We provide IT Staff Augmentation Services!

Security Analyst Resume

4.00/5 (Submit Your Rating)

New York, NY

SUMMARY

  • I am Mastered Degree and Mid - Level experienced security professional who have great technical skills and determination to solve critical security problems through research prospective.

TECHNICAL SKILLS

Network Components: Cisco Routers (4), HP and Cisco Switches (4), HP servers (4), TCP/IP (4)

Operating System: Windows OS (4), Linux (3), Kali Linux (2), Windows Server (4)

Security Devices: Metaflow IDS(4), Cisco and Fortinet Firewall (3), Sysmon and Splunk server (1)

Security Tools: Metasploit (1), Symantec email protection (1), Endpoint protection (4)

Technology: Java(3), Hadoop(2), Microsoft Azure(1)

Security Solution: Symantec Email Encryption (1), McAffe (1), NetSkope (0.3), Cylance (0.3), Microsoft Inuit(0.3)

Security Skills: Incident Response (IR), Vulnerability Analysis (2), Backup Recovery (1), Phishing Filtering (1), Penetration Testing (2),DLP(0.3)

PROFESSIONAL EXPERIENCE

Security Analyst

Confidential, New York, NY

Responsibilities:

  • To eliminate Windows password vulnerability tested 2FA solutions like smartcard (Yubikey), figure print scanner and TPM chip with Mimikatz tool and deployed them in current environment.
  • Worked with CIO and Security Director on Network Diagram to suggest right positions to implement IDS devices at different locations and changes need to make to the current network.
  • Collaborated with Security Director on finding solution for email encryption, Antispam and tested compatibility of Symantec Gateway and Desktop encryption solution for office 365.
  • Monitored day to day logs of systems and network from Firewalls, IDS, Sysmon and Splunk server; and documented every high level, middle level alerts ( like Botnet, New Intrusion etc.) as a part of evidence gathering to suggest new rules and policy’s suitable to working environment.
  • Teamed with security team under Security Director to design and develop Incident Response Plan (IR), Data Loss Prevention (DLP) and Backup Recovery Plan.
  • Part of Pen-Testing team on Black-Box testing of client and worked on Metasploit framework, Harvester, Maltego, Netcat and Nexpose.
  • Developed a small computer Lab with security team made up of Microsoft server 2012, VM’s, Email server, Active Directory, Splunk server and windows 8.1 system to evaluate the performance of Open DNS - Umbrella, Cylance, Confer and Symantec email encryption key server (PGP).
  • Worked with Cisco and Fortinet VPN to develop TPM based 2FA for user logins.
  • Generate Tickets for Fortinet Firewall, Fortinet Analyzer and Metaflows IDS to solve technical issues, to imply new rules and policy and finding strategies to generate log reports as per requirement.
  • Come to be a part of security team to monitor and manage Endpoint protection solution such as Cylance and Microsoft Inuit.
  • Performed Vulnerability Scanning and Threat intelligence on current environment for developing security solutions based on requirements.
  • Worked on Clouds Technologies such as Azure and AWS, and Tested and implemented a Cloud Security solution such as Netskope.
  • Engaged in call with Solutionary (One of the leading Log monitoring and Log management service provider) to study systems and network behavior, and finding and developing solutions to improve.

Graduate Assistant

Confidential, New York, NY

Responsibilities:

  • Worked under Lab Administrator on implementing role based and rule based access control module to achieve list privilege access for lab users.
  • On administrator level performed Vulnerability scanning of systems and servers, installed data encryption and antivirus software (McAffe) to protect user’s data and lab asset.
  • Assist lab administrator on system hardening, network hardening and port blocking to achieve the ultimate goal of secure environment.
  • Responsible for creating and maintaining of technical documentation, troubleshooting Technology related issues and on boarding of new student.

Network Administrator

Confidential

Responsibilities:

  • Administrating and maintaining the WAN and LAN infrastructure components including cisco router, call manager and voice mail components.
  • Support cisco ASA firewall installation, manage rules on as, and need basis and troubleshooting issues.
  • Installation of antivirus software and server hardening on DMZ systems
  • Administer for Windows, Linux servers, workstations and VM’s including user management, storage management, network management, System configuration management, backups, patches and upgrade.

We'd love your feedback!