
Leonora Milisa
Zagreb, Croatia
Leonora Milisa
Cybersecurity Consultant
Category : Cybersecurity
I provide hands-on, security-focused consulting services aimed at protecting Microsoft 365 and email-centric environments through structured assessments, hardening, and continuous improvement. My approach is practical and aligned with real-world threat scenarios, ensuring security controls are effective while remaining usable for end users.
My services include Microsoft 365 security assessments and hardening, covering identity and access management, MFA and conditional access configuration, email and collaboration security, endpoint protection, logging, monitoring, and alerting. I also perform comprehensive email security assessments, including mail flow analysis and the implementation and validation of SPF, DKIM, and DMARC, as well as anti-phishing, anti-malware, and impersonation protection.
I offer email security architecture, administration, and migration services across platforms such as Cisco ESA, FortiMail, and Trend Micro Email Security. This includes secure mail flow design, policy tuning, incident investigation, disaster recovery testing, and large-scale migrations. In addition, I support SIEM, SOAR, and EDR operations, including alert triage, incident response, and automation of security tasks using Python to improve operational efficiency and consistency.
Alongside client work, I maintain two personal security-focused websites. One serves as a professional portfolio and aggregates feeds from multiple Threat Intelligence platforms, while the second is dedicated to publishing Indicators of Compromise, with custom Threat Intelligence capabilities currently in early development.
Certifications
CompTIA Security+ (08/2025 – Present)
Microsoft Azure Administrator Associate (09/2023 – Present)
Microsoft 365 Fundamentals (05/2023 – Present)
Microsoft Dynamics 365 Fundamentals CRM (05/2023 – Present)
Microsoft Dynamics 365 Fundamentals ERP (05/2023 – Present)
Microsoft Azure Security, Compliance, and Identity Fundamentals (04/2023 – Present)
Microsoft Power Platform Fundamentals (04/2023 – Present)
Microsoft Azure AI Fundamentals (04/2023 – Present)
Microsoft Azure Data Fundamentals (03/2023 – Present)
Microsoft Azure Fundamentals (03/2023 – Present)
Google IT Support Specialist (09/2021 – Present)
I have hands-on experience working with a wide range of security, email, and cloud technologies in production and managed services environments.
Email and Messaging Security
Cisco Email Security Appliance (ESA / AsyncOS)
FortiMail
Trend Micro Email Security
Trend Micro IMSS
SpamTitan
Microsoft Defender for Office 365
Microsoft Cloud App Security for Email
Endpoint Detection and Response
CrowdStrike Falcon EDR
Microsoft Defender for Endpoint
SIEM, SOAR, and Security Operations
SIEM monitoring and alert analysis
SOAR-based incident response workflows
Security event triage and investigation
Automation of security tasks using Python
Threat Intelligence and Deception
Trend Micro Vision One
FortiDeceptor
Threat Intelligence feed aggregation
Indicator of Compromise analysis and publication
T-Pot Honeypot deployment and operation
Cloud and Identity Security
Microsoft 365 Security
Entra ID (Azure AD)
Conditional Access and MFA
Audit logging and security monitoring
Operating Systems
Windows (daily enterprise use)
Linux (professional and personal use, including AsyncOS and FortiOS)
macOS (creative and editing workflows)
My services include Microsoft 365 security assessments and hardening, covering identity and access management, MFA and conditional access configuration, email and collaboration security, endpoint protection, logging, monitoring, and alerting. I also perform comprehensive email security assessments, including mail flow analysis and the implementation and validation of SPF, DKIM, and DMARC, as well as anti-phishing, anti-malware, and impersonation protection.
I offer email security architecture, administration, and migration services across platforms such as Cisco ESA, FortiMail, and Trend Micro Email Security. This includes secure mail flow design, policy tuning, incident investigation, disaster recovery testing, and large-scale migrations. In addition, I support SIEM, SOAR, and EDR operations, including alert triage, incident response, and automation of security tasks using Python to improve operational efficiency and consistency.
Alongside client work, I maintain two personal security-focused websites. One serves as a professional portfolio and aggregates feeds from multiple Threat Intelligence platforms, while the second is dedicated to publishing Indicators of Compromise, with custom Threat Intelligence capabilities currently in early development.
Certifications
CompTIA Security+ (08/2025 – Present)
Microsoft Azure Administrator Associate (09/2023 – Present)
Microsoft 365 Fundamentals (05/2023 – Present)
Microsoft Dynamics 365 Fundamentals CRM (05/2023 – Present)
Microsoft Dynamics 365 Fundamentals ERP (05/2023 – Present)
Microsoft Azure Security, Compliance, and Identity Fundamentals (04/2023 – Present)
Microsoft Power Platform Fundamentals (04/2023 – Present)
Microsoft Azure AI Fundamentals (04/2023 – Present)
Microsoft Azure Data Fundamentals (03/2023 – Present)
Microsoft Azure Fundamentals (03/2023 – Present)
Google IT Support Specialist (09/2021 – Present)
I have hands-on experience working with a wide range of security, email, and cloud technologies in production and managed services environments.
Email and Messaging Security
Cisco Email Security Appliance (ESA / AsyncOS)
FortiMail
Trend Micro Email Security
Trend Micro IMSS
SpamTitan
Microsoft Defender for Office 365
Microsoft Cloud App Security for Email
Endpoint Detection and Response
CrowdStrike Falcon EDR
Microsoft Defender for Endpoint
SIEM, SOAR, and Security Operations
SIEM monitoring and alert analysis
SOAR-based incident response workflows
Security event triage and investigation
Automation of security tasks using Python
Threat Intelligence and Deception
Trend Micro Vision One
FortiDeceptor
Threat Intelligence feed aggregation
Indicator of Compromise analysis and publication
T-Pot Honeypot deployment and operation
Cloud and Identity Security
Microsoft 365 Security
Entra ID (Azure AD)
Conditional Access and MFA
Audit logging and security monitoring
Operating Systems
Windows (daily enterprise use)
Linux (professional and personal use, including AsyncOS and FortiOS)
macOS (creative and editing workflows)
Portfolio
Working hours
- Monday:08h00 To 18h00
- Tuesday:08h00 To 18h00
- Wednesday:08h00 To 18h00
- Thursday:08h00 To 18h00
- Friday:08h00 To 18h00
- Saturday:Not available
- Sunday:Not available
- 🇬🇧 English
Please sign in as a customer to give your feedback






