Summary
Guy Zwerdling is a seasoned cybersecurity researcher and threat hunter based in Israel with a decade of hands-on experience across malware analysis, SIEM tuning, incident response, and red-team techniques. He architects detections and automations in Trellix/McAfee SIEM, writes correlation rules and SOC playbooks, and routinely triages logs from firewalls, DNS, VPNs, mail, and sandbox environments to surface and neutralize threats. Comfortable both attacking (PowerShell/Python/Bash, Metasploit, buffer-overflow and web RCE techniques) and defending large environments, he has performed penetration testing on 100+ hosts and led firewall migrations and security platform deployments. His background spans government health systems to energy and defense, where he paired network engineering and Vault/MDM operations with custom scripting to automate monitoring at scale. Notably, he blends low-level reverse engineering with practical SOC engineering, turning deep technical analysis into actionable protections and automation.
10 years of coding experience
6 years of employment as a software developer
Computer Programming, Computer Programming at edX
Network and System Administration/Administrator, Network and System Administration/Administrator at Cisco Networking Academy
Security System Installation Repair and Inspection Technology/Technician, Security System Installation Repair and Inspection Technology/Technician at John Bryce
Hebrew, English