilege access for 20 user accounts across 4 AD security groups.

Conducted access reviews and JML audits to identify privilege escalation risks.

Delivered reports recommending improved access governance, policy hygiene, and security logging.

Automated Malware Detection & File Triage - ClamAV Workflow.

UCF Cyber Defense 2026

Built automated malware scanning workflow analyzing 271 files.

Performed hash verification and metadata analysis to reduce false positives.

Produced structured reports supporting SOC ticketing, containment, and endpoint hygiene.

Memory Forensics Investigation - Volatility Analysis.

UCF Cyber Defense / Iron Circle Jan 2026

Analyzed Windows memory images, extracting process artifacts and reconstructing malicious PowerShell activity.

Recovered forensic artifacts and summarized actionable remediation recommendations.

Network Traffick Investigation - Wireshark PCAC Analysis

UCF Cyber Defense 2026

Analyzed 10,000+ network packets to investigate abnormal activity.

Identified suspicious flows and protocol anomalies; documented findings for escalation.

Honeypot Threat Intelligence Analysis - Cowrie SSH/Telnet Monitoring.

Self-Directed Security Lab 2026

Monitored 100+ attacker sessions, analyzing credential-guessing patterns and executed commands.

Mapped behaviors to MITRE ATT&CK tactics and suggested improvements such as MFA, rate limiting, and enhanced monitoring.

Certifications

University of Central Florida: Cyber Defense Professional Certificate

Iron Circle: CyberAdvantage Training Certificate; Incident Response (IR) Expert -

Training Certificate

#HRJ#34a076bd-0d05-4a77-99c5-bc107df39a01#



Contact this candidate