Hydroficient logoCurrently an Extern @Hydroficient
Gregory Parker portrait

Cybersecurity Analyst Turning Complexity into Clarity

I specialize in transforming intricate security data into clear, actionable strategies for organizations, enhancing their resilience.

Works samples

Delve into a collection of projects showcasing my work in threat modeling, incident response, and risk analysis, reflecting my commitment to cybersecurity excellence.

  • Map and Secure A Network

    ·

    Map and Secure A Network

    Assessed and redesigned a legacy enterprise network supporting a mission-critical IBM AS/400 ERP environment; developed secure network architecture, performed risk analysis, and designed infrastructure improvements to support modernization while maintaining business continuity.

  • Enumerate network devices using iTop and secure network

    ·

    Enumerate network devices using iTop and secure network

    Conducted comprehensive network enumeration using Nmap and iTop to identify unmanaged assets, validated and updated CMDB records, performed traceroute analysis, and created accurate asset documentation to support incident response readiness.

    NmapiTop

About me

I specialize in transforming intricate security data into clear, actionable strategies for organizations, enhancing their resilience.

I am a detail-oriented Cybersecurity Analyst with hands-on experience in threat modeling, incident response planning, system enumeration, and SIEM log analysis (Splunk/Elastic). My solid foundation in network configuration, NIST, and MITRE ATT&CK allows me to translate complex security data into actionable insights. With expertise in risk assessment, compliance, and investigative analysis, I support data-driven decisions. I'm known for my creative problem-solving and critical thinking, providing

Externships

Hydroficient IoT Cyber Defense Externship

Hydroficient

Experience

Cybersecurity Analyst

Tripleten · July 2025 - Present, Remote

Client Risk Advisor

Allstate Insurance · January 2024 - Present, Remote

Information Risk Relationship

Farmers Insurance · July 2022 - January 2024, Houston, Texas

Risk Incident Analyst

Progressive Insurance · July 2021 - July 2024, Houston, Texas

Critical Infrastructure Analyst

Shell Energy/ NRG · March 2020 - May 2021, Houston, Texas

Risk Assessment Associate

AIG Travel Guard · January 2017 - January 2020, Houston, Texas

USAA Financial Risk and Security Analysis

United Recovery Systems · December 2015 - January 2017, Houston, Texas

Sales Supervisor

Xerox Services / Sprint Customer Care · February 2014 - December 2015, Houston, Texas

Education

TripleTen

Cybersecurity Analyst Certificate | TripleTen | Remote · Class of 2026

Kempner

High School Diploma | Kempner | Sugar Land, TX · Class of 2011

Skills

threat modelingincident response planningsystem enumerationSIEM log analysisSplunkElasticnetwork configurationNISTMITRE ATT&CKSIEM maintenanceWazuhtriage and investigation of alertswriting detection rulesSIGMAYARAthreat intelligenceOSINTFirewall configurationpfSenseModSecurityvulnerability assessmentexploitationremediationCreating IRPsNIST CSFIR playbookstabletop exercisesNessusMetasploitMeterpreteriTopWiresharkSysmonPowerShellSplunk searchesAWS CloudTrailhash analysisBase64 decodingIP reputation research
Back to works

Map and Secure A Network

Assessed and redesigned a legacy enterprise network supporting a mission-critical IBM AS/400 ERP environment; developed secure network architecture, performed risk analysis, and designed infrastructure improvements to support modernization while maintaining business continuity.

Overview

Assessed and redesigned a legacy enterprise network supporting a mission-critical IBM AS/400 ERP environment; developed secure network architecture, performed risk analysis, and designed infrastructure improvements to support modernization while maintaining business continuity.

View all works
Back to works

Enumerate network devices using iTop and secure network

Conducted comprehensive network enumeration using Nmap and iTop to identify unmanaged assets, validated and updated CMDB records, performed traceroute analysis, and created accurate asset documentation to support incident response readiness.

NmapiTop

Overview

Conducted comprehensive network enumeration using Nmap and iTop to identify unmanaged assets, validated and updated CMDB records, performed traceroute analysis, and created accurate asset documentation to support incident response readiness.

View all works
Back to works

Security Posture Analysis

Analyzed a ransomware incident case file to identify security events, performed root cause analysis, researched best practices, and authored a formal cybersecurity assessment report with prioritized remediation strategies.

Overview

Analyzed a ransomware incident case file to identify security events, performed root cause analysis, researched best practices, and authored a formal cybersecurity assessment report with prioritized remediation strategies.

View all works
Back to works

Threat Modeling for Xibalba Interactive

Conducted a comprehensive threat modeling assessment identifying high-risk threat actors and attack scenarios, evaluated organizational risk exposure, developed layered defensive recommendations, and authored a professional threat model report.

Overview

Conducted a comprehensive threat modeling assessment identifying high-risk threat actors and attack scenarios, evaluated organizational risk exposure, developed layered defensive recommendations, and authored a professional threat model report.

View all works
Back to works

Develop an Incident Response Plan

Reviewed and revised an enterprise Incident Response Plan aligning procedures with NIST best practices; validated objectives, roles, playbooks, and produced comprehensive security documentation and policy recommendations.

Overview

Reviewed and revised an enterprise Incident Response Plan aligning procedures with NIST best practices; validated objectives, roles, playbooks, and produced comprehensive security documentation and policy recommendations.

View all works
Back to works

Network Modernization Presentation

Developed a Network Modernization Proposal assessing legacy infrastructure and cybersecurity risks, designed a phased network hardening strategy, and authored executive-ready documentation for security governance and operational policies.

Overview

Developed a Network Modernization Proposal assessing legacy infrastructure and cybersecurity risks, designed a phased network hardening strategy, and authored executive-ready documentation for security governance and operational policies.

View all works
Back to works

Vulnerability Assessment

Conducted a comprehensive vulnerability assessment across enterprise hosts, authored executive-level reports, analyzed trends, and produced remediation recommendations with visual security metrics.

Nessus

Overview

Conducted a comprehensive vulnerability assessment across enterprise hosts, authored executive-level reports, analyzed trends, and produced remediation recommendations with visual security metrics.

View all works
Back to works

Pentesting report

Conducted a web application penetration test including reconnaissance, controlled exploitation, and documentation of technical findings in a professional penetration testing report with remediation recommendations.

WordPressMetasploit

Overview

Conducted a web application penetration test including reconnaissance, controlled exploitation, and documentation of technical findings in a professional penetration testing report with remediation recommendations.

View all works
Back to works

Remediation Report

Utilized Wireshark to analyze network traffic, implemented vulnerability remediation through configuration changes and patch validation, verified remediation effectiveness with PCAP comparisons, and produced comprehensive technical documentation.

WiresharkPCAP

Overview

Utilized Wireshark to analyze network traffic, implemented vulnerability remediation through configuration changes and patch validation, verified remediation effectiveness with PCAP comparisons, and produced comprehensive technical documentation.

View all works
Back to works

Atomic Red Team Testing and SIEM Deployment

Executed ART attack simulations on Windows endpoints using PowerShell, monitored Sysmon telemetry in Wazuh SIEM, evaluated Wazuh detection rules, performed log correlation and threat hunting, and documented findings for SIEM tuning.

PowerShellSysmonWazuh

Overview

Executed ART attack simulations on Windows endpoints using PowerShell, monitored Sysmon telemetry in Wazuh SIEM, evaluated Wazuh detection rules, performed log correlation and threat hunting, and documented findings for SIEM tuning.

View all works
Back to works

Triage Alerts and IR Report

Investigated network security alerts by analyzing packet captures in Wireshark and correlating events with Splunk logs; performed alert triage, leveraged Splunk searches for IOC investigation, and documented findings in an Incident Response Report.

WiresharkSplunk

Overview

Investigated network security alerts by analyzing packet captures in Wireshark and correlating events with Splunk logs; performed alert triage, leveraged Splunk searches for IOC investigation, and documented findings in an Incident Response Report.

View all works
Back to works

Formal Incident Triage Report on a major investigation.

Investigated a high-severity incident using Splunk to triage alerts and correlate logs, identified multiple MITRE ATT&CK techniques, correlated evidence across Sysmon and Suricata, and authored a comprehensive Incident Response Report with remediation recommendations.

SplunkSysmonSuricata

Overview

Investigated a high-severity incident using Splunk to triage alerts and correlate logs, identified multiple MITRE ATT&CK techniques, correlated evidence across Sysmon and Suricata, and authored a comprehensive Incident Response Report with remediation recommendations.

View all works
Back to works

Incident Report for a complex attack

Conducted a Splunk-based investigation of a complex multi-stage attack, correlated evidence across AWS CloudTrail and various logs, mapped attacker behavior to MITRE ATT&CK, leveraged OSINT and hash analysis, and authored a detailed Incident Response Report with cloud security recommendations.

SplunkAWS CloudTrailOSINT

Overview

Conducted a Splunk-based investigation of a complex multi-stage attack, correlated evidence across AWS CloudTrail and various logs, mapped attacker behavior to MITRE ATT&CK, leveraged OSINT and hash analysis, and authored a detailed Incident Response Report with cloud security recommendations.

View all works