Lead Security Analyst Resume
3.00/5 (Submit Your Rating)
Austin, TexaS
SUMMARY:
- I am a Security Analyst with extensive experience in the vulnerability management life cycle.
- Some of my daily tasks include verifying vulnerability findings, providing proof of concept for vulnerabilities to application owners, leading application owners through the process of remediation, verifying remediation of vulnerabilities
- I have a strong grasp of computer security concepts and tools in relation to vulnerability assessment and management, security analysis, logical access management, and audit compliance
- CEH v6 and Security+ certifications
- 9 years System Administrator experience
PRIMARY SKILLS:
- Qualys Security Scanner
- Kali Linux
- Burp Suite
- NMAP Port Scanning
- Bash Scripting
- AIX, SUSE, Redhat, HPUX, Solaris
- Windows Server and Desktop Administration, Implementation, and Repair
- Active Directory Management
- VMware Administration
- IBM and HP Server Administration
PROFESSIONAL EXPERIENCE:
Lead Security Analyst
Confidential, Austin, Texas
Responsibilities:
- Conducted vulnerability scans using Nessus, Imperva, BurpSuite, TrustWave
- Configured and administered the Tenable Security Suite for OS scanning
- Scanned multi OS environments for vulnerabilities using Nessus
- Scanned web applications with BurpeSuite and TrustWave
- Scanned Oracle and SQL databases using Imperva
- Researched vulnerabilities and assessed risk to cloud infrastructure.
- Analyzed scans for false positives and severity of vulnerability
- Coordinated with the various OS and application teams to ensure systems were patched and mitigated based on the FEDRamp POAM delivery schedule
- Vulnerability trend analysis
- Created and provided vulnerability reports to senior management
- Oversaw the logical account management process to ensure proper approvals were in place for requested role based access.
- Conducted RSA token audits
- Maintained evidence for PCI and SSAE - 16, FedRamp, PCI, and SOX compliance audits.
Systems Administrator
Confidential, Phoenix, Arizona
Responsibilities:
- Administered and maintained Windows Servers
- Administered and maintained Unix and Linux Servers
- Administered VMWare virtual machines with Vsphere
- Monitored BMC Remedy ticket queue for Windows and Unix server incidents
- Monitored and maintained server health via HP Ilo and HP SIM tools
- Distributed Windows system patches via BMC Blade Logic
- Created custom ticket queue reports in Remedy to show incident ticket statistics
- Diagnosed Solaris, Linux and AIX hardware issues via the command line
- Managed IBM blade servers with IBM management module
- Worked with IBM and Oracle to manage hardware cases
- Performed Veritas VCS cluster failovers daily via the command line
Systems Administrator 1 Intermediate (Windows), September 2010-September 2011
Confidential, Ft. Huachuca, Arizona
Responsibilities:
- Oversaw Mcafee Confidential readiness for 22 Windows 2003 and 2008 servers
- Managed Windows servers with Microsoft Operations Manager 2005
- Maintained and implemented system patches with SCCM weekly
- Administered HP server health with HP iLo
- Scanned servers for security patches
- Coordinated with site personnel to replace faulty hardware
- Created documentation in reference to daily administrative server tasks
Systems Manager
Confidential, Flagstaff, Arizona
Responsibilities:
- Monitored and maintained network for 60 Windows XP,Windows 7, and Apple clients
- Monitored and maintained 20 production servers (Windows 2000, 2003, 2008).
- Maintained 5 HP 9050 Printers
- Created deployed and maintained Windows server Group Policy
- Installed, configured, and maintained Windows file servers, application servers, print servers
- Active Directory user administration for 60 users servers, domain controllers, and web servers
- Installed, configured and administered Windows Update Services (WSUS) server Installed configured and administered Symantec Antivirus Server
- Maintained system backups via tape drive with Symantec Backup Exec
- Administered and Maintained ADIX phone system
- Participated in a rotational on call system with IT Director
- Administered and maintained SQL server 2005
- Adhered to the procedures and protocols of the Sarbanes Oxley process.
- Managed Sarbanes Oxley Audits