Resume
Certified cybersecurity analyst (Security+, CySA+) specializing in vulnerability management, log analysis, and automated remediation, with a secure-SDLC perspective from more than four years of software testing and integration engineering.
- Location
- Fremont, CA
- casey-ledbetter
- GitHub
- CSLedbetter
Experience
Feb. 2026 to present
Cybersecurity Analyst (Vulnerability Management and SecOps Intern)
Log(N) Pacific
- Conducted vulnerability scans, provided detailed reports, and implemented PowerShell-based remediations, contributing to a 100% reduction in critical, 90% in high, and 76% in medium vulnerabilities for the server team.
- Performed vulnerability assessments and risk prioritization using Tenable across Windows and Linux environments.
- Executed secure configurations and compliance audits (DISA STIG) with Tenable to meet industry standards.
- Automated remediation processes and STIG implementations using PowerShell to address critical vulnerabilities.
- Performed threat hunting with EDR, detecting IoCs from brute force attacks, data exfiltration, and ransomware.
- Designed, tested, and published threat hunting scenarios for incident response tabletop exercises.
- Developed custom detection rules in Microsoft Defender for Endpoint to automate isolation and investigation of compromised systems.
- Reduced brute force incidents by 100% by implementing inbound NSG and firewall rules to limit Internet exposure.
- Created Microsoft Sentinel dashboards to monitor logon failures and malicious traffic using threat intelligence.
- Used KQL to query logs within the SIEM and EDR platform.
Apr. 2025 to Oct. 2026
Integration Engineer
NICE CXone
- Supported SOC 2 Type II audit readiness by collecting evidence, validating technical controls, and responding directly to auditor requests.
- Stabilized production workflows and reduced repeat incident tickets by shipping corrective changes derived from analyzing application logs and API traces.
- Streamlined content delivery for customer support by designing and securing authentication and API access controls between the Expert knowledge platform and CRM tools.
- Partnered with support, product, and engineering to translate business requirements into integration behavior, documenting security and data-handling considerations for each integration.
Sept. 2022 to Apr. 2025
Software Engineer in Test
NICE CXone
- Increased testing efficiency and pipeline reliability by leading a 4-person team to migrate over 600 automated tests from Selenium to Playwright.
- Integrated Playwright into the existing Jenkins CI/CD pipeline, giving engineering automated regression coverage on every build.
- Prevented production regressions by partnering with development teams to integrate parallel automated test coverage into the Jenkins CI/CD pipeline.
- Managed a training and mentorship program for 5 new hires over 12 months.
- Monitored application health in Datadog and Rollbar, triaging production errors and escalating anomalies to on-call engineers.
Mar. 2022 to Sept. 2022
QA Engineer
NICE CXone
- Enforced least-privilege access and secured identity perimeters for 20 engineers by administering AWS IAM and OneLogin user lifecycle management.
- Accelerated weekly release deployments by reducing blocking flaky tests from 100+ to fewer than 20 by maintaining automated Selenium regression suites on AWS.
- Ran automated Selenium regression suites on AWS via Jenkins as a required gate for weekly releases.
- Coordinated with engineering, support, and services teams to reproduce, validate, and resolve customer-reported defects.
Sept. 2019 to Mar. 2022
Technical Customer Success Agent (L3 Support)
MindTouch / NICE CXone
- Mitigated high-severity platform outages as an L3 escalation point by performing root-cause analysis and stakeholder communication via Splunk and Datadog log reviews.
- Resolved enterprise authentication blockers by diagnosing and remediating SAML SSO and API configurations within Okta and OneLogin identity providers.
- Monitored site availability alerts via OpsGenie and PagerDuty, proactively notifying customers and internal teams of potential outages.
- Managed DNS changes (CNAME records) for custom domains and guided customers through domain ownership verification.
Certifications
- CompTIA CySA+Feb. 2026
- CompTIA A+Jun. 2026
- CompTIA Security+Aug. 2023
Education
- B.S. Cybersecurity and Information Assurance, Western Governors UniversityExpected Apr. 2027
- A.S. Cybersecurity, San Diego City College
Projects
- Honeypot with a live breach: detection, investigation, and forensic comparison
- Vulnerability management program implementation
- Threat hunting scenario: unauthorized Tor Browser usage
- Threat hunt reports
- STIG remediation scripts
- Elastic SIEM lab: set up Elastic Stack SIEM in a home lab, forwarded logs from a Kali Linux VM with Elastic Agents, generated events with Nmap, and built a dashboard and alert rules to detect them.
Skills and tools
Security: Tenable, Microsoft Defender for Endpoint, Microsoft Sentinel, KQL, DISA STIG, Splunk, Elastic SIEM, incident response.
Identity: Okta, OneLogin, AWS IAM, SAML SSO, SCIM provisioning, least privilege, user lifecycle management.
Engineering: Python, PowerShell, Bash, Playwright, Selenium, Jenkins CI/CD, API integrations, Datadog, Rollbar.
Platforms: Azure, AWS, Windows, Linux, macOS, Google Workspace, JAMF.