Cybersecurity Consultant

Hi, I’m Sari Yaseen Taher — I lead high-severity incident response and strengthen SOC maturity.

Over 4 years delivering IR, threat hunting, and digital forensics across regulated enterprise environments. Based in Riyadh, Saudi Arabia.

4+ Years
Incident Response
SOC
Maturity + Governance
DFIR
Threat Hunting
Available for collaboration
Sari Taher portrait
Incident Response Snapshot

High-severity response, forensic triage, and SOC uplift.

  • IR playbooks and escalation models
  • Threat hunting mapped to MITRE ATT&CK
  • DFIR tooling + evidence hygiene
SIEM
Splunk · ELK
EDR
CrowdStrike

Experience Highlights

Recent roles across enterprise security teams.

Accenture — CyberSecurity Consultant

Led high-impact incident response for regulated financial environments, improving detection and response via SIEM use cases and hunting scenarios.

2025/12 – Present · Riyadh

Tuwaiq Academy — Cybersecurity Trainer

Designed hands-on labs and taught Linux, Python/Bash scripting, and log analysis with real-world security scenarios.

2024/02 – Present · Riyadh

Tamkeen Technologies — DFIR Consultant

Built threat hunting hypotheses and incident response playbooks aligned to MITRE ATT&CK and enterprise risk.

2024/09 – 2025/08 · Riyadh

About

Cybersecurity consultant with experience delivering and managing incident response engagements across enterprise environments. Focused on containment, recovery, and post-incident improvement with strong hands-on DFIR and detection engineering expertise.

  • Incident response leadership
  • Threat hunting + detections
  • Digital forensics
Currently CyberSecurity Consultant @ Accenture
Previously Tamkeen Technologies, Cipher company
Tools Splunk, ELK, CrowdStrike, Volatility

Core Skills

Hands-on, outcomes-driven security expertise.

SOC Leadership & IR

Triage frameworks, escalation matrices, major incident command, post-incident reviews.

Threat Hunting & Detections

CTI-driven hypotheses, correlation logic, anomaly baselining, ATT&CK mapping, Sigma/YARA.

Automation & SOAR

Playbooks for isolation, IOC blocking, credential resets, approvals, and evidence kits.

Forensics

Volatility, Velociraptor, artifact parsing, timelines, and evidence hygiene.

SIEM / Analytics

Splunk, ELK, LogRhythm, Exabeam, Wazuh.

EDR / NDR

CrowdStrike, Cybereason; ExtraHop (NDR).

Certifications

Professional credentials and specialties.

GCFA badge OSDA badge eCMAP badge eWPTX badge eCTHPv2 badge eCDFP badge eCPPTv2 badge

Let’s build something memorable.

Open to incident response, threat hunting, and DFIR opportunities.

Riyadh, Saudi Arabia +966 59 700 0189