Soc Analyst Resume
4.00/5 (Submit Your Rating)
Washington, DC
SUMMARY:
- Cyber Security analyst with the ability of ensuring technical security planning, testing verification and risk analysis. Capable of providing technical resolutions and guidance while monitoring risk management and compliance in order to strengthen the information systems security and controls.
TECHNICAL SKILLS:
- Hands on Experience with some security tools such as;
- McAfee SIEM
- Symantec Endpoint Protection Manager
- ABSOLUTE( secure endpoints)
- FireEye HX
- TCP/IP protocols
- IPS
- Qualys ( Vulnerability/ compliance scans)
- Familiar with applications tools such as; virtualization tools
- Splunk
- Linux (khali)
- Virtualization tools and Blue Coat;
- VMware work station
- PHP, HTML, SQL
- Microsoft Outlook
PROFESSIONAL EXPERIENCE:
SOC Analyst
Confidential, Washington, DC
- Security operations center (SOC) for Thursday - Sunday shift in order to ensure that group operates properly.
- Use SIEM technologies and other native tools to perform the monitoring of security events on a 24x7 basis. (McAfee SIEM, Symantec SEPM, FireEye)
- Use the Intel McAfee SIEM to monitor the network and perform analysis, while integrating the results and information needed to proactively protect the OCC enterprise. This includes developing customized signatures, enterprise content filtering, or firewall ACL change recommendations.
- Provide security events analysis and support to include identifying potential threat, anomalies, and infections, documenting findings, providing recommendations within the OCC’s incident management system, performing triage of incoming security events, performing preliminary and secondary analysis of those events, and validating the events
- Perform technical analyses, such as analysis of malicious code, network traffic, web log data, cyber intelligence, hard drives, and other storage and forensics media, to control exploitative activity.
- Manage inbound requests via the OCC ticketing system, as well as via telephone calls, and provide security notifications via three methods: logging incident tickets, sending emails, and placing telephone calls.
SOC Analyst,
Confidential, Rockville, Maryland
- 24x7 operations team
- Perform daily review of system, application logs, and custom monitoring tools
- Knowledge in different port numbers for security measures.
- Proactively monitor and resolve application, system and network incidents.
- Perform tasks using various standard tools, internal ticketing systems and monitoring consoles.
- Manage trouble-ticketing system ensuring accurate and up-to-date information
- Monitor for and investigate suspicious or malicious activity and alerts
- Review Change Management requests for security relevance and impact
- View and analyze each URL & correctly categorize each URL with the correct classification.
- Manage inbound requests, as well as via telephone calls, and provide security notifications via three methods: logging incident tickets, sending emails, and placing telephone calls
- Create tickets on fraud detection for clients in Anti-Fraud ticket management and processing in RT ticketing system.
- Monitor the shutdown board, identify tickets with outstanding uptimes, and escalate up to management for review.
- Perform frequent external and internal clients & vendor communications.
- Monitor SOC systems functionality, availability and emergency procedures.
- Monitor the SOC systems and notify the SOC Management of any outages or issues with the systems that affects productivity.
- Use strong TCP/IP networking skills to perform network analysis to isolate and diagnose.
- (Traceroute, Domain Dossier Email Dossier, NSL lookups- gives us host information, )
- Respond to inbound requests via phone and other electronic means for technical assistance
- Document actions in cases to effectively communicate information internally and to client.
- Resolve problems independently and understand escalation procedure. Coordinate escalations and collaborate with internal technology teams to ensure timely resolution of issues.
- Report common and repeat problems (trend analysis) to management and propose process and technical improvements.
- Provide resolution plans for system and network issues.
- Perform technical analyses, such as analysis of network traffic, web log data
IT Specialist Technician
Confidential, Rockville, Maryland
- Assisted in leading teams of Implementation Team Members (ITMs) to deploy, analyze, and configure Dell computers (avg. 200+) for use throughout Montgomery County Public schools and various other educational facilities.
- Trained employees within the schools on the new systems
- Configured technology to client specifications pre-delivery in a controlled environment
- Troubleshoot and improve existing systems and processes with an eye to automate routine tasks
