Security Analyst Resume
5.00/5 (Submit Your Rating)
Columbia, MD
SUMMARY
- Seeking to apply over 10 years of technical and leadership experience in a Cybersecurity Incident Analyst position.
- Provides support involving multiple programs such as Cybersecurity, Information Assurance, Information Technology, Incident Response
- Fully - trained in Tenable products, IBM Security Infrastructure protection solution, McAfee EPO, FireEye, FireEye HX, Splunk, Wireshark, Tanium, Bromium Endpoint Protection, RSA Security Analytics, Liberman Password Mgmt, Symantec DLP, BigFix and Liberman Password Mgmt, Symantec DLP, BigFix, Microsoft Office
PROFESSIONAL EXPERIENCE
Confidential, Columbia, MD
Security Analyst
Responsibilities:
- Oversee the integration of assessment of assets, threats and vulnerabilities
- Scan and analyze network devices to discover vulnerabilities using Nessus
- Update and maintain the SOPs for the Vulnerability Management Program
- Provide detail vulnerability reports
- Update passwords for all productions servers
- Configured and monitor sensitive data using Symantec DLP
- Deploy software using BigFix
Confidential, Bethesda, MD
Service Desk Analyst
Responsibilities:
- Provisions, maintains, and removes security privileges for users
- Works with several Bureaus and provides necessary security tier 1 support
- Works with members of the desktop/network teams and other workgroups
- Analyze and resolves incidents and requests regarding use of application software or hardware.
- Logs and tracks incidents and request through Remedy IT Service Management
- Follows up with other support staff (service resources) involved in resolution to ensure incidents are resolved, requests are filled, and the customer communication is complete.
Confidential, Fairfax, VA
Sr. Cyber Security Engineer
Responsibilities:
- Conduct and teach cyber security tool monitoring and analysis.
- Monitor and analyze network IPS, detailed firewall, and proxy logs for patterns of compromise.
- Review CIRT IDS and IPS events for malicious activity.
- Review other cyber-security event data managed by other teams (e.g. firewall, DNS, DHCP, web proxy, email gateway Logs).
- Tune and develop IDS and IPS signatures.
- Create SIEM Alert Dashboard signatures.
- Review periodic signature updates from manufacturers to identify which signatures should be enabled.
- Review Open Source publications for additional signatures and/or indicators of compromise.
- Provides training on monitoring tools and analysis to peers.
- Self-starter, plans and arranges own work, refers only unusual cases to supervisors or others.
- Perform and mentor other analysis in detailed packet analysis.
- Recommend appropriate remediation steps for cyber security events and incidents
- Create findings report of vector and attack analysis.
- Support and mentor analysts on new analytical techniques and informational sources
- Support ongoing incidents from non-CIRT organizations related to computer security when requested.
- Identify and recommend process creation and improvements.
- Identify advanced techniques and coordinate to improve analysis capability.
Confidential, Lanham, MD
Information Assurance Engineer
Responsibilities:
- Investigate and analyze all data sources, to include Internet, Intelligence Community reporting, security events, firewall logs, forensic hard-drive images, and other data sources to identify malware, misuse, unauthorized activity or other cyber security related concerns.
- Investigate virus/malware alerts/incidents to determine root cause, entry point of code, damage risk, and report this information.
- Interact effectively and regularly with internal Program personnel, and Customer personnel to understand requirements and implement solutions.
- Assist in the design, implementation and administration of information systems for HUD in the Lanham Data Center.
- Generate FISMA reports for management and the CISOs review.
- Working knowledge of NIST 800-53.
- Monitor, analyze, and respond to security events utilizing security event management tools.
- Assist with the development and implementation of security event monitoring on mission critical systems.
- Manage and use vulnerability scanning/reporting (Tenable Nessus/McAfee Policy Auditor), SIEM (Tenable Log Correlation Engine), and compliance tools.
- Assist the Agency’s CIRT in incident responses, mitigation, and analysis.
- Maintaining auditable records of log monitoring activities and responding to audit request.
- Utilize knowledge of attacks signatures, tactics, techniques and procedures to aid in detection of threats.
- Utilize Plan of Action and Milestones (POAM) to identify and correct weaknesses in existing processes.
- Defines security and policy compliance requirements in supporting the acquisition and deployment of security software, systems, and services.
- Provides technical guidance and expertise in the areas of secure application development, security risk management and assessment, security policies and standards, security architectures and implementations, and effective security risk assessment practices.
Confidential, Huntsville, AL
IT Support Specialist
Responsibilities:
- Support the implementation of Emerson IT strategic objectives through technology
- Make recommendations for continuous improvement of policies, procedures and technologies.
- Provided 24/7 response for critical production areas.
- Performed Server Patching via WSUS. Oversee software and network security.
- Reduced system downtime by expediting failure analysis and recovery processes.
- Setup Web Content Filtering solution for Global Enterprise with world region specific architecture.
- Participated in the migration from Confidential security system to Emerson Network Power
- Manage hardware acquisition, configuration and distribution for incoming team members.
- Managed Antivirus solutions without impacting sensitive production schedules in a manufacturing environment.
- Designed and implemented Cisco Wireless Controller System and Wireless LAN Controller solutions for global Wi-Fi standardization under budget.
- Participant in technical business focus group for input in Microsoft’s next generation OS and Emerson Worldwide Security Strategy.
- Deployed and implemented full disk encryption solution from vendor release to supported corporate standard for Microsoft, MAC and mobile solutions.
- Review violations of computer security procedures and discuss procedures with violators.
- Monitor current reports of computer viruses to determine when to update virus protection systems.
- Modify computer security files to incorporate new software, correct errors, or change individual access status.
- Develop plans to safeguard computer files against accidental or unauthorized modification, destruction, or disclosure and to meet emergency data processing needs.
- Train users and promote security awareness to ensure system security and to improve server and network efficiency.
- Install and configure network services, equipment and devices. Manages all system back-up and restore protocol.
- Use group policies to define users and computer settings.
- Served as a lead cyber and information security consultant to the project team by conducting security risk assessments and providing guidance on securing information systems, applications, and networks.
- Received three Exemplary Awards for performance and reliability improvements.
Confidential, Glen Allen, VA
Software Support Analyst/Technical Specialist
Responsibilities:
- Assisted doctor offices with various issues such as hardware and software problems, data acquisition, and virus removal.
- Managed users and provided regular reporting on support activity for training and software product improvement purposes.
- Performed in-depth technical research of software products relating to technical support dilemmas, including reproduction of support issues, identification of troublesome trends and escalation of unresolved problems or defects.
- Performed quality assurance testing for new releases and upgrades.
- Tracked software customization, defects and issues
- Reviewed computer programs to ensure that the programs are compatible with other programs already in use.
- Evaluates work load and capacity of computer system to determine feasibility of expanding or enhancing
- Assigned and coordinated work projects, such as converting to new hardware or software.
- Senior Client Services Representative
- Mentored team members to insure all daily telephone correspondence, reporting and database records are being handled in an efficient, complete and professional manner.
- Supervised training and coaching of new and existing team members to maximize performance.
- Created and trained team members on documents such as: SOP’s, safety rules, operating and maintenance instructions, and procedure manuals.
- Managed cost budget to allocate overall cost estimate to individual tasks.
- Served as client representative to implement client-server billing and customer care solutions.
- Responsible for account management and prioritization and forecasting
- Produced project status reports, managed the team and resolved day-to-day issues.
- Designated staff assignments, established work priorities, and evaluated cost and time requirements.
