Summary
Overview
Work History
Education
Timeline
Generic

Jil Trivedi

Pleasanton,CA

Summary

Results-driven Senior Security Engineer with over 9 years of experience in cybersecurity operations, threat detection, and incident response across cloud and on-prem environments. Proven track record in developing and optimizing SIEM workflows, leading security tool deployments, and responding to high-severity incidents with precision and urgency. Adept at creating scalable incident response playbooks, implementing cloud visibility frameworks, and aligning security practices with industry standards such as CIS and MITRE ATT&CK. Recognized for consistent excellence in performance, cross-functional collaboration, and technical leadership. Holds GIAC Certified Incident Handler (GCIH) certification and extensive hands-on expertise with Splunk, CrowdStrike, AWS Security Hub, and other leading security platforms.

Overview

11
11
years of professional experience

Work History

Senior Security Engineer

Snowflake Inc.
01.2022 - Current
  • Designed and implemented custom threat detections using Python, aligned with MITRE ATT&CK, to improve signal quality and reduce false positives.
  • Developed a cloud visibility framework and scalable ingestion pipelines to centralize logging from AWS, GCP, Azure, and critical SaaS platforms into Snowflake ("Snowhouse") for comprehensive telemetry coverage and gap analysis.
  • Developed scalable, modular security data models using dbt to support detection logic, enrichment layers, and analytics use cases.
  • Developed and optimized threat detection strategies across cloud and on-prem environments, reducing SIEM false positives by 50%.
  • Led POC and deployment of security solutions including CrowdStrike, Code42, osquery, Canary Tokens, and Obsidian Security.
  • Configured CrowdStrike and osquery packs with tailored policies to enhance endpoint visibility, maximize telemetry collection, and strengthen host-level threat detection.
  • Evaluated and implemented phishing defenses (GreatHorn, Agari, Abnormal, Sublime), enhancing email security posture.
  • Conducted threat modeling for new corporate applications to identify risks, recommend preventative controls, and design detection logic for continuous monitoring; collaborated closely with Product Security and Corporate Security teams to align controls with business objectives.
  • Deployed Canary Tokens across high-value assets and sensitive workflows to detect unauthorized access and lateral movement, enhancing early threat detection capabilities.

Security Engineer

Snowflake Inc.
09.2019 - 01.2022
  • Led incident investigations and forensic analysis during high-severity events, improving response time by 40%.
  • Created and maintained incident response playbooks to standardize containment and recovery procedures.
  • Delivered CIS-aligned dashboards and supported audits and compliance initiatives.
  • Acted as on-call incident lead, driving triage, RCA, and executive reporting.
  • Mentored junior analysts and collaborated across DevSecOps, infrastructure, and compliance teams.
  • Automated IOC enrichment and alert triage processes, boosting SOC efficiency.
  • Collaborated with IT endpoint teams to align and deploy security policies via Jamf and Intune; configured CrowdStrike and osquery packs to enhance endpoint visibility, ensure consistent telemetry, and strengthen detection capabilities across macOS and Windows fleets.

Information Security Engineer

Blackhawk Networks
07.2016 - 09.2019
  • Obtained a promotion to Senior Information Security Engineer. Effective since April 1, 2019.
  • Implemented and monitored security measures for the protection of computer systems, networks and information.
  • Improved threat detection capabilities within LogRhythm and Splunk SIEM and CrowdStrike EDR via design and implementation of custom correlation rules, active lists and filters.
  • Worked with information security architect to design security services and recommend security architecture improvements.
  • Configured and troubleshooted security infrastructure devices.
  • Developed technical solutions and new security tools to help mitigate security vulnerabilities and automate repeatable tasks.
  • Performed day to day SOC duties involving working with global analysts, engineers, clients, and other security personnel to identify, triage, escalate and manage the response to incidents impacting or threatening the organizations information assets.
  • Performed threat research and analysis during high-severity cyber-attacks impacting Blackhawk customers globally and recommended mitigation strategies.
  • Conducted research on emerging products, services, protocols and standards in support of security enhancement and development efforts.
  • Performed root cause analysis for reoccurring or high impacting incidents, assist with proposing and implementing structural solutions.
  • Developed Incident Management processes via integration of tools with ServiceNOW.
  • Lead Execution and editing of standard security standards, policy and methodologies to adhere to regulatory compliance as well as security best practices.
  • Solid Understanding of event flow, kill chain and defense in depth concepts.
  • Hands on experience with Malware Analysis and threat intelligence collection.
  • Strong understanding of various system and audit log formats & their conversion for SIEM ingestion.

System Administrator

Harley Ellis Devereaux
03.2016 - 07.2016
  • Provides routine system administration support such as setting up user accounts on servers, server monitoring, system backups, incident, change and configuration management.
  • Evaluates, designs, implements and maintains server architecture, operating systems, system security and server hardware.
  • Installation, configuration, maintenance and troubleshooting of Windows Server 2008 and 2012.
  • Solved complex issues pertaining to hardware and network failure – Monitored both Hardware and Software systems for errors and updated them regularly to maintain proper functioning and flow of information.
  • Active Participation in hardware reduction cost projects by providing server virtualization technology. Provided detailed updates and plans to meet project deliverables.
  • Document and track issues via a ticketing system JIRA.

Network Security Engineer Intern

Darknet Blackops Intelligence
04.2015 - 01.2016
  • Enforce and execute user policies (NIST & SANS) and procedure for network resources and its security.
  • Implementation of security policies using Firewall, IPSEC, SSL, VPN, IPS/IDS, AAA (RADIUS& TACAS+).
  • Administration of Windows Servers 2000/2003, Active Directory, Linux OS.
  • Configure DHCP server & NAT to provide automatic IPs on phone, and data pool of the network.
  • Monitor the security of critical system like database/web servers and changes to highly sensitive computer security controls to ensure appropriate system administrator actions, investigate and report on noted irregularities.
  • Quickly resolve IP network issues to reduce downtime while ensuring client Service Level Agreements.
  • Built new file servers and web servers to maximize web hosting, terminal server, access controls and domain control performance.

System Administrator

California State University, East Bay
10.2014 - 04.2015
  • Install & configure Linux/Windows machines for IT infrastructure.
  • Maintain equipment inventory for efficient and cost effective functioning of IT infrastructure.
  • Used Bombgar for patch management, to upgrade system & software for IT infrastructure.
  • Resolve daily tickets using Servicenow.

Education

Masters of Science - Computer Systems Networking and Telecom

California State University, East Bay
Hayward, CA
12.2015

Bachelor of Engineering - Electronics & Communication

Gujarat Technological University
India
06.2013

Timeline

Senior Security Engineer

Snowflake Inc.
01.2022 - Current

Security Engineer

Snowflake Inc.
09.2019 - 01.2022

Information Security Engineer

Blackhawk Networks
07.2016 - 09.2019

System Administrator

Harley Ellis Devereaux
03.2016 - 07.2016

Network Security Engineer Intern

Darknet Blackops Intelligence
04.2015 - 01.2016

System Administrator

California State University, East Bay
10.2014 - 04.2015

Masters of Science - Computer Systems Networking and Telecom

California State University, East Bay

Bachelor of Engineering - Electronics & Communication

Gujarat Technological University
Jil Trivedi