Senior IT & Cybersecurity Leader

Bryan Guevara

10+ years securing enterprise environments — from SOC operations and incident response to building resilient security programs that protect what matters.

Open to opportunities
Houston, TX
About

Highly accomplished and results-oriented IT and Cybersecurity leader with over 10 years of progressive experience, specializing in infrastructure management, cybersecurity governance, and incident response.

Proven ability to lead enterprise-wide technology initiatives, significantly reduce security risks, and enhance end-user awareness. Expertise in implementing and managing security frameworks, deploying robust endpoint protection solutions, and optimizing IT processes. Adept at building high-performing teams, fostering a strong security culture, and driving continuous improvement.

Years of Experience10+
BilingualEN / ES
Phishing Reduction50.9% → 3.6%
Endpoints Secured700+
Skill Matrix
01

Security Tools

SIEM (Splunk Cloud)Endpoint Protection (Carbon Black Defense, Arctic Wolf, Trend Micro, CrowdStrike)Email Security (Proofpoint)Vulnerability ManagementPrivileged Access Management (PAM)IDS/IPS
02

Cloud Security

Microsoft AzureAWSOffice 365Okta SSOSalesforceActive DirectoryAzure AD
03

Frameworks & Compliance

NIST Cybersecurity FrameworkITIL FoundationsRisk AssessmentPolicy DevelopmentSecurity Governance
04

Incident Response

Threat AnalysisDigital ForensicsRoot Cause AnalysisPlaybook DevelopmentRed/Purple Team CoordinationSecurity Awareness Training
Chronological Log
  • Served as Incident Commander during security incidents, leading technical response efforts, performing analysis, and developing comprehensive Cyber Incident Response Playbooks.
  • Monitored and investigated cybersecurity alerts using enterprise security tools, providing critical updates on security incidents and events to the CISO.
  • Managed Identity and Access Management (IAM) across platforms, including Okta and Office 365, to ensure secure access to on-premises and cloud resources.
  • Reduced end-user susceptibility to phishing from 50.9% to 3.6% through targeted security awareness training and hands-on management of the KnowBe4 platform.
  • Collaborated with a third-party SOC to manage bi-annual Red and Purple Team penetration tests and continuous security monitoring.
  • Developed and implemented an internal Incident Response plan based on the NIST Cybersecurity Framework to streamline threat containment and analysis.
  • Served as the technical point of contact for monitoring and analyzing alerts from cloud security applications, including Okta SSO, AWS, Salesforce, Splunk Cloud, and Carbon Black Defense.
  • Successfully deployed and configured Endpoint Detection and Response (EDR) software to over 700 endpoints and 20+ servers.
  • Managed the Proofpoint email firewall, fine-tuning policies and responding to email-based threats.
  • Deployed Privileged Access Management (PAM) solutions to harden security for critical systems.
  • Contributed to the development and implementation of an annual Cybersecurity Awareness program.
  • Created and managed user accounts and permissions in Active Directory and Office 365.
  • Provided lead support for C-Suite and Senior Executives, ensuring timely resolution of complex IT issues.
  • Managed Service Desk requests with an 80% closure rate within 48 hours.
Credential Vault

CISSP

ISC2

Certified Information Systems Security Professional

SSCP

ISC2

Systems Security Certified Practitioner

CC

ISC2

Certified in Cybersecurity

Security+

CompTIA

CompTIA Security+

A+

CompTIA

CompTIA A+

ITIL Foundations

AXELOS

IT Infrastructure Library Foundations

Certified Meraki Network Operator

Cisco Meraki

Certified Meraki Network Operator — Issued Sep 2018

NSA Day of Cyber

National Security Agency

NSA Day of Cyber — Issued Jun 2017

210W-02 ICS Cybersecurity

US-CERT

Cyber Security for Industrial Control Systems — Influence of Common IT Components on ICS

210W-01 ICS Cybersecurity

US-CERT

Cyber Security for Industrial Control Systems — Differences in Deployment of ICS

100W OPSEC

US-CERT

Operational Security (OPSEC) for Control Systems

Associate of Applied Science (AAS)

ITT Technical Institute

Projects
~/projects/home-lab-environment

Home Lab Environment

Personal cybersecurity lab for testing security tools, threat detection, and incident response workflows.

Coming Soon
~/projects/ctf-writeups

CTF Writeups

Capture The Flag challenge walkthroughs showcasing offensive and defensive security techniques.

Coming Soon
~/projects/ir-playbook-templates

IR Playbook Templates

Open-source incident response playbook templates based on NIST framework for mid-size organizations.

Coming Soon
Contact

Let's connect.

I'm open to discussing cybersecurity leadership roles, collaborative opportunities, or just exchanging ideas about the evolving threat landscape.