Soc Analyst Resume
0/5 (Submit Your Rating)
Dallas, TX
SUMMARY
- A Cyber Security Analyst with proficient and thorough experience and a good understanding of information technology.
- Specialized in proactive network monitoring of SIEM.
- Have a deep knowledge in identifying and analyzing suspicious events.
- Versatile, bilingual professional with the ability to manage sensitive materials.
- Able to use various security tools to perform log and packet analysis.
- Overall objective to ensure confidentiality, integrity, and availability of the systems, networks, and data.
Areas of Expertise
- Rapid7(InsightVM)
- Darktrace (IDS)
- Carbon Black Response (EDR)
- Symantec Enforcer (DLP)
- McAfee ePO (DLP)
- SIEMs (LogRhythm)
- Proofpoint (Email Protection)
- ServiceNow (Ticketing)
- JIRA (Ticketing)
- Microsoft word, excel
- Microsoft Azure Platform
- Microsoft Defender
- Bluecoat Proxy
PROFESSIONAL EXPERIENCE
SOC Analyst
Confidential, Dallas, TX
Responsibilities:
- Conduct proactive monitoring, investigation, and mitigation of security incidents.
- Remain informed on trends and issues in the security industry, including current and emerging technologies.
- Perform Vulnerability scans and provide detail reports including remediation procedures.
- Analyze security event data from the network (IDS, SIEM).
- Recognize potential, successful, and unsuccessful intrusion attempts and compromises thorough reviews and analyses of relevant event detail and summary information.
- Ensure the integrity and protection of networks, systems, and applications by technical enforcement of organizational security policies, through monitoring of vulnerability scanning devices.
- Conduct investigations and prepare comprehensive reports with timely escalations to Network or Security Engineer, for review.
- Research new and evolving threats and vulnerabilities with potential to impact the monitored environment
- Identify suspicious/malicious activities or codes.
- Worked in a 24x7 Security Operations Center
- Monitoring and analysis of security events to determine intrusion and malicious events.
- Investigate malicious phishing emails, domains and IPs using Open Source tools and recommend proper blocking based on analysis.
SOC Analyst
Confidential, Vienna VA
Responsibilities:
- Investigated security events using a wide range of logs, SIEM, EDR tools, and other security tools to identify the root cause.
- Investigate phishing alerts to determine if it is true positive or false positive with the use of Proofpoint and other security tools.
- Maintained and continuously updated the knowledge base documents with new processes and solutions as they occur.
- Documented and tracked incidents in the ticketing system.
- Maintained a customer - centric, and safety-first attitude.
- Perform Vulnerability scans and provide reports including remediation procedures.
- Investigate phishing alerts reported by our security tool proofpoint and end users.
- Worked hand in hand with different teams to response to security incidents.
- Assist end users with security related issues.
- Work on different projects as assigned.
- Write, update and review SOP’s.
