Project Manager Q&A

FAQs

  • In 2022, when Hurricane Labs outsourced its marketing department, I quickly adapted by transitioning into a new role as a project manager within our company.

    With no existing Project Management Office (PMO) structure in place, I collaborated with leadership to establish and implement the PMO framework.

    This initiative has resulted in a 35% boost in project efficiency and initiated genuine client relationships, leading to a 30% increase in satisfaction within 6 months. This endeavor has brought fulfillment to me in the role and positive outcomes for our customers.

  • Building strong client relationships is a key strength of mine as a project manager. I prioritize identifying key stakeholders and engaging in one-on-one conversations to establish mutual commitment to success, laying a solid foundation for collaboration.

    These discussions offer insights into areas of success, opportunities for improvement, and ways in which I can better support them in the future. Seeking their input ensures alignment on project objectives and deepens my understanding of their preferences and needs.

    My proactive approach empowers me to drive successful outcomes and foster strong partnerships with clients.

  • As the marketing director at Hurricane Labs, I spearheaded the formalization of our company's mission and values. This required collaborating with cross-functional teams to garner support and consensus on our creative strategies. By fostering alignment, I ensured everyone was united and working toward shared goals.

    In project management, I employ a similar approach.

    I prioritize alignment from the project's inception, conducting regular check-ins to monitor progress and confirm priorities. I adapt as needed and tackle any challenges that arise. Maintaining consistent communication among all stakeholders is essential for project success.

  • Once again, effective communication is key, both before, during, and after meetings.

    Beforehand, I set expectations by informing team members about the agenda and their role, ensuring everyone understands the purpose of the discussion. During the meeting, I utilize agendas or slide decks to guide productive discussions. Afterwards, I send out comprehensive meeting notes and action items to the entire team, fostering information sharing and trust in the value of the meeting.

  • I've encountered a few situations where a client was dissatisfied with the efforts on a ticket, task, or project.

    Despite some issues being beyond my control, I consistently address them directly with the client via email and/or on a call. I listen to their concerns, assure them of my understanding, and emphasize my commitment to prompt resolution—whether internally or by escalating to leadership. This approach consistently produces positive outcomes.

  • In my experience, it’s vital to integrate the following steps:

    Assessment: Conduct a thorough assessment of project requirements and identify key areas where resources are most needed. This involves close collaboration with stakeholders to understand project priorities and objectives.

    Task Prioritization: Once the requirements are clear, I prioritize tasks based on their impact on project goals and deliverables. This allows me to allocate resources to critical areas while ensuring that less critical tasks receive adequate attention as well.

    Transparent Communication: I also believe in fostering a culture of transparency and open communication within the team. By encouraging team members to voice their resource needs and constraints early on, we can proactively address resource allocation issues before they become bottlenecks.

    Resource & Progress Monitoring: Regular monitoring of resource usage and project progress is also vital. This enables adjustments to be made as needed to ensure resources are utilized effectively and the project stays on track towards its objectives. By following these steps, resource allocation becomes a strategic tool for project success.

  • While I'm relatively new to the project management field, I'm aware of the vast array of tools available.

    Currently, I'm utilizing the following:

    Jira Software – I oversee the complete Jira backlog and active sprints for about 20 clients, managing Splunk and Security Operations Center (SOC) operations. This involves auditing and organizing the backlog, monitoring live sprint cycles, and controlling associated tickets in Zendesk. Jira, a project management tool, is utilized for tracking issues, organizing tasks, and managing agile software development processes.

    Zendesk – At Hurricane Labs, we utilize Zendesk, a customer support platform, to efficiently manage client tickets. I consistently monitor and manage tickets, providing updates, addressing queries from both our team and clients, ensuring smooth ticket progression.

    Splunk – Splunk, a machine data analytics platform, is utilized in my PM role primarily for reviewing each customer's SOC Customer Overview dashboards. This involves monitoring Live Alert Metrics over the past 30 days to track detection trends and associated alert counts. Additionally, I frequently check the Stale Tickets Dashboard to ensure consistent ticket progress and reduction of stale tickets.

    Zoom & Slack – Hurricane Labs relies on Zoom and Slack for internal communication and client interactions. Additionally, we accommodate clients who use Microsoft Teams for certain meetings. These platforms facilitate swift communication, enabling efficient progress tracking, issue resolution, and seamless client collaboration.

    By leveraging Jira, Zendesk, and Splunk, I've successfully tracked and reduced ticket response time by 25%.

  • Drawing from my marketing background and blending it with my role as a project manager has proven to be an exceptional fit. Leveraging my communication and empathy skills, I swiftly build and maintain client rapport.

    Additionally, I excel in structuring information, whether it's meeting agendas, slide decks, or informational resources, with finesse and speed. My documentation skills and resource sharing have been widely appreciated, by clients and team members.

    I'm proud of the meaningful value I contribute to this role and am excited to continue building on that foundation as I move forward.

  • Kelsey, Can I clone you and scatter the clones around to all our vendors? You are extremely fast and amazing!

    Information Security Operations Manager, Insurance Agency

  • Kelsey, We’ve definitely seen a difference since you started working with us, and we look forward to seeing even more progress ahead.

    CISO, Asset Management Firm

  • Kelsey, I finally feel like I have someone who's a champion for me at Hurricane Labs. It's so refreshing. Thank you so much.

    Senior Security Manager, National Public Accounting Firm

Technologies & Trends

What technologies and platforms are you familiar with?

Splunk / SIEM / SOAR

Below, you'll discover a collection of blog posts and resources I've created exploring topics such as Splunk, Splunk Enterprise Security (ES), Security Information and Event Management (SIEM), and Security Orchestration, Automation, and Response (SOAR). These materials are not only educational but they also demonstrate my ability to simplify complex information for easy comprehension.

Understanding Splunk ES and Its Role in Cybersecurity blog post by Kelsey Clark

How to Build Effective Security Use Cases blog post by Kelsey Clark (Includes Quick Reference Download)

Splunk SOAR Cyber Security: A Comprehensive Overview blog post by Kelsey Clark

Unlocking A Splunk MSSP Perspective on Today’s Cybersecurity World blog post by Kelsey Clark

9 Benefits of Using a Managed Security Services Provider blog post by Kelsey Clark

Enterprise Cybersecurity Best Practices E-Book - Content by Kelsey Clark; Design by Katie Humble

CrowdStrike, Cribl, & GreyNoise

Hurricane Labs has recently forged partnerships with CrowdStrike and Cribl. We also have a long-standing partnership with GreyNoise.

What key topics do you prioritize to drive meaningful discussions with MSSP clients?

Here are a variety of the insights and questions I utilize in client meetings:

  • Prioritizing Sprint Plans: Reviewing current and future sprints, along with any developments impacting priorities. Reprioritizing as needed.

  • Discussing SOC Environment Trends: Analyzing current trends in the client's environment, including alert volume patterns and potential tuning opportunities.

  • Presenting New Correlation Searches: Highlighting newly added correlation searches, providing technical details from the SOC architect, and discussing potential inclusion in the backlog.

  • SOC Posture Assessment Offering: Inquiring about client interest in Hurricane Labs’ SOC Posture / Gap Assessment and providing follow-up resources for clarity. Discussion then includes work with Director of Technical Services on the report and providing recommendations for the client.

  • Providing MITRE ATT&CK Context: Providing additional discussion on MITRE ATT&CK to enhance understanding of client-specific threat actors and their impact on detections and sprint efforts.

  • Identifying New Splunk Data Sources: Inquiring about any additional data sources requested by the client for integration into their Splunk instance.

Splunk Tech Stack Details

Splunk Enterprise and Splunk Security (ES) integrate with various technologies for robust security monitoring, threat detection, and response, alongside other applications.

While the specific tech stack can vary, common components include:

  • Splunk Enterprise: Splunk ES is built on top of Splunk Enterprise, which serves as the underlying platform for collecting, indexing, and analyzing machine-generated data from various sources.

  • Data Sources & Integrations: Splunk ES integrates with a wide range of data sources and security technologies, including log sources such as firewalls, intrusion detection systems (IDS), intrusion prevention systems (IPS), endpoint security solutions, DNS, Active Directory, etc. Additionally, threat intelligence feeds are used to enrich and contextualize security data.

  • SIEM Capabilities: Splunk ES provides advanced Security Information and Event Management (SIEM) features such as real-time event correlation, incident investigation, and intuitive dashboards for security event monitoring and reporting.

  • Machine Learning & Behavioral Analytics: Splunk ES may incorporate machine learning and behavioral analytics to detect anomalous behavior and advanced threats.

  • Threat Intelligence Platforms: Integration with threat intelligence platforms enables Splunk to leverage external feeds for better detection and decision-making.