We provide IT Staff Augmentation Services!

L3 Intrusion Response Analyst Resume

4.00/5 (Submit Your Rating)

Frisco, TX

PROFESSIONAL SUMMARY:

  • Experienced Network Security Analyst with 8+ year background in network security.
  • Adept at utilizing network monitoring tools such as SNORT, Various Confidential appliances, Imperva Web Application Firewall, and TrendMicro Intrusion Prevention System in order to isolate network security deficiencies and creating comprehensive reports of network issues.
  • Experienced in leading a team of cyber security engineers in monitoring live traffic, identifying malicious activity, and implementing countermeasures.
  • Strong knowledge of incident response, documenting, and change management.
  • Proficient in SNORT rule writing/implementing and implementing other countermeasures as needed.
  • Experienced using Wireshark for deep packet analysis and network troubleshooting.
  • Some experience with malware analysis in a sandbox environment.

CORE QUALIFICATIONS:

  • Comprehensive intrusion analysis/mitigation and incident response skills
  • Strong Analytical Skills
  • Problem Solver
  • Information Security
  • Computer Forensics
  • Proficient with VMWare
  • Network Configuration & troubleshooting
  • Information Assurance
  • Experience with enterprise security tools
  • TrendMicro Intrusion Prevention System
  • SourceFire for Intrusion Detection System
  • Proof point - Email Protection
  • IronPort - Email Security Appliance

TECHNICAL CAPABILITIES:

  • Windows NT - Windows 8 proficient
  • Microsoft Office 2010
  • Read and program router/switch configurations
  • Deep packet analysis
  • Basic Malware analysis
  • Intrusion analysis
  • Network Configuration
  • Network troubleshooting
  • Routers
  • Firewalls
  • Snort rule writing
  • Snort Implementation
  • Active Directory
  • Countermeasure implementation
  • Analyze C++
  • Analyze Perl
  • Unix
  • Linux
  • Trend Micro
  • Virtual Private Network
  • Intrusion Detection Systems (IDS)
  • Intrusion Prevention Systems (IPS)
  • McAfee ESM
  • McAfee ATD
  • McAfee Web Gateway
  • McAfee ePO
  • Avecto
  • Proofpoint Enterprise
  • SourceFire
  • Arcsight
  • Imperva
  • Extreme Networks
  • Nmap
  • SNYPR
  • Netskope - Data Loss Prevention

WORK EXPERIENCE:

Confidential

L3 Intrusion Response Analyst, Frisco, TX

Responsibilities:

  • Monitor, Defend, and maintain the corporate network using various Security tools such as Confidential - Confidential, Netskope and McAfee ePolicy Orchestrator (ePO).
  • Take action as required by severity of incident.
  • Works as part of a team of three L3 senior analysts to ensure the company and subsidiaries 'systems are being protected from known and emerging threats.
  • Provides analysis, documentation, personnel assistance and guidance to bank users.
  • Knowledge and use of Confidential network security tools.
  • Provides oversight, direction, and expertise to analysts. Work with multiple entities to ensure security SLAs are met and clients are satisfied with work being done.

Confidential

Security Analyst, Richardson, TX

Responsibilities:

  • Monitor, Defend, and maintain the corporate network using various McAfee Security tools.
  • Works as part of a team of three to ensure the bank systems are being protected from known and emerging threats.
  • Performs research to stay on top of new threats.
  • Provides oversight, direction, and expertise to analysts. Works with multiple delivery teams to ensure security policy is met and users are able to perform uninterrupted work.
  • Periodically review suspected phishing/spam emails and handle them accordingly.
  • Educate users on best practices and ensure they understand corporate security policy.
  • Provides analysis, documentation, personnel assistance and guidance to bank users.
  • Knowledge and use of McAfee network security tools.

Confidential

Security Analyst, San Antonio, TX

Responsibilities:

  • Imperva Web Application Firewall - monitors the tool through ArcSight Confidential and upon the need of investigation of an incident, leverage the tool for the details of the attack or intrusion attempt.
  • Stood up 24/7 security monitoring capabilities.
  • Currently working night shift in support of 24/7 SOC operations.
  • Works as part of a small team to ensure customer’s systems are being protected from known and emerging threats.
  • Provides oversight, direction, and expertise to analysts. Work with multiple entities to ensure security SLAs are met and clients are satisfied with work being done.
  • Provides analysis, documentation, personnel assistance and guidance to customers.
  • Knowledge and use of well-known network security tools.

We'd love your feedback!