
  <rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
    <channel>
      <title>Mansour Jalaly — Security Engineering</title>
      <link>https://jalaly.com/blog</link>
      <description>Mansour Jalaly is a London-based security engineer specialising in detection engineering, cloud security, incident response, and threat intelligence. CISSP and GSEC certified, with experience across Oracle and S-RM.</description>
      <language>en-gb</language>
      <managingEditor>mansour@jalaly.com (Mansour Jalaly)</managingEditor>
      <webMaster>mansour@jalaly.com (Mansour Jalaly)</webMaster>
      <lastBuildDate>Fri, 18 Apr 2025 00:00:00 GMT</lastBuildDate>
      <atom:link href="https://jalaly.com/tags/dfir/feed.xml" rel="self" type="application/rss+xml"/>
      
  <item>
    <guid>https://jalaly.com/blog/lessons-from-the-incident-room</guid>
    <title>Lessons from the Incident Room</title>
    <link>https://jalaly.com/blog/lessons-from-the-incident-room</link>
    <description>What leading ransomware, BEC, and cloud-intrusion investigations teaches you that no certification covers — about evidence, people, and the decisions that actually shorten an incident.</description>
    <pubDate>Fri, 18 Apr 2025 00:00:00 GMT</pubDate>
    <author>mansour@jalaly.com (Mansour Jalaly)</author>
    <category>Incident Response</category><category>DFIR</category><category>Ransomware</category><category>BEC</category><category>Lessons Learned</category>
  </item>

    </channel>
  </rss>
