We provide IT Staff Augmentation Services!

Incident And Warning Analyst Resume

3.00/5 (Submit Your Rating)

Richardson, TX

SUMMARY:

  • Incident tracking and triage: SIEM: Qradar
  • Event logging and reporting: Splunk / Kibanna
  • Security Layer: IPRM, NIDS, Firewall and Antivirus
  • Windows and Linux systems
  • Multiple Incident tracking services: Jira, Change gear, Orbit
  • Compliance evidence collection: PCI and SOC I & II auditing.
  • ‘Human Router’: Knowledge of company structure to route both customer and internal queries.
  • ‘Human SIEM’: Collect and correlate data from multiple sources identifying larger issues.
  • Process evaluation and documentation: Confluence
  • Identification of gaps in process or tribal knowledge needing to be documented.

PROFESSIONAL EXPERIENCE:

Confidential, Richardson, TX

Incident and Warning Analyst

Responsibilities:

  • Daily incident reporting and review. Review of Security Incident reports (IPRM, NIDS, Malware, Auth Logs) from Splunk and Qradar. Initial triage and identification of possible vulnerabilities and escalation of possible Confidential ’s IRF: Incident Response and Forensics Team for more comprehensive investigation.
  • Compile Security Reports per customer request, coordination with internal teams via conference call.
  • Disk, Software and Applications scanning: Internal and customer software or storage devices scanned before being installed or connected to the environment.
  • Weekly review of all reported and escalated incidents. Identify trends and new types of signatures reported and present the data during weekly targeting meetings with management and other departments.
  • Assist Compliance and Governance Departments by pulling data and working directly with Auditors for process confirmation.
  • First point of customer contact: Phone / Chat. Collect all necessary information and impact to customer services for L1 thru Enterprise level engineers to resolve. Identify possible correlation with larger issues (Network / Systems) and alert the necessary teams.
  • Learn the skill set and abilities of Support personnel to know who to forward specific incidents to. Identify those in need of training or who are ready for promotion within support or to another team.
  • Assist in developing more efficient triage standards and data collection for individual incidents. Identify FAQ’s to add to customer KB and canned responses. Assist in developing several improvements in the ticketing system to confirm financial gains / losses were tracked properly. Assist Billing deptartment in regular reconciliation of customer billable items.

Confidential, Dallas, TX

Lead Technician / Supervisor

Responsibilities:

  • Midway games and equipment maintenance and cleaning.
  • Assisted in maintaining kitchen equipment and Point of sale systems
  • Scheduling and training of all employees.
  • Customer service and retention.

Confidential, Dallas, TX

L1 Provisioning / Provisioning Lead / Inventory Control / L1 Support / L1 Security and Professional Services Engineer

Responsibilities:

  • L1 Provisioning: Manual builds out of servers per orders. Assist in developing more automated / efficient process.
  • Maintained OS images for multiple OS and hardware products.
  • Provisioning lead: Maintained 20 man team. Training of new hires. Maintained Inventory for 3 data centers to ensure orders could be fulfilled.
  • Inventory Control: Build out of secured storage for inventory. Develop process for receiving, maintenance and requisition of inventory.
  • L1 Support: First point of customer contact: Phone, chat, new tickets or on site.
  • L1 Security / Professional Services: Monitoring of network and security events. Investigate, identity and block possible malicious behavior.

We'd love your feedback!