Resume

Certified cybersecurity analyst (Security+, CySA+) specializing in vulnerability management, log analysis, and automated remediation, with a secure-SDLC perspective from more than four years of software testing and integration engineering.

Location
Fremont, CA
Email
casey.ledbetter@gmail.com
LinkedIn
casey-ledbetter
GitHub
CSLedbetter

Experience

  1. Feb. 2026 to present

    Cybersecurity Analyst (Vulnerability Management and SecOps Intern)

    Log(N) Pacific

    • Conducted vulnerability scans, provided detailed reports, and implemented PowerShell-based remediations, contributing to a 100% reduction in critical, 90% in high, and 76% in medium vulnerabilities for the server team.
    • Performed vulnerability assessments and risk prioritization using Tenable across Windows and Linux environments.
    • Executed secure configurations and compliance audits (DISA STIG) with Tenable to meet industry standards.
    • Automated remediation processes and STIG implementations using PowerShell to address critical vulnerabilities.
    • Performed threat hunting with EDR, detecting IoCs from brute force attacks, data exfiltration, and ransomware.
    • Designed, tested, and published threat hunting scenarios for incident response tabletop exercises.
    • Developed custom detection rules in Microsoft Defender for Endpoint to automate isolation and investigation of compromised systems.
    • Reduced brute force incidents by 100% by implementing inbound NSG and firewall rules to limit Internet exposure.
    • Created Microsoft Sentinel dashboards to monitor logon failures and malicious traffic using threat intelligence.
    • Used KQL to query logs within the SIEM and EDR platform.
  2. Apr. 2025 to Oct. 2026

    Integration Engineer

    NICE CXone

    • Supported SOC 2 Type II audit readiness by collecting evidence, validating technical controls, and responding directly to auditor requests.
    • Stabilized production workflows and reduced repeat incident tickets by shipping corrective changes derived from analyzing application logs and API traces.
    • Streamlined content delivery for customer support by designing and securing authentication and API access controls between the Expert knowledge platform and CRM tools.
    • Partnered with support, product, and engineering to translate business requirements into integration behavior, documenting security and data-handling considerations for each integration.
  3. Sept. 2022 to Apr. 2025

    Software Engineer in Test

    NICE CXone

    • Increased testing efficiency and pipeline reliability by leading a 4-person team to migrate over 600 automated tests from Selenium to Playwright.
    • Integrated Playwright into the existing Jenkins CI/CD pipeline, giving engineering automated regression coverage on every build.
    • Prevented production regressions by partnering with development teams to integrate parallel automated test coverage into the Jenkins CI/CD pipeline.
    • Managed a training and mentorship program for 5 new hires over 12 months.
    • Monitored application health in Datadog and Rollbar, triaging production errors and escalating anomalies to on-call engineers.
  4. Mar. 2022 to Sept. 2022

    QA Engineer

    NICE CXone

    • Enforced least-privilege access and secured identity perimeters for 20 engineers by administering AWS IAM and OneLogin user lifecycle management.
    • Accelerated weekly release deployments by reducing blocking flaky tests from 100+ to fewer than 20 by maintaining automated Selenium regression suites on AWS.
    • Ran automated Selenium regression suites on AWS via Jenkins as a required gate for weekly releases.
    • Coordinated with engineering, support, and services teams to reproduce, validate, and resolve customer-reported defects.
  5. Sept. 2019 to Mar. 2022

    Technical Customer Success Agent (L3 Support)

    MindTouch / NICE CXone

    • Mitigated high-severity platform outages as an L3 escalation point by performing root-cause analysis and stakeholder communication via Splunk and Datadog log reviews.
    • Resolved enterprise authentication blockers by diagnosing and remediating SAML SSO and API configurations within Okta and OneLogin identity providers.
    • Monitored site availability alerts via OpsGenie and PagerDuty, proactively notifying customers and internal teams of potential outages.
    • Managed DNS changes (CNAME records) for custom domains and guided customers through domain ownership verification.

Certifications

  • CompTIA CySA+Feb. 2026
  • CompTIA A+Jun. 2026
  • CompTIA Security+Aug. 2023

Education

  • B.S. Cybersecurity and Information Assurance, Western Governors UniversityExpected Apr. 2027
  • A.S. Cybersecurity, San Diego City College

Projects

Skills and tools

Security: Tenable, Microsoft Defender for Endpoint, Microsoft Sentinel, KQL, DISA STIG, Splunk, Elastic SIEM, incident response.

Identity: Okta, OneLogin, AWS IAM, SAML SSO, SCIM provisioning, least privilege, user lifecycle management.

Engineering: Python, PowerShell, Bash, Playwright, Selenium, Jenkins CI/CD, API integrations, Datadog, Rollbar.

Platforms: Azure, AWS, Windows, Linux, macOS, Google Workspace, JAMF.