Summary
Overview
Work history
Education
Skills
Websites
Certification
Languages
Websites and Social Links
Timeline
Generic

Renad Nasser Alqahtani

Riyadh

Summary

Analytical SOC analyst with extensive experience in security monitoring, high-fidelity alert triage, and incident response in high-volume financial environments. Skilled in multi-source log analysis, network threat inspection, and email forensics using Splunk and advanced EDR/ NDR platforms. Expertise in mapping adversary behaviors to the MITRE ATT&CK framework and conducting forensic investigations to reduce alert fatigue through proactive tuning. Demonstrated ability to compile structured technical incident reports and collaborate with cross-functional teams to enhance threat containment and improve enterprise defense.

Overview

2
2
years of professional experience
5
5
years of post-secondary education
1
1
Certification

Work history

SOC Analyst

Al Rajhi Bank
Riyadh
2024.11 - 2026.06
  • Execute continuous threat monitoring and perform deep-dive triage across SIEM, EDR, NDR.
  • Investigate endpoint anomalies using host forensics and process lineage analysis.
  • Analyse identity anomalies across VPN access, MFA behaviour, and geo-velocity signals.
  • Tune SIEM correlation rules by reviewing recurring false positives and alert noise.
  • Inspect email headers and run sandbox analysis for phishing and BEC campaigns.
  • Reconstruct incident timelines and write structured forensic reports for escalation.
  • Develop structured quarterly dashboards tracking incident trends for management review.
  • Use CTI feeds to extract and verify IOCs against internal systems.

Enterprise Architecture Intern

Saudi Food and Drug Authority (SFDA)
Riyadh
2024.03 - 2024.07
  • Mapped and classified service inventories across automated and manual enterprise systems daily.
  • Standardised internal IT documentation to align with enterprise architecture frameworks.
  • Analysed business workflows to match technical system capabilities to stakeholder requirements.
  • Supported internal reviews of legacy IT assets to identify system optimisation opportunities.

Education

Bachelor of Science - Information Technology

Imam Mohammad Ibn Saud Islamic University
Riyadh
2019.01 - 2024.01

Skills

  • Security alert triage
  • Log analysis
  • Event correlation
  • Phishing investigation
  • VPN monitoring
  • Splunk querying
  • Endpoint detection and response
  • Network detection and response
  • Threat hunting
  • MITRE ATT&CK mapping
  • Incident timeline reconstruction
  • Cyber threat intelligence
  • Professional Attributes: Technical Reporting & Documentation, Analytical Problem Solving, Attention to Detail, Time Management

Certification

eCTHPv2-Certified Threat Hunting Professional - INE

Languages

English
Arabic

Websites and Social Links

LinkedIn: https://www.linkedin.com/in/renad-alqhtani-683a29258

Timeline

SOC Analyst

Al Rajhi Bank
2024.11 - 2026.06

Enterprise Architecture Intern

Saudi Food and Drug Authority (SFDA)
2024.03 - 2024.07

Bachelor of Science - Information Technology

Imam Mohammad Ibn Saud Islamic University
2019.01 - 2024.01
Renad Nasser Alqahtani