Summary
Overview
Work History
Education
Skills
Languages
Certification
Timeline
Generic

Diana Flores Blanco

Manager, XFTM Blue Squad Leader
San José

Summary

Cybersecurity advancements and team leadership, I significantly enhanced IBM's XFTM capabilities, achieving optimal technical outcomes and client security objectives. My expertise in Cyber Security Management, coupled with exceptional problem-solving abilities, led to a marked improvement in threat mitigation and client satisfaction. Collaborative leader with dedication to partnering with coworkers to promote engaged, empowering work culture. Documented strengths in building and maintaining relationships with diverse range of stakeholders in dynamic, fast-paced settings.

Overview

8
8
years of professional experience
5
5
Certifications

Work History

Manager XFTM Blue Squad Leader

IBM
09.2022 - Current

The Blue Squad Leader manager serves as a highly specialized extension of my team to optimize the full spectrum of XFTM capabilities like threat insight, prevention, detection, response, and recovery. Also, work as a mentor and a point of escalation when my team require my assistance.


  • Enhances XFTM operational support to high severity security incidents by leading internal operational communications and post-recovery reviews to provide visibility and incorporate findings, outcomes, and lessons learned.
  • Analyze XFTM operational metrics and KPIs for risks, issues, and opportunities to recommend actions to advance the overall service and the client's security posture.
  • Participate in the evaluation and implementation of custom reporting requirements to tailor XFTM operational reviews and the client's visibility to their security program objectives.
  • Internally aligns XFTM operations with the security program maturity road-map established in collaboration with the Consulting Team.
  • Provide technical leadership and oversight of service optimization activities, including use case implementation process guidance, prioritization, synchronization, status tracking, and coverage mapping in accordance with the security program maturity road-map

established by IBM.

XFTM - Blue Squad Leader (BSL)

IBM
05.2021 - 09.2022

The Blue Squad Leader provides cross disciplinary and cross platform leadership of XFTM operations to achieve the client's security objectives and optimal technical outcomes.


The Blue Squad construct provides a focused mission tailored, cross discipline team assigned to meet a target client’s security program requirements. The mission is to act as a highly specialized extension of the client’s security apparatus to provide advanced rapid detection and mitigation of security threats and provide IBM technical security service governance.

With the squad model, a combination of shared and dedicated resources, we introduce a skilled technical threat management leader to drive the client’s threat management services mission

.


Blue Squad Leaders have operational leadership responsibility for the client across functional components.

Escalation Engineer

IBM
09.2019 - 09.2021


Escalation Engineer Responsibilities regarding Escalations
· Expertise in time of customer crisis.
· Customer threat investigation: Customer incident investigations.
OD Responsibilities regarding Escalations
· Monitor SOC TAC Inbox for incoming escalations and make sure to assign them to the appropriate resource.
M1 Seat Responsibilities regarding Escalations
· Monitor queues – (Inbound, PCRs/OCRs and Verify) for any trouble or critical tickets, making sure they are handled by the proper individuals.

CybserSecurity Analyst Tier 1

IBM
07.2017 - 09.2019

Tier 1 SOC Analyst which roles and responsibilities are; find suspicious or malicious activity by analyzing alerts; reviewing and editing event correlation rules; performing triage on these alerts by determining their criticality and scope of impact; evaluating attribution and adversary details, finally we creates new trouble tickets Incident Response reviews.


-Analyze events, flows, alerts and advance analysis of Potential Security incidents.
-Correlate events and find tuning opportunities to have a healthy environment on customer’s console.
-Make recommendations to clients about increasing security.
-Analyze traffic trends across customer base for large trends.
-Report Security Events and make customer escalations based on traffic analysis.
-Identify trends in traffic and make recommendations to clients based on trends.
-Make recommendation to clients to improve security posture.
-Stay abreast of current and upcoming threats.
-Work with customers during crisis times to help mitigate the crisis and better client security posture to
ensure crisis does not occur again.
-Identify trends in traffic and make recommendations to clients based on trends.

CyberSecurity Analyts Tier 1

Sykes
05.2016 - 07.2017

Tier1 Security Analyst on the Computer Security Incident Team (CSIRT). CSIRT is responsible of Analyzing, preventing, mitigating planning risk loss and security incidents. Monitoring IDS and IPS sensors. Handling Data Lost Prevention (DLP) cases, detecting anomalies on the internal network, and preventing data breach, providing the confidentiality in the entire Cisco network.

Education

Bachelor of Science - Cybersecurity Bachelor's

Universidad Fidelitas
San Jose
05.2001 -

High School Diploma -

Lead University
San Jose
05.2001 -

High School Diploma -

CEB Costa Rica
Costa Rica
05.2001 -

High School Diploma -

GreenCore Solutions
San Jose
05.2001 -

High School Diploma -

Universidad Nacional
Heredia
05.2001 -

High School Diploma -

INA
Costa Rica
05.2001 -

Bachelor's - HIGH SCHOOL DIPLOMA AT LICEO ROBERTO GAMBOA VALVER

Colegio Roberto Gamboa Valverde
San Jose
05.2001 -

Skills

Team Leadership

Operations Management

Technical Support

Troubleshooting

Client Relationship/ Satisfaction

Cyber Security
Management
MITRE ATT&CK®
QRadar, Microsoft Sentinel and Splunk

Cloud Associated

Time Management

Verbal and written communication

Performance Evaluations

Problem-solving abilities

Teamwork and Collaboration

Customer Service

Organizational Skills

Interpersonal Communication

Languages

Spanish
Native or Bilingual
English
Full Professional
Portuguese
Professional Working

Certification

AWS Certified Cloud Practitioner

Timeline

IBM Certified Associate Analyst - Security QRadar SIEM V7.2.6

07-2024

AWS Certified Cloud Practitioner

06-2023

Lead Cybersecurity Professional Certificate LCSPC

02-2023

Manager XFTM Blue Squad Leader

IBM
09.2022 - Current

CompTIA CySA+ ce Certification

08-2021

XFTM - Blue Squad Leader (BSL)

IBM
05.2021 - 09.2022

Cisco Certified Network Associate Routing and Switching (CCNA Routing and Switching)

12-2020

Escalation Engineer

IBM
09.2019 - 09.2021

CybserSecurity Analyst Tier 1

IBM
07.2017 - 09.2019

CyberSecurity Analyts Tier 1

Sykes
05.2016 - 07.2017

Bachelor of Science - Cybersecurity Bachelor's

Universidad Fidelitas
05.2001 -

High School Diploma -

Lead University
05.2001 -

High School Diploma -

CEB Costa Rica
05.2001 -

High School Diploma -

GreenCore Solutions
05.2001 -

High School Diploma -

Universidad Nacional
05.2001 -

High School Diploma -

INA
05.2001 -

Bachelor's - HIGH SCHOOL DIPLOMA AT LICEO ROBERTO GAMBOA VALVER

Colegio Roberto Gamboa Valverde
05.2001 -
Diana Flores BlancoManager, XFTM Blue Squad Leader