● Open to opportunities · London, UK

Chigozie
Paschal Okafor

SOC Analyst · Incident Response · Data Analytics · Network Security · ITSM

IT Professional with 5+ years across SOC operations, incident response, vulnerability management, data analytics, IT service management, and network security in UK and international environments. Proficient in Splunk, Sentinel, QRadar, Wazuh, Power BI, SQL, and Python. MSc Cybersecurity Technology — Northumbria University London.

Splunk · Sentinel · QRadar MITRE ATT&CK · ISO 27001 Power BI · SQL · Python ITIL · GDPR · NIST CSF Azure AD · M365 Data Modelling · BI

// about.me

Who I Am

📍 Croydon, London, United Kingdom

I'm an IT Professional with 5+ years of combined experience across SOC operations, incident response, vulnerability management, data analytics, IT service management, and network security — spanning UK healthcare and international enterprise environments.

Proficient in SIEM platforms — Splunk, Microsoft Sentinel, IBM QRadar, and Wazuh — with proven ability to monitor, triage, and respond to security events, conduct forensic log analysis, and deliver clear technical reporting to both technical and non-technical stakeholders.

Strong expertise in data analytics and business intelligence — designing dashboards, data models, and performance reports using Power BI, SQL, Tableau, Excel, and Python to drive operational and strategic decision-making.

Holds an MSc in Cybersecurity Technology from Northumbria University, London and a B.Tech in Information Management Technology from FUTO (Second Class Upper).

5+Years in IT, Cyber & Data
10+Projects & Simulations
90%Customer Satisfaction (NOC)
MScCybersecurity — Completed 2026

// experience.log

Work History

Remote SOC Analyst
Amdari · London, UK
March 2026 – Present
  • Monitor and analyse real-time security events across Splunk, Sentinel, QRadar, and Wazuh — correlating logs from firewalls, endpoints, and applications to identify IOCs, lateral movement, and privilege escalation.
  • Lead incident response activities — evidence collection, containment, forensic documentation, root cause analysis, and post-incident reporting with stakeholder briefings.
  • Conduct vulnerability assessments using Nessus, OWASP ZAP, and Burp Suite; prioritise by CVSS score and track remediation against SLA targets.
  • Research emerging TTPs and CVEs to enrich threat intelligence and tune SIEM correlation rules, improving alert fidelity and reducing false positives.
  • Prepare structured security reports translating complex findings into clear, prioritised actions for technical and non-technical stakeholders.
Key Achievements
Improved alert triage efficiency, enabling measurably faster detection and escalation of high-severity threats.
Enhanced threat detection through continuous threat intelligence analysis and targeted SIEM rule tuning.
IT Support Technician
Flexible Healthcare Ltd · UK
June 2025 – February 2026
  • Analysed incident trends and service desk data to identify recurring issues, generating reports on ticket volumes, resolution times, and performance metrics.
  • Administered Active Directory, Azure AD, and Microsoft 365 (Exchange, Teams, SharePoint, OneDrive); enforced MFA, RBAC, Conditional Access, and DLP policies in a regulated healthcare environment.
  • Resolved LAN, Wi-Fi, VPN, DNS, and endpoint security issues; performed patch management and compliance monitoring for clinical and administrative staff.
  • Supported infrastructure rollout projects including workstation deployments, system imaging, and application installations.
Key Achievements
Reduced recurring incidents through root cause analysis, decreasing repeat ticket volumes.
Improved endpoint security posture through consistent patching and device compliance monitoring.
Network & System Administrator
Filmhouse Group · Lagos, Nigeria
November 2024 – March 2025
  • Optimised LAN/WAN infrastructure — VLANs, ACLs, inter-VLAN routing, OSPF — improving network speed by 30% and reducing downtime by 45%.
  • Implemented Active Directory Group Policies and technical hardening controls, achieving 80% reduction in security incidents and enhancing operational efficiency by 40%.
  • Executed disaster recovery plans achieving zero data loss; delivered cybersecurity awareness training reducing escalation levels by 70%.
  • Managed server infrastructure upgrades ensuring 100% uptime for cinema operations; installed and managed IP cameras across multiple sites.
Key Achievements
30% faster network + 45% less downtime. 80% reduction in security incidents. Zero data loss across all DR scenarios.
IT Service Management Executive
Internet Solutions Nigeria Ltd · Lagos
January 2024 – April 2025
  • Planned and implemented ITIL-aligned ITSM processes improving service delivery quality, SLA compliance, and operational efficiency.
  • Built Power BI dashboards tracking incident volumes, MTTR, availability, and SLA performance — providing real-time operational visibility for management.
  • Analysed customer complaints, service quality data, and network performance metrics to identify root causes and implement corrective technical actions.
  • Developed a knowledge base system for common issues, reducing complaints and improving support consistency.
Key Achievement
Improved service delivery efficiency and SLA compliance through structured ITIL-aligned process improvement.
Technical Support Analyst – NOC
Internet Solutions Nigeria Ltd · Lagos
June 2021 – January 2024
  • Monitored network infrastructure 24/7 using PRTG and The Dude; detected and responded to anomalies, link failures, and service degradation within SLA targets.
  • Troubleshot routers, access points, RF issues, and wireless protocols; managed escalations with documented follow-up.
  • Developed a comprehensive knowledge base, reducing complaints by 85%; generated operational reports on incidents, availability, and performance.
Key Achievement
Achieved 90% customer satisfaction rating through consistent, timely issue resolution.
Data Analyst
Ascelearn Digital Solutions · Nigeria
March 2020 – March 2021
  • Performed data modelling and transformation to support business intelligence and operational reporting.
  • Built interactive Power BI, SQL, and Excel dashboards; designed KPIs and performance metrics to track operational outcomes.
  • Conducted data cleansing, validation, and quality assurance to ensure accurate reporting; automated workflows reducing manual effort.

// skills.json

My Toolkit

🛡️

SIEM & SOC

SplunkMicrosoft SentinelIBM QRadarWazuhAlert TriageIOC AnalysisPRTG
🔥

Incident Response

IR LifecycleDigital ForensicsEvidence CollectionContainmentRoot Cause AnalysisMITRE ATT&CK
🔍

Vulnerability Management

NessusOWASP ZAPBurp SuiteWiresharkNmapCVSS ScoringPen Testing Support
🌐

Network & Systems

TCP/IPVLANs / ACLsOSPFIPSec / WireGuard VPNpfSense / MikroTikDNS / DHCPCiscoRF Optimization
📊

Data Analytics & BI

Power BISQLPythonTableauExcelData ModellingData VisualisationKPI DevelopmentPerformance Reporting
☁️

Cloud & Identity

Azure ADMicrosoft 365Defender for EndpointIntuneMFA / RBACConditional AccessDLPCloud Hosting
🏢

ITSM & Governance

ITILISO 27001NIST CSFGDPRSLA ManagementIncident ManagementChange ManagementKnowledge Base
⚙️

Scripting & Tools

PowerShellPythonActive DirectoryHardware MaintenanceCCTV / IP CamerasELK StackMicrosoft Suite

// projects[]

Featured Work

🎣

SOC Simulation · Incident Response

Phishing Incident Investigation – MediSure Health Network

Full end-to-end phishing investigation for a simulated healthcare org. Email header forensics (SPF/DKIM/DMARC failures), Splunk log analysis across proxy, firewall and auth logs, IOC enrichment via VirusTotal & AlienVault OTX, and a complete incident report with remediation recommendations.

SplunkEmail ForensicsVirusTotalAbuseIPDBIOC Analysis
📡

Threat Intelligence · Data Analytics

Cyber Threat Intelligence Dashboard

Real-time threat intelligence dashboard in Microsoft Power BI integrating AbuseIPDB and AlienVault OTX APIs — visualising threat trends, IP risk scores, and feed freshness to support faster analyst triage decisions.

Power BIAbuseIPDB APIAlienVault OTXThreat Intel
📈

Data Analytics · Business Intelligence

Operational Performance Analytics Dashboard

Designed and developed a multi-source BI dashboard tracking MTTR, SLA compliance, incident volumes, and availability KPIs using Power BI and SQL. Transformed raw operational data into executive-ready reports, enabling data-driven decisions across service delivery teams.

Power BISQLExcelKPI ReportingMTTR
🏢

IT Service Management · ITIL

ITIL-Aligned ITSM Process Implementation

Planned and implemented end-to-end ITSM processes aligned to ITIL principles at Internet Solutions Nigeria Ltd — covering incident management, change management, SLA frameworks, and knowledge base systems. Reduced repeat complaints and improved first-contact resolution rates.

ITILITSMSLA ManagementPower BIProcess Improvement
🏛️

Risk Assessment · Governance

Cybersecurity Risk Assessment – Need4Help Charity

Full cybersecurity assessment covering CIA triad threats (phishing, ransomware, insider threats). Designed RBAC/MFA/JIT access controls. Comparative framework evaluation: NIST CSF 2.0, ISO 27001, and CIS Controls with GDPR-aligned recommendations.

NIST CSFISO 27001RBACGDPRCIS Controls
🔌

Network Security · Design

Enterprise Network Security Design (Cisco Packet Tracer)

Multi-department enterprise network with VLANs (HR, IT, IS, CC, MK), 802.1Q trunking, Layer 3 inter-VLAN routing, OSPF dynamic routing, IPSec VPN, ACLs, and tiered device hardening — documented against GDPR Article 25 and BCS Code of Conduct.

CiscoVLANsOSPFIPSec VPNACLs
☁️

Cloud Security · MSc Research

Cloud-Based Big Data Security Architecture – Green Basket

Designed a secure PaaS-led hybrid cloud architecture for a 14-branch UK retailer. Integrated Apache Kafka, Hadoop, and Spark with Kerberos, TLS/SASL encryption, Apache Ranger, Apache Knox gateway, SIEM monitoring, and IAM controls — aligned to CSA and CISA guidelines.

AzureApache KafkaKerberosSIEMIAM
🤖

AI · Hackathon · Microsoft 365

AI Multi-Agent Onboarding Assistant (Hackathon)

Built a multi-agent onboarding assistant using Microsoft Copilot Studio and Power Automate. Led conversation design for three agents covering onboarding workflows, training assignment, well-being check-ins, and ethical escalation flows.

Copilot StudioPower AutomateMicrosoft 365AI Agents

// certifications[]

Credentials & Learning

🎖️
CompTIA Security+
CompTIA
In View
🔐
ISC2 Certified in Cybersecurity
ISC2
In Progress
🏢
IT Service Management Foundations
ITIL
Certified
🌐
Google IT Support Professional
Google / Coursera
Certified
🔵
IBM Intro to Cybersecurity Tools & Attacks
IBM
Certified
📡
MikroTik Certified Network Associate
MikroTik (MTCNA)
Certified
📊
Data Analytics: Excel, Power BI, Tableau, SQL & Python
Professional Development
Certified
💳
Mastercard Cybersecurity Virtual Experience
Mastercard / Forage
Completed
🧪
Data Science Fellowship
Professional Development
Completed
🔄
Scrum Fundamentals Certificate
SCRUMstudy
Certified

// contact.init()

Let's Connect

Based in Croydon, London — open to UK and remote cybersecurity, data analytics, and IT roles. Whether you have an opportunity or want to talk security and data, I'd love to hear from you.