Information Security Sme Resume
4.00/5 (Submit Your Rating)
PROFESSIONAL EXPERIENCE:
Confidential
Information Security SME
Responsibilities:
- Vulnerability Management Refactor Lead
- PAM Lead
- Red Team Lead
- SAST\DAST initiative Lead
- Endpoint security auditing/pentesting - SME
- Anti-virus iDLP
- GPOs
- Security Architecture
- Firewall policy auditing
- Policy Auditing and Augmentation
- SOC capability enhancements - SME
- Blue Team capability enhancements - SME
- Identifying misconfigurations in the Enterprise
Confidential
Sr. Information Security Analyst
Responsibilities:
- Leadership
- Management of off-shore SOC team
- Network Hygiene - Lead
- Improving scan profiles
- Patch management
- Remediation plans
- Endpoint security auditing/pentesting
- Security Architecture
- Firewall policy auditing
- Policy Auditing and creation
- Incident response - SME
- Incident analysis - Lead
- PCI compliance - Lead
- Phishing awareness campaign - Lead
Confidential
Information Security Incident Response Engineer
Responsibilities:
- Performed Incident Response on Windows and Mac
- Performed RAM and Disk forensics
- Managed Security Team Infrastructure
- Vendor testing/vetting for Confidential in with an end goal of partnership and/or in-house use
- Malware Analysis involving static analysis
- Network Hygiene
- Scanning for over 10k assets
- Patch management
- Remediation plans
- Python Scripting
- Bro Administration and log digestion
- Processed all Phishing attacks and analyzed email headers for IOCs
Confidential
Incident Response/Information Security Engineer
Responsibilities:
- Performed Incident Response on Windows and Mac systems including the following Memory Forensics, Remediation, Threat level determination, Disk Imaging, Root Cause analysis, Log Analysis
- Stood up servers to handoff to system admin
- Ran Agency wide Phishing campaign and was pivotal to its success
- Malware Analysis and reverse engineering
Confidential
Information Security Engineer
Responsibilities:
- Determined threat actors for the enterprise. (FP vs TP)
- Monitored Dell Secureworks Sourcefire devices as well as iSensors, Fire Eye NX devices, alerts from Bit9/Carbon Black and alerts stemming from Lancope StealthWatch.
- Triaged alerts utilizing Splunk, Fire Eye AX, Cuckoo Sandbox and various Threat Intel websites.
- Performed string analysis on malicious binaries to create Yara rules for Fire Eye Devices.
- Performed forensics on machines infected with malicious binaries to determine what may have been exfiltrated.
- Examined PCAPs, created memory images, and identified malicious intrusions using Volatility and Redline.
- I was responsible for creating policies revolving around malware remediation, AV exemptions and more. Additionally, my role addressed patch management exemptions and deferrals.
Information Systems Engineer
Confidential
Responsibilities:
- Contracted for: SharePoint permission management, Active Directory management, Duo Security Administration, Box Co-Administration, Password resets for; SAP, Voicemail, RSA, and Salesforce.com, Citrix support.
- Troubleshooting day to day issues, Binding hosts to the domain, administrative rights management on local computers, Juniper VPN support along with numerous other Help Desk duties including improving workflow for my team and training.
Confidential
Information Systems Engineer
Responsibilities:
- Windows 7, XP and Mac
- Novell Suite, CheckPoint, BIMS/Citrix, Support Works, Bomgar
- Supported users in the Novel to office transition; Microsoft Office walkthroughs/Q&A, transferring email archives, ect. Provided general IT break/fix support JCTech
Server Administrator, Network Administrator, Security Engineer
Confidential
Responsibilities:
- Overviewing approximately a thousand users
- Environment: Windows 7 and XP, Windows 2003 and 2008.
- Malware remediation and antivirus management (Bit Defender cloud), firewall administration, WiFi AP management.
- Microsoft Office 2003/2010, Micros, Accpac, Kronos, HomeOffice2, Lightspeed, Galaxy.
Confidential
Information Systems Engineer
Responsibilities:
- Home and Business clients.
- Contracted for Virus remediation, Hardware repair/replacement, Networking, OS hardening, Printer management/configuration, File Backup.
- Contracted for malware remediation, computer purchasing and setup, endpoint security and Quickbooks configuration and general troubleshooting.
- Contracted for malware remediation, computer purchasing and setup, endpoint security and general troubleshooting
