I worked as a Cybersecurity Analyst at Digiss, a Lagos-based cybersecurity firm, contributing to the build-out of a security operations capability across ten security domains including identity and access management, cloud security, and data protection. A SOC is only as useful as what reaches the analyst and how quickly they can act on it, and two problems surfaced early: alerts arrived without the context needed to judge them, and response depended on an analyst manually moving between tools. I contributed to standing up a Cyber Threat Intelligence platform inside the SOC, enriching alerts so triage ran on evidence rather than guesswork threat analysis capability improved. I then designed and deployed an automated SOAR solution using The Hive and Cortex, moving case creation, enrichment, and analyst handoff out of manual steps and into defined workflows. The result was a SOC where threat intelligence fed triage directly and incident workflow ran itself, leaving analysts on judgement calls instead of ticket-shuffling.