Jon Hencinski (@jhencinski) 's Twitter Profile
Jon Hencinski

@jhencinski

VP, MDR @rapid7 | Servant Leader | Capacity Builder | SOC Innovator | Here to learn, share what I know, and help others.

ID: 780589259912720384

linkhttps://capacitybuilders.substack.com/ calendar_today27-09-2016 02:05:57

2,2K Tweet

8,8K Followers

1,1K Following

🛡️ B i f f  ³ (@biffbiffbiff) 's Twitter Profile Photo

Jon Hencinski AiTM phishing is def the rule more than the exception now over the last 2 years. Excellent tips. I'd also add to pull an Purview search on MailItemsAccessed if you have it enabled. Gives you good scope of what messages TA may have accessed. For info here learn.microsoft.com/en-us/purview/…

Jon Hencinski (@jhencinski) 's Twitter Profile Photo

Big news! I've joined Rapid7 as VP of Threat Detection and Response. Energized to lead our #MDR into its next phase of growth. My focus: revolutionizing the #SOC by reimagining the analyst experience and pushing the boundaries of threat detection to deliver industry-leading

Felipe MIllon (@felipe_millon) 's Twitter Profile Photo

Today, we at OpenAI launched Deep Researcher and I wanted to share a deeply personal story about how amazing this tool is and how it will change the world. Trigger warning, related to cancer....1/9

Jon Hencinski (@jhencinski) 's Twitter Profile Photo

In my journey, we’ve hired a lot of people into the #SOC who didn’t start in tech. One was an underwater welder. Another, a police officer. We’ve brought on videographers, retail specialists, accountants—even a bat scientist. What they had in common: grit, curiosity, passion

Jon Hencinski (@jhencinski) 's Twitter Profile Photo

Attackers are exploiting CVE-2025-31324 (CVSS 10.0) in SAP NetWeaver Visual Composer to gain initial access. Rapid7 #MDR has tracked active exploitation since at least March 27: - Targets: mainly manufacturing orgs - Method: unrestricted file upload to deploy webshells 🛡️

Jon Hencinski (@jhencinski) 's Twitter Profile Photo

What traits make a great #SOC analyst? I'll start... - Curious: Always digging to understand how things work. - Candid: Quick to say what they know – and what they don't. - Passionate about learning: Chases new knowledge beyond security. - Driven: Always asking, "How else

Jon Hencinski (@jhencinski) 's Twitter Profile Photo

You just landed your first SOC/MDR analyst role. Here’s how to crush your first few months: • Be someone people want to work with. • Build strong connections with your team. • Build a relationship of trust with your manager. • Ask questions early and often. Write everything

4n6lady (@4n6lady) 's Twitter Profile Photo

I’m an Incident Responder on the AWS Customer Incident Response Team (CIRT). And I get asked a lot of questions, like: “Where do I even start with incident response in the cloud?” Here’s a beginner-friendly thread on AWS IR tips — with a few lessons I learned 🧵👇

Jon Hencinski (@jhencinski) 's Twitter Profile Photo

What it’s like to be an #MDR analyst Rapid7: You start your shift and scan the queue. One alert stands out — and it follows a familiar ransomware pattern. A QuickAssist session was launched right after a conversation with an external Microsoft Teams user. You’ve seen this