Security Engineer Resume
2.00/5 (Submit Your Rating)
SUMMARY
- Cyber Security Professional with over 5 years of experience and expertise in implementing and troubleshooting network infrastructure and security. Proven record of evaluating system vulnerability in order to recommend security improvements as well as improve efficiency while aligning business processes with network design and infrastructure. Superior capacity to solve complex security problems involving a wide variety of information systems. Thrives under pressure in fast - paced environments.
PROFESSIONAL EXPERIENCE
Confidential
Security Engineer
Responsibilities:
- Provided engineering support, incidence response, troubleshooting and evaluation of preventative and detective security technologies such as malware detection, intrusion detection and vulnerability management.
- Deployed SOAR tools for automation and correlation of alerts.
- Conducted system security, vulnerability analyses and risk assessment of the security environment.
- Provided incident response analysis and support to the SOC. Identify and remediate threats and/or vulnerabilities to corporate networks.
- Establish vulnerability management program using Nessus for systematic scanning, risk evaluation, and coordination to remediate or mitigate identified vulnerabilities.
- Perform real - time cyber defense incident handling (e.g., IOCs, forensic collections, intrusion correlation and tracking, threat analysis, logs, triage and direct system remediation) to determine intrusion, containment and remediation of malicious events.
- Create new trouble tickets for alerts that signal an incident or a threat and review trouble tickets generated by other team members for remediation.
- Manage and monitor security platforms following established procedures and playbooks.
- Monitor running applications running in the AWS Cloud platform with Amazon CloudWatch.
- Assist with writing documentation for tasks, procedures and knowledge based articles needed to support the understanding and efficiency of security incidence playbooks.
- Conduct log analysis using Splunk as a SIEM. Created baselines. Ran index queries and setup Splunk dashboards to automate repeatable tasks
- Communicate in a positive manner with internal clients and escalate any security incident issues accordingly.
- Reduced the numbers of false positives alerts by 20% by real time correlation of security logs against IOCs.
- Monitored Checkpoint and Palo
Confidential
Network/Security Administrator
Responsibilities:
- Monitored all endpoints in the enterprise having the latest antivirus definitions and troubleshooting endpoints out of compliance using McAfee ePolicy Orchestrator.
- Oversight for the MPLS network for the Confidential Region monitoring for uptime and troubleshooting, using Solar winds Orion monitoring tool for LatencybandwidthCPU usagememory issuesnetwork and environmental issues possibly impacting Server and network devices.
- Performed Enterprise backups solutions using Symantec Backup Exec for servers. Performed troubleshooting of complex LAN/WAN infrastructure including routing protocols Eigrp, OSPF and BGP and using Wireshark and packet captures to diagnose, isolate and resolve network issues.
- Configured and maintained Cisco routers, switches, ASA 5510 firewalls and Cisco Wireless LAN Controllers and Access points.
- Used Vlans and Access lists to filter segmented traffic. Maintained network connectivity internally and externally using Cisco 2650, HP Procurve 2530 and 5304 Switches and Cisco 2960 and 1941 routers over MPLS network using OSPF and BGP.
- Hardening the network by implementing Palo Alto IDS and IPS.
- Configured rule sets for incoming and outgoing traffic and segmented traffic with zones
- Monitored logs daily for malicious activity and took appropriate actions accordingly to allow or block activities based on the rulesets
- Used the Palo Alto firewall for filtering internet traffic and for Intrusion Prevention and detection.
- Administered multiple ASA firewalls throughout the WAN to ensure LAN integrity from external threats
- Monitoring and analysis of security events to determine intrusion and malicious events. Responsible for the Enterprise backups solutions using Symantec Backup Exec for servers
- Responsible for monitoring all endpoints in the enterprise are having the latest antivirus definitions and troubleshooting endpoints out of compliance using McAfee ePolicy Orchestrator
- Responsible for the MPLS network for the Confidential Region monitoring for uptime and troubleshooting, using Solar winds Orion monitoring tool for Latency; bandwidth; CPU usage; memory issues; network and environmental issues possibly impacting Server and network devices
Confidential
Network Administrator
Responsibilities:
- network connections to over 700 stores monitoring for uptime and troubleshooting, using Solarwinds Orion monitoring tool for LatencybandwidthCPU usagememory issuesnetwork and environmental issues possibly impacting Server and network devices.
- Performed troubleshooting of complex LAN/WAN infrastructure including routing protocols Eigrp, OSPF and BGP. Configured and deployed Cisco routers, switches and Aruba Access Points and Controllers to stores as needed.
- Used Vlans and Access lists to filter segmented traffic. Maintained network connectivity internally and externally using Cisco 2900,3500, 6509 Switches and Cisco 2600, 1841, 3600 and 7200 routers over MPLS network using EIGRP and BGP.
- Configured site - site IPsec VPN tunnels for remote branches. Provided the Enterprise backups solutions using Symantec Backup Exec for physical servers and Vranger for virtual servers.
- Monitored all endpoints in the enterprise having the latest antivirus definitions and troubleshooting endpoints out of compliance using Symantec Endpoint Protection Manager Console.
- Monitored and resolved security and network alerts on the North American network. Resolved network connectivity issues on the LAN/WAN link.
- Provided developers access to the Devops environment. Resolved Virtualization networking\connectivity\server resource issues with Virtual Machines.
- Responsible for the MPLS BGP network connections to over 700 stores monitoring for uptime and troubleshooting, using Solarwinds Orion monitoring tool for Latency; bandwidth; CPU usage; memory issues; network and environmental issues possibly impacting Server and network devices
- Troubleshooting of complex LAN/WAN infrastructure including routing protocols Eigrp, OSPF and BGP
- Configured and deployed Cisco routers, switches and Aruba Access Points and Controllers to stores as needed. Used Vlans and Access lists to filter segmented traffic
- Responsible for maintaining network connectivity internally and externally using Cisco 2900,3500, 6509 Switches and Cisco 2600, 1841, 3600 and 7200 routers over MPLS network using EIGRP and BGP
Confidential
Network Operations Technician
Responsibilities:
- Configured Cisco Router 2610, 1841 and Cisco 2950 switches deployed to stores
- Segmented store network traffic from card data traffic with ACLs
- Troubleshooting network connectivity issues with CLI commands like traceroute, Arp, Ipconfig, ping, show interfaces, show log, show vlan, show vrrp, show mac - address table, show interfaces etc and monitored uptime with Whatsup Gold
- Configuring Vlans, VTP and ether channels on Cisco Switches
- Responsible for cross-connects and ensuring that end users have network connectivity at their end jacks
- Provided level 2 support for LAN/WAN issues on the enterprise Deployed web pushes for Developers to deployment and production web sites
- Created new user accounts in AD/Exchange and created new phone extensions in Avaya
- Troubleshoot network connectivity issues with stores and monitored uptime with Whatsup Gold
- Responsible for file restore requested by end users and developers
- Responsible for shipping out networking equipment as needed by stores.
- Utilized Heat and Kace ticketing Systems toolset to monitor tickets for new tasks or problems as they relate to the Hosting network Operations area of responsibilities
