I will write incident response playbooks and detection engineering docs
Detection Engineer specializing in SIEM and Threat Hunting
About this Gig
Clear, usable incident response playbooks and detection-engineering documentation: the kind your team actually opens during an incident instead of ignoring. Defined steps, roles, decision points, and escalation paths, mapped to MITRE ATT&CK where it helps. I'm a working detection engineer at a live SOC, so this is written by someone who's actually run the alerts, not a technical writer guessing at the workflow. Tell me your environment, tooling, and the scenarios you want covered (phishing, ransomware, brute force, insider threat, etc.), and I'll deliver docs your analysts will actually use. Not sure what you need? Message me first.
Device:
Desktop
•
Laptop
•
Server
Operating system:
Windows
•
Linux

