Andrew Syverson

ENGINEER

B.S., Cybersecurity (Grand Canyon University); CompTIA Security+, FEMA NIMS ICS

Andrew Syverson came to the den with hands-on SOC experience, having investigated, triaged, and responded to security alerts as a program analyst at 360SOC, where he worked across SIEM, SOAR, and EDR/XDR platforms and helped map incidents to the MITRE ATT&CK framework to sharpen detection and response.

At Rule4, Andrew has embraced a broad path of expertise, helping clients with custom cloud architecture, SCADA environment security, network security, cybersecurity audit and risk assessment programs, FedRAMP certification preparation, and MFA implementation support for applications, servers, and network devices. He embraces each new client and project as an opportunity to learn more and make a difference.

Andrew loves building things from scratch, whether that means writing detection queries, coding his own testing tools, or building a batting cage in his backyard. He’s the lead developer of HoneyForge, an open-source honeypot deployment platform that simplifies honeypot creation and management for security professionals, researchers, and educational institutions, and he has built a home SOC lab, complete with a Wazuh SIEM/EDR deployment and custom dashboards. His goal is to learn something new every day, and he’s inspired by the developers and maintainers who keep the opensource world running, 

Andrew is a member of the Threat Intelligence Support Unit (TISU), part of the Arizona Cyber Threat Response Alliance (ACTRA)

Outside of work, Andrew loves snowboarding, fishing, golfing, hiking, and camping—and if there’s a new skill or a challenge to tackle, he’s in.

Fox Trivia

My happy place:

The golf course

I'm inspired by:

My mom

My favorite adventure:

Camping next to a river in Alaska while the salmon were spawning

Spirit animal:

Penguin

Dream job in an alternate universe:

Astronaut

Favorite charity:

Breast Cancer Foundation