Vigilant Shield LLC builds and tunes detection content, automates response with SOAR, and leads incident response for federal agencies and commercial security teams.
Consulting engagements scoped to your environment, not a fixed package.
Custom detection logic built against your actual telemetry — Sentinel, CrowdStrike, or MS XDR — tuned to cut alert noise without losing coverage.
Playbook design and workflow automation in Tines and comparable platforms, so your team spends less time on repetitive triage.
Investigation, containment, and after-action support led by a Level 3 responder with production SOC experience.
Adversarial testing for AI-enabled systems, applying the same rigor used against traditional infrastructure to model and pipeline risk.
Security program review, tooling assessment, and advisory support for teams standing up or maturing a detection capability.
11+ years in cybersecurity, including prior DoD experience.
Work spans production SOC operations, digital forensics, penetration testing, and cloud security — grounded in day-to-day incident response, not theory.
Vigilant Shield LLC is run by Lee Hogue, a Level 3 Incident Responder working in SOC and SOAR engineering, with prior experience at USSOCOM and USSOUTHCOM. The practice focuses on detection engineering and SOAR as its core, with AI red teaming as a developing specialty.