guest@ctrl-alt-secure: ~$

Here's my career journey so far!

Quick Overview

$ cat Career_Summary.txt
Name: Kayli Davis
Current Title: Security Risk Analyst
Experience: 4+ years in cybersecurity
Certifications: Security+, CySA+, BTL1
$ echo "Full details below..."

Professional Summary

Cybersecurity professional with 4+ years experience in security analysis and risk management. I am driven by curiosity and constantly look for opportunities to grow, develop new skills, and enhance the enterprise's security posture through strategic risk assessment and mitigation.

Experience

Xcel Energy July 2024 - Present | Denver, CO
Security Risk Analyst
  • Enhanced the enterprise's security posture by identifying essential security standards and controls for our IT, OT, and cloud products.
  • Reviewed changes to OT devices and applications to ensure alignment with established security patterns and prevent potential security risks.
  • Oversaw the risk acceptance process within RSA Archer to ensure risks were documented and accepted at the correct levels of the organization. Validated remediation plans were in place to reduce risk where possible. Managed cycle to reassess accepted risks, obtain sign-off, and provide reporting.
  • Performed both internal, and third party risk assessments to ensure compliance with security standards and address potential risks.
  • Served as a resource for evaluating and remediating security issues while facilitating effective communication between teams.
  • Coordinated vulnerability management program, assessing risk priorities and working with AWS teams to expedite remediation timelines.
Gensler May 2021 - Jul 2024 | Denver, CO
Cyber Security Analyst
  • Monitored and analyzed security alerts using Microsoft Defender and Darktrace to detect, investigate, and respond to potential threats.
  • Managed comprehensive phishing awareness program using KnowBe4, designing campaigns, tracking user engagement metrics, and generating reports on security awareness trends.
  • Led email security operations by analyzing malicious emails, implementing blocking rules in Microsoft Defender, and coordinating threat containment measures.
  • Coordinated vulnerability management program by assessing security findings, prioritizing remediation efforts, and collaborating with asset owners.
NTT Sep 2020 - Apr 2021 | Omaha, NE
SOC Analyst
  • Collaboratively detected and responded to information security incidents, maintaining SLAs for security event alerting.
  • Monitored, researched, classified, and analyzed security events on client networks.
  • Identified threats and threat vectors affecting security events.
  • Performed network traffic and log analysis using enterprise-level SIEM tools (LogRhythm, Splunk).
  • Outlined remediation procedures for compromised endpoints.

Certifications

Professional Certifications
Security+ CompTIA
CySA+ CompTIA
BTL1 Blue Team Security (IR)

Technical Skills

Core Competencies
Security Tools: RSA Archer, Axios, Microsoft Defender, ServiceNow, AWS Security Hub, Nessus, Qualys, Recorded Future
Frameworks: NIST 800-53, NIST CSF, Fortress, Incident Response