Hunter Aiton

Cloud Security Engineer | Security Operations Analyst

Specializing in Azure-native security architecture, SIEM engineering (Microsoft Sentinel), and detection automation. Focused on optimizing incident response for enterprise environments through KQL-driven telemetry analysis and Infrastructure-as-Code (Terraform) deployments.

Technical Skillset

Cloud & Platforms

Azure (Sentinel/Log Analytics) Microsoft 365 Security Entra ID (Azure AD) Azure Key Vault

Security Ops

SIEM/SOAR EDR/XDR (Defender) Detection Engineering Threat Hunting

DevOps & Code

Terraform (IaC) GitHub Actions (CI/CD) KQL PowerShell/Bash

Professional Experience

Security Operations Analyst May 2024 — Jul 2025
Patriot Consulting Technology
  • Engineered custom KQL detection logic in Microsoft Sentinel, reducing false positive alerts by 30% and significantly decreasing Mean Time to Detect (MTTD).
  • Automated threat hunting workflows via customized dashboards, integrating telemetry from Defender for Endpoint and Firewall logs for unified visibility.
  • Reduced alert fatigue by optimizing incident response playbooks and communicating mitigation strategies to enterprise stakeholders.
Security Solutions Engineer Apr 2024 — Sep 2024
Vijilan Security
  • Onboarded and managed secure logging pipelines for 200+ enterprise environments using Cloud Connectors and API integrations.
  • Maintained 99.9% uptime for data ingestion pipelines across diverse client environments through automated health monitoring.
  • Developed standardized detection rule sets across global tenants, ensuring consistent security posture and regulatory compliance.

Engineering Projects

Cloud-Native Honeynet & SOC
Azure Sentinel / KQL / Log Analytics
  • Scope: Implemented a live honeynet to capture global brute-force telemetry.
  • Tech: Sentinel SIEM, Log Analytics, Azure Storage, KQL.
  • Outcome: Automated geo-mapping of malicious IP traffic and identified emerging attack trends for threat intelligence reporting.
Architecture Documentation ↗
Infrastructure-as-Code Resume
Terraform / GitHub Actions / Azure Blob
  • Scope: Automated provisioning and deployment of a global static web application.
  • Tech: Terraform, GitHub Actions, Azure CDN.
  • Outcome: Achieved zero-touch deployment via CI/CD, demonstrating mastery of cloud operations and automation.
Source Code ↗
TryHackMe Profile Top 6% Globally View Ranking ↗

Education & Certifications

Western Governors University Exp. 2026
B.S. Cybersecurity and Information Assurance

Currently pursuing degree with a career trajectory targeting an M.S. in Cybersecurity and an MBA to align technical expertise with strategic leadership.

Active Credentials

CompTIA Security+ CompTIA Network+ CompTIA A+ ITIL V4

Planned / In-Progress (2026)

CompTIA PenTest+ CompTIA Data+ LPI Linux Essentials Azure Administrator (AZ-104) Azure Security (AZ-500)
Unique Profile Views: ---