Josh McBreen

Josh McBreen

Followers of Josh McBreen197 followers
location of Josh McBreenSan Antonio, Texas, United States

Connect with Josh McBreen to Send Message

Connect

Connect with Josh McBreen to Send Message

Connect
  • Timeline

  • About me

    Threat Hunting | DFIR | Incident Response

  • Education

    • University of Phoenix

      -
      Bachelor of Science (B.S.) Information Technology 3.87
  • Experience

    • United States Air Force

      Jan 2002 - Aug 2021

      - Directed large-scale development and implementation of Microsoft services and virtual server solutions to meet business needs and build client loyalty supporting 4-Star General headquarters program- Led and managed staff of 48 IT professionals engaged in maintaining, integrating, and administering 458 servers across classified networks supporting 5.8 thousand joint warfighters- Supervised cyber security vulnerability program resulting in 135 server compliance across 32 southeast and deployed locations- Increased IT productivity, efficiency, agility and responsiveness, leading team of 14 to design VMware high-availability solutions Show less

      • Operations Training Team Lead

        Feb 2020 - Aug 2021
      • Operations Team Lead

        Sept 2018 - Feb 2020
      • Cyber Protection Team Lead

        Dec 2017 - Sept 2018
      • Cyber Readiness Team Lead

        Nov 2016 - Dec 2017
      • Cyber Crew Lead

        Jul 2014 - Nov 2016
      • Senior Windows System Administrator

        Jun 2010 - Jul 2014
      • System Administrator

        Jun 2005 - Jun 2010
      • Information Technology System Administrator

        Jan 2002 - Jun 2005
    • Ascent Solutions LLC

      Mar 2021 - Jun 2021
      Security Consultant
    • Ascent Solutions LLC

      Aug 2021 - Mar 2023
      Consultant

      - Lead DFIR Analyst. 10+ DFIR engagements- Senior Incident Manager (Tier 3) for Managed SOC, supporting 6 organizations- Performed vulnerability assessment across 43, /16 IP ranges worldwide- Performed active threat hunt for an organization with over 50,000 endpoints

    • Dell Technologies

      Apr 2023 - now

      - Review all security incidents to determine root cause and work with appropriate teams to resolve any security gaps.- Work with vulnerability management and threat mitigation teams to remediate larger scale issues.- Make organization wide recommendations for improving overall security posture. - L3 (Tier 3) analyst for global Incident Response Team, monitoring 2M+ assets and 120K+ users- Provided 1v1 and larger group mentoring/technical sessions for junior analysts- Continual process improvement to ensure efficiency in Incident Response

      • Cyber Threat Hunter

        Nov 2024 - now
      • Root Cause Analysis (RCA) Technical Lead

        May 2024 - Nov 2024
      • Consultant, Incident Response

        Apr 2023 - Jun 2024
  • Licenses & Certifications

    • GIAC Certified Forensics Analyst (GCFA)

      SANS Institute
      Mar 2017
      View certificate certificate
    • Certified Information Systems Security Professional (CISSP)

      (ISC)²
      May 2014
      View certificate certificate
    • Microsoft Certified Systems Administrator: Windows Server 2003

      Microsoft
      Aug 2012
    • CompTIA Security+

      CompTIA
      Aug 2012