Cyber Intel Analyst Shift Lead Resume
2.00/5 (Submit Your Rating)
Fort Belvoir, VA
OBJECTIVE:
A position that will advance my career in the field of Information technology.
PROFESSIONAL EXPERIENCE:
Confidential, Fort Belvoir, VA
Cyber Intel Analyst Shift Lead
Responsibilities:
- Monitored and analyzed logs and alerts from a variety of different technologies (IDS/IPS (SourceFire, HBSS), SIEM( HP ArcSight,Splunk), PCAP (Bluecoat analytics), firewalls(BRO), DNS,HIDS, NIDS, proxies (Bluecoat ), network packet analyzers(Wireshark), malware analysis (FireEye MWA).
- Performed static and dynamic analysis of the suspected malwares and generated reports.
- Worked in Detect, threat, Response roles at DTRA’s Confidential contract and consumed CyberKillChain process.
- Coordinated with other teams (HBSS, Sustain, NetOps, Protect) to improve overall detection/prevention/vulnerabilities capabilities.
- Provided recommended defensive courses of action in order to mitigate the risk associated with network intrusion attempts.
- Created/Categorize the security incident in HP ArcSight using CJCSM 6510.01A (CAT0 to CAT9) and Conduct incident reporting per DoD regulations.
Confidential, Quantico, VA
Cyber Security Specialist Sr.
Responsibilities:
- Monitored and analyzed logs and alerts from a variety of different technologies (IDS/IPS (FortiAnalyzer, IntruShield, HBSS), SIEM( Nitro, HP ArcSight), firewalls(Fortigate,Netscreen), DNS,HIDS, NIDS, proxies (Bluecoat ), network packet analyzers(Wireshark), malware analysis (FireEye MWA), forensic tools (Mandiant tools).
- Utilized various open source and commercial analysis tools for incident analysis at MCNOSC.
- Performed static and dynamic analysis of the suspected malwares and generated reports.
- Taken MIDAT, IR, HBSS, ACAS, Signature Maintenance courses to improve cyber security knowledge.
- Coordinated with other teams (INS, HBSS, SGS, MAT, EDM) to improve overall detection/prevention capabilities.
- Provided recommended defensive courses of action in order to mitigate the risk associated with network intrusion attempts.
- Assessed Operational Impact of network security events on the Marine Corps Enterprise Network (MCEN).
- Conducted research on and maps out response to emerging malware threats. Validated the Tier 2 analyst’s findings.
- Created/Categorize the security incident using CJCSM 6510.01A (CAT0 to CAT9) and Conduct incident reporting per DoD regulations.
- Assessed the security impact of traffic anomalies on MCEN networks.
Confidential, Alexandria, VA
Network Engineer
Responsibilities:
- Monitored and analyzed logs and alerts from a variety of different technologies (IDS/IPS (IDP 800), Firewall (SSG), HBSS), DNS, proxies (Bluecoat ), network packet analyzers(Wireshark),
- Managed HBSS servers and updated them periodically. Administered (ePO) and troubleshot HBSS products (e.g. HIPS, VSE, and DLP).
- Assessed the security impact of traffic anomalies on customer networks.
- Coordinated with other teams to improve the teams overall detection/prevention capabilities.
- As SOC team member provided engineering and SOC support. Created security incident records using Remedy ticket system.
- Enhanced the functionality and capabilities of CND technologies by adding Router ACLs.
- Troubleshot layer 3 connectivity problems in Cisco/Juniper network related to MPLS, LDP,MP - BGP,OSPF,ISIS.
- Configured routers & switches & IDS like Cisco 2811, Juniper’s M7i, SRX220 and E4200 according to established procedures.
- Used Remedy to perform daily tasks on PSNet Program like record outages, Update and resolve Remedy tickets, perform escalation.
Confidential, Fort Lee, VA
Network Engineer
Responsibilities:
- Monitored and analyzed logs and alerts from a variety of different technologies (IDS/IPS (HBSS,HP Tipping point), Firewall (CISCO ASA),), DNS, proxies (BlueCoat ), network packet analyzers(Wireshark),
- Managed HBSS servers and updated them periodically. Administered (ePO) and troubleshot HBSS products (e.g. HIPS, VSE, and DLP).
- As SOC team member provided engineering and SOC support to the Confidential . Provide remote and onsite support for over 280 DoD Commissaries worldwide.
- Installed, configured and troubleshoot Core’s Router, IPS, WLC, switches, IDS/IPS devices and other network equipment at DECA HQ and in remote Commissaries.
- Used Remedy to perform daily tasks like Troubleshoot outages, Update and resolve Remedy tickets, perform escalation.
- Travelled to the different store across USA to install, configure and troubleshoot Enterasys & Cisco Router, IPS, WLC and switches.
- Contacted all circuit carries for any updates on the tickets we submitted until the problem is resolved; WAN/LAN issues.
- Troubleshot client wired/wireless LAN connectivity issues within a Commissary.
- Communicated with IBM, Cisco, ATT, Sprint, Verizon(MCI) for prompt resolution of network outages
Confidential
FIM Consultant
Responsibilities:
- Installed and configured IAM solution using Microsoft FIM product in a test environment as described in MS FIM Test lab guide in Hyper-V on Server2008 R2 using VMs.
- Installed and configured MS BRS package in a test environment as described in MS BRS Test lab guide in Hyper-V on Server2008 R2 using 15 VMs.
- Working on different aspects of FIM product i.e Custom workflow, Creating MV Extensions using VB.net and C#.
Confidential
Network Admin
Responsibilities:
- Deployed and managed Microsoft based PKI solution that can issue certificates for smart card logon, wireless authentication, digitally signing and encrypting e-mail, security of network transactions and web connections etc.
- Deployed identity and access management solutions using ILM 2 utilizing its identity synchronization, certificate and smart card management and automated user provisioning features.
- Worked closely with management for the enforcement of network security plan in order to provide confidentiality, integrity and availability of data and information systems in accordance with security policy.
- Designed, configured, and troubleshoot computer hardware, networking software and operating system software
- Installed, configured and troubleshoot 3800 series Router, WLC, IPS, switches, VPN concentrator 3000, VoIP and Cisco 1100 series access points.
- Used Remedy to perform daily tasks like Troubleshoot outages.
Confidential
IT Consultant
Responsibilities:
- Provided security subject matter expertise, evaluated proposals and recommended available solutions.
- As an IT consultant advised businesses in choosing best Identity and Access Management solutions according to their business objectives.
- Designed and Implemented IAM solutions requirements and architecture using Tivoli and MIIS 2003.
- Developed comprehensive project plans and drive the execution of these plans to ensure project success.
- Provided consistent follow through with the Business Manager and IT Project manager on issues to ensure appropriate visibility and escalation where needed.
Confidential
Software Engineer Lead
Responsibilities:
- Coordinated with management to ensure quality assurance in the delivery of software solutions
- Design, develop and manage the different software solutions for govt. agencies using Microsoft technology.
- Developed a comprehensive project plan for managing timelines, milestones, priorities, dependencies, and reporting requirements for each implemented project.
- Installed, configured, upgraded and tested system hardware and software throughout the project lifecycle.
- Helped to Maintain and upgraded windows network by configuring servers,workstations,Cisco routers and switches
