Kyle Pellett

Principal SOC Analyst

Since 2020, Kyle Pellet has been protecting Expel customers from the SOC floor up. As a Principal Analyst, he understands the reality of detection and response: it’s a constant grind of refining logic and closing gaps. He brings a veteran’s eye to Expel’s service delivery, turning years of seeing "the worst-case scenario" into a proactive, resilient defense that actually works in the wild.

Posts by Kyle Pellett

Data & research | 7 min read
MDR insights: how our SOC identified & responded to CVE-2024-3400

Learn how Expel's security operations center (SOC) identified and resolved CVE-2024-3400 for one of our customers.

Product | 3 min read
Following the lifecycle of a cloud alert in Expel Workbench

Our tour shows you the journey a cloud alert takes in Expel MDR for cloud infrastructure, in a single or multi-cloud environment.

MDR | 14 min read
MORE_EGGS and some LinkedIn resumé spearphishing

This post details how we recently detected and disarmed a clever LinkedIn resume spearphishing attack.

Cloud security | 2 min read
A defender’s MITRE ATT&CK cheat sheet for Google Cloud

Get a head start on security. Our new guide maps GCP incident patterns to the MITRE ATT&CK Framework to help protect your organization.

Rapid response | 2 min read
Emerging threat: BEC payroll fraud advisory

Our SOC observed BEC attacks targeting Workday to commit payroll fraud. Learn how to protect your human capital management systems.

Rapid response | 6 min read
Incident report: From CLI to console, chasing an attacker in AWS

We detected and stopped unauthorized access in a customer's AWS environment. Learn how we spotted it, what we did, and key takeaways for your security.

Current events | 7 min read
Top attack vectors: November 2021

Stay ahead of the latest threats. Our report on November 2021 incidents reveals top attack vectors and recommendations to protect your org.

Rapid response | 5 min read
Incident report: Spotting SocGholish WordPress injection

Our SOC stopped a ransomware attack that compromised WordPress CMS to deliver a RAT. Get our recommendations to secure your site now.