Cyber Security Analyst Resume
0/5 (Submit Your Rating)
CT
SUMMARY
- Cyber Security Analyst with 3+ years of experience in managing and protecting enterprise information systems.
- Knowledge of vulnerability Nexpose Reporting in Excel by creating a Macro that combines reports and creates a pivot table to sum vulnerabilities by site and track critical risks.
- Good knowledge of TCP/IP, routing and switching, OSI Layer, Packet Analysis, Logs, Endpoint and network protection, port and internet protocols, and scripting languages.
- Ability to Operational management of Firewalls, IPS/IDS, Proxy appliances, Microsoft AD, DNS, and desktop/server security.
- Understanding ofvulnerability assessmentandpenetration testingusing various tools like Metasploit, Burp Suite, OpenVAS, NMAP, Wireshark, and HP Fortify.
- Well - Versed in converting Checkpoint VPN rules over to the Cisco ASA solution.
- Proficient in configuring Postgres drivers for database connectivity to AWS RDS database instance.
- Working knowledge of Database applications such as MySQL.
TECHNICAL SKILLS
Networking Protocols: TCP/IP, IPv4, VPN, HTTP, DNS, LAN/WAN, OSPF, BGP
Security Tools: Nmap, Snort, TCP Dump, Nessus, Wireshark, Core Impact, OpenVAS, HIDS/HIPS, SIEM, Active Directory, IDS, IPS, DNS, DHCP, Splunk, Burp suite, OWASP, SIM Tools, Vulnerability Scanning
Cloud Technology: AWS
Reporting, Modeling & Analytics Tools: MS Office, MS Visio
Operating Systems: Windows, Linux
PROFESSIONAL EXPERIENCE
Confidential, CT
Cyber Security Analyst
Responsibilities:
- Create and maintain file system, execute security and printer configuration, and realize TCP/IP addressing.
- Perform Nessus active vulnerability scans and compliance checks to validate the integrity of the application and operating system configuration baselines.
- Configure Multi-Homed BGP with different Service Providers, to provide internet redundancy.
- Conducted base-level analysis to determine the legitimacy of files, and emails using tools such as Splunk as well as online resources such as Virus Total, etc.
- Analyzed and understood the issues related to DNS, DHCP, and other IP conflicts.
- Converted existing AWS infrastructure to a serverless deployment via Terraform or AWS Cloud formation.
Confidential, Jersey City, NJ
Security Operation Analyst Intern
Responsibilities:
- Responded to security incidents in a timely fashion, including phishing emails, data exfiltration, policy violations, and malware.
- Acknowledged the user requests for permissions such as admin access, firewall exceptions/changes, and changes to Active Directory groups.
- Investigated security incidents with tools such as Splunk, Microsoft Defender ATP, CrowdStrike, Recorded Future, and Securonix.
- Studied vulnerability scans, built threat reports, and automated tasks through the use of Qualys and its API.
- Designed a playbook for service account log-on failure which covered all scenarios, integrated with ServiceNow and Splunk to fetch logs.
- Create and deliver security documentation, including - security assessment and crisis reports, disaster recovery plans, and knowledge base updates.
Confidential
Cyber Security Analyst
Responsibilities:
- Implemented an OSPF redundant network with redundant firewalls.
- Designed and implemented a complete replacement of LAN architecture and equipment in conjunction with outside contractors.
- Used Wireshark and TCP dump to analyze network traffic.
- Responded to security escalations received from the Security Operations Center (SOC).
- Performed Network scanning using tools Nessus and Nmap and generated reports.
- Developed Splunk infrastructure and related solutions as per automation toolsets.
- Participated in the implementation of AWS Cloud security for applications being deployed in the Cloud.
