Cybersecurity Incident Response Analyst/intelligence Analyst Resume
2.00/5 (Submit Your Rating)
Dearborn, MI
TECHNICAL SKILLS
- SIEM systems
- Cisco IOS/Nexus
- VMware ESXi infrastructure
- Memory forensics (volatility)
- Microsoft Server 2012 R2 and prior
- Host forensic tools (FTK/EnCase)
- DELL Equallogic storage
- Firewalls
- Microsoft Active Directory
- ITIL Foundations
- Microsoft Group Policy
- Technical Documentation
- EMC SAN storage
- Written and verbal communications
PROFESSIONAL EXPERIENCE
Confidential, Dearborn, MI
CyberSecurity Incident Response Analyst/Intelligence Analyst
Responsibilities:
- Analyze computer hosts operating systems and memory suspected of viral infection or other compromise.
- Gather intelligence from various paid and open sources to assist Detection and Response Teams in their efforts to identify trends in attacks.
- Provide intelligence reporting to management on a regular basis
- Develop hypotheses for threat hunting exercises.
- Resolve incidents escalated from L1/L2 Detection.
- Develop skillset on specialty tools to train colleagues in their use.
- Mentor employees entering the department through the Ford College Graduate program.
Confidential, Southfield, MI
Senior Systems Analyst
Responsibilities:
- Streamlined and Maintained Active Directory 2010 environment.
- Expanded existing Equallogic SAN.
- Migrated shared user data to new file servers and storage.
- Upgraded identity management software/server
- Upgraded printer management software/servers
- Implemented AV solution for legacy operating systems.
- Regularly reported progress to Executive Director of IT.
Confidential, Dearborn, MI
IT Security Manager/Wintel Server and Network Administrator
Responsibilities:
- Maintained Active Directory and Exchange 2010 environments.
- Created PowerShell scripts for email and server administration as necessary.
- Maintained and troubleshoot Cisco/HP/3Com network equipment.
- Assisted all infrastructure teams as needed.
- Led Printer replacement project throughout the manufacturing facilities
- Led Data Center Upgrade project ($1.2 million implementation of VMware/UCS/EMC)
- Established security baselines.
- Assisted in investigation of fraudulent activities.
- Firewalls/proxy/web filter rule audits.
- Advised IT in the implementation of security controls.
- Regularly reported to CIO, Director of IT Operations and Director of Corporate Security.
Confidential, Troy, MI
Systems Administrator
Responsibilities:
- Managed and maintained HP ProCurve network equipment and SonicWall firewalls
- Assessed and documented network structure and suggested changes for improvement.
- Maintained and developed test and production environments, both physical and virtual.
- Organized implementation of network access control system.
- Maintained Active Directory and Exchange 2010 environments.
- Assisted end - user requests to help desk as needed.
Confidential, Southfield, MI
Senior Network Engineer
Responsibilities:
- Developed and designed network infrastructure for multiple location corporation with security and HIPAA compliance requirements.
- Worked directly with CIO to determine infrastructure needs, costs, and priorities.
- Implemented consistent configurations for Cisco ASA firewalls.
- Troubleshoot computer, WAN, LAN, VPN and WLAN performance and connectivity issues.
- Defined network security standards.
- Set up and maintained Microsoft Exchange Server 2007
- Worked with offsite users to troubleshoot and resolve application issues.
- Worked with vendors to source appropriate network equipment, telecomm circuits, computers, and peripherals for all locations.
Confidential, Warren, MI
Network Administrator
Responsibilities:
- Maintained firewall connections and IPSec VPN connectivity for ten European locations using Juniper and Checkpoint technologies.
- Maintained and documented key systems/applications on the voice and data network, including MS Exchange Cluster 2003, remote connectivity via Citrix and Juniper, EMC SAN, Active Directory, Group Policy, ESX infrastructure, Cisco switches and routers, Cisco Call Manager, MPLS WAN, VPN’s.
- Designed, developed and maintained VMware infrastructure (ESX 3.5i).
- Analyzed and improved existing network infrastructure as seen fit.
- Remotely troubleshoot server/network issues for North America, Australia, Mexico, and Europe.
- Mentored help desk staff.
- Provided support at all levels (user, vendor, ISP)
