Erick Cisneros
ContactResume
Directory
Overview
Experience
Investigations & Tooling
The Trophy Case
Education
Contact Me
Direct Inquiries
Resume & Selected Portfolio

Security Operations & Detection Engineering

Cybersecurity analyst specializing in enterprise incident triage, Microsoft Defender for Endpoint (MDE), Microsoft Sentinel SIEM, and vulnerability management. Based in New York.

Contact MeDownload Resume
Erick Cisneros
Career History

Work Experience

Chronological Record
06/2026 — PRESENT
APPLE SERVICES ENGINEERING • PRIVATE CLOUD COMPUTE
Cupertino, CA (Remote)

Software Test Engineer — Career Experience

Apple
  • Contributed code to an end-to-end automated testing system for successful builds.
  • Automated build notifications to improve communication within the development cycle.
  • Adapted quickly to a fast-paced development environment for Apple products.
Core Tools:Private Cloud Compute • Apple Services Engineering (ASE) • CI/CD Pipelines • Automated Testing • Workflow Automation
02/2025 — 09/2026
ENTERPRISE SECURITY OPERATIONS
New York, NY

Cyber Security Support Analyst (Vulnerability Management & SecOps Intern)

Log(N) Pacific
  • Manage enterprise security operations monitoring, incident triage, and vulnerability lifecycle remediation across hybrid cloud and on-premise infrastructure.
  • Investigate tier-1 and tier-2 alerts within Microsoft Sentinel SIEM and Microsoft Defender for Endpoint (MDE).
  • Lead recurring vulnerability scan cycles with Tenable.io, prioritizing remediation by CVSS v3 score and asset criticality.
  • Analyze authentication anomalies, impossible travel flags, and privilege changes in Azure Active Directory (Entra ID).
  • Develop custom KQL queries for proactive threat hunting, alert tuning, and recurring telemetry log analysis.
Core Tools:Microsoft Sentinel • Defender for Endpoint • Tenable.io • Azure AD • KQL • Wireshark • PowerShell • DISA STIG
08/2021 — PRESENT
HARDWARE & SOFTWARE DIAGNOSTICS
New York, NY

Technical Expert

Apple
  • Delivered high-tier hardware diagnostics, operating system fault isolation, and technical customer advocacy aligned with official Genius Bar standards.
  • Maintained a 100% repair resolution rate, executing complex first-time diagnostics for macOS, iOS, and client hardware architectures.
  • Achieved top regional Net Promoter Scores (NPS) by establishing technical trust and delivering empathetic, clear troubleshooting.
  • Mentored peers on advanced diagnostic workflows, logic board isolation, and Apple repair standards, increasing team service velocity.
  • Guided clients through endpoint security baselines including FileVault disk encryption, two-factor authentication, and account recovery.
Core Tools:Genius Bar Diagnostic Protocols • macOS Architecture • iOS Troubleshooting • Endpoint Security • Hardware Repair
10/2020 — 03/2021
HARDWARE & ENDPOINT REMEDIATION
New York, NY

Repair Technician

Computuners
  • Executed component-level hardware diagnostics, board-level component replacements, and comprehensive system stress testing across client workstations.
  • Conducted deep malware eradication, eliminated persistent rootkits and spyware, and restored operating system boot and registry integrity.
  • Recovered critical business and personal data from degraded or failing storage media, executing secure migrations to encrypted storage.
  • Built custom high-performance workstations and executed legacy hardware architecture modernization for commercial clients.
Core Tools:Component Diagnostics • Custom PC Architecture • Hardware Upgrades • Malware Eradication • Data Recovery
Detection Engineering

Security Investigations & Tooling

View All Threat Hunts
01DETECTION AUTOMATION

AI SOC Analyst Tool

Automated threat hunting assistant leveraging OpenAI's API to query Azure and MDE telemetry, accelerating alert triaging.

Read Study
02INCIDENT RESPONSE & FORENSICS

Azuki Import/Export Compromise

Forensic reconstruction of an RDP initial breach, Windows Defender tampering, LSASS Mimikatz extraction, and Discord exfiltration.

Read Study
03DATA EXFILTRATION & C2

EmberForge // Source Code Leak

Incident investigation into AnyDesk remote persistence, archive staging, and unauthorized cloud exfiltration through MEGA.

Read Study
04KQL THREAT HUNTING

Threat Hunt: Unauthorized TOR Usage

Hunting methodology correlating DeviceNetworkEvents with known TOR directory nodes and proxy tunneling.

Read Study
05VULNERABILITY MANAGEMENT

Vulnerability Management Lifecycle

Implementation of credentialed discovery scans, SLA prioritization, and remediation reporting in Tenable.io.

Read Study
06SIEM & TELEMETRY

Microsoft Sentinel Workbooks

Custom interactive workbooks for Sentinel mapping authentication failures, network anomalies, and threat intelligence.

Read Study
Industry Credentials

The Trophy Case

Verified Standards
CompTIA
CompTIA

CompTIA Security+

SY0-701

Inspect Credential
CompTIA
CompTIA

CompTIA A+

Core 1 & 2

Inspect Credential
ISC2
ISC2

Certified in Cybersecurity (CC)

Entry-Level Cybersecurity

Inspect Credential
Google
Google

Google Cybersecurity Professional

Professional Certificate (Coursera)

Inspect Credential
Oracle
Oracle

Oracle Cloud Infrastructure 2025 Foundations Associate

1Z0-1085-25

Inspect Credential
Oracle
Oracle

Oracle Cloud Infrastructure 2025 Certified AI Foundations Associate

1Z0-1122-25

Inspect Credential
Microsoft
Microsoft

Microsoft Certified: Azure Fundamentals

AZ-900

Inspect Credential
Academic Background

Education

Collegiate Degrees
2021
SENIOR COLLEGIATE DEGREE
New York, NY

B.S. in Computer Science and Information Security

John Jay College of Criminal Justice (CUNY)
  • Specialized in cyber threat intelligence, network forensics, applied cryptography, and incident response methodologies.
  • Completed comprehensive coursework across Operating Systems Architecture, Data Structures, and Security Governance.
2018
ASSOCIATE DEGREE
Suffern, NY

A.S. in Computer Information Systems

Rockland Community College (SUNY)
  • Concentration in systems administration, database management, and enterprise network infrastructure.
  • Built rigorous foundations in algorithm development, hardware diagnostics, and Linux operating systems.
Technical Core

Additional Skills & Security Standards

Endpoint Detection and Response (EDR)CVE / CWE ManagementCVSS v3 ScoringOWASP Top 10Risk PrioritizationVulnerability RemediationPowerShell ScriptingBASH ScriptingFirewall & NSG ConfigurationNIST 800-37 (RMF)NIST 800-53 (Security & Privacy Controls)NIST 800-61 (Incident Handling)NIST 800-40 (Patch Management Planning)NIST Cybersecurity Framework (CSF)PCI-DSSGDPRHIPAA
Fluency

Languages

EnglishNative
SpanishNative
FrenchElementary
Communication & Inquiries

Contact Me

Direct Representation
Direct Channels

Get In Touch

I am always open to discussing enterprise security operations, incident triage, detection engineering, and vulnerability management opportunities.

New York, NY • Hybrid / Onsite / Remote
Official Documentation

Resume

Download my complete verified resume for a comprehensive breakdown of technical skills, enterprise certifications, and security incident investigations.

PDF DOCUMENTUpdated 2026

Erick Cisneros Ruballos — Resume

Cybersecurity Operations & Detection Engineering

Download Resume (PDF)
© 2026 Erick Cisneros Ruballos
LinkedIn•GitHub•Direct Email