AbuSayed Mahfuz, US Department of Homeland Security

AbuSayed Mahfuz

US Department of Homeland Security

Raytheon

البلد
الولايات المتحدة
التعليم
ماجستير, Computer Information Systems
الخبرات
15 years, 7 أشهر

مشاركة سيرتي الذاتية

حظر المستخدم


الخبرة العملية

مجموع سنوات الخبرة :15 years, 7 أشهر

US Department of Homeland Security في Raytheon
  • الولايات المتحدة - مقاطعة كولومبيا
  • أشغل هذه الوظيفة منذ يوليو 2016

Contributions
• Supported the DOMINO Malware project team for CISA, NCPS project at DHS services
• Conducted malware analysis and reverse engineering on suspicious code, and producing a detailed report of the findings
• Designed and implemented microservices with thoughtfully-defined APIs.
• Helped the Automation of intelligence gathering, and malware analysis systems
• Conducted advanced computer and network tests relating to various forms of malware analysis, computer intrusion, theft of information, denial of service, multi-national organized criminal groups, and Advanced Persistent Threats (APT)
• Contributed cybersecurity perspective to discussions and decisions regarding JPMC global technology infrastructure and technology deployments
• Worked closely with the technology risk teams to assess risk and provide recommendations for improving our security posture
• Partnered with the incident response team and investigations team to understand incidents and support technical analysis of malicious cyber security events
• Communicated effectively with representatives of the Lines of Business, technology specialists, and vendors
• Reviewed threat information and maintain threat repository
• Conduct deep dive technical analysis of cyber-attack tools, tactics, and procedures
• Research and develop methods of tracking and detecting malicious activity within a network
• Used Scrum methodology to track project
• Participated in the problem management process to get to root cause of technology problems and to improve availability of systems.
• Managed Agile/Scrum process including sprint planning, Daily scrum, sprint reviews, and sprint retrospectives, coached team members and clients on Agile process
• Supported other developers and architects through peering and mentoring.
• Worked with API, SOAP/Rest Web Services, Microservices, File/Data transfers, etc…
• Performed application and security code scans and support the remediation of scan findings
• Created interpreting REST API calls
• Worked with Test Automation, CI/CD, DevOPS team supporting AWS cloud environment
• Assisted DevOps Testing pushed to GitHub to execute in Jenkins
• Designed and executed functional test cases in testing applications manually as well as using the
• Performed Database Testing and thorough knowledge in SQL/PL SQL.
• Prepared the regression test planning for the project and identified the critical regression tests
• Executed the automated regression test cases during every release and also executed the daily regression test suites
• Prepared Zira ticket for User Stories, Task and other Tasks
• Prepared Test Plan and Test Case walkthrough for all the stakeholders.
• Performed Data validation test
• Created reviewed and verified Requirement Specifications, User Stories

• Supported the Identity Credential and Access Management team to support the DHS services for authentication and authorization
• Served as ICAM SME and point of contact for all incident, issues and releases
• Worked with DevOps team supporting AWS cloud environment
• Assessed and evaluated risk based on threats vulnerabilities and shortfalls uncovered in testing
• Assisted DevOps Testing pushed to GitHub to execute in Jenkins
• Designed and executed functional test cases in testing applications manually as well as using the automated testing tools like Quality Center/ALM.
• Co-ordinated between Technology and Business to ensure all the outstanding issues are being addressed, fixed and retested.

Senior Application Quality Analyst (MSP) في Hewlett Packard
  • الولايات المتحدة
  • أكتوبر 2012 إلى يوليو 2016

Contributions
• Performed analysis and documentation of requirements and process analysis
• Contributed as Test Lead, QA Lead, UAT Lead and Software Tester for several projects.
• Performed Security and TRAM finding testing
• Prepared Security Metrix for different level of user group
• Conducted Penetration Test of the United States Mint s non-Commerce web site and related infrastructure including web server application and database servers.
• Used Paros tool for ethical hacking and Performed Test to prevent hacking
• Presented Test Plan and Test Case walkthrough for all the stakeholders.
• Performed incident identification, route identification, incident documentation and classification
• Completed the Major Incident Report, captured required follow up.
• Updated processes and procedures accordingly to ensure improvements are made as a result of lessons learned.
• Ensured that all IT teams follow the Incident Management process for every incident and that the
• Prepared Business requirements, user case, test cases, Test Plan.
• Performed Vulnerability Testing to prevent un-authorized access & hacking.
• Performed Data validation test using SQL commands.
• Performed various Interface testing using UNIX shell scripts.
• Inspected Test Scripts.

Busines Analyst في University of Michigan Health Systems
  • الولايات المتحدة
  • نوفمبر 2011 إلى يوليو 2012

Duties Performed:
• Developed and implemented Test Strategy, Test plans and schedules
• Completed responsibility of all QA activities and deliverables
• Coordinated the work of test team and monitored their performance
• Following up outstanding open test risk/issues
• Managed and monitored test activities for a specific software release from project initiation through production deployment
• Developed, executed and managed over 200 test cases
• Prepared & presented Maturity Metrics & Release Level Metrics presentation for upper management
• Compiled test metrics for management
• Identified Vulnerabilities, their type, source & severity
• Identified Threats, their type, source and likelihood
• Tested Microsoft Security Patch
• Verified and Validated User security against all order items
• Reviewed bug reports from the test technicians for errors.
• Edited and Updated existing VB scripts for QTP
• Identified potential areas where existing data security policies and procedures require changes.
• Presented weekly status reports to management regarding issues and progress.
• Provided technical training on risk assessment
• Managed security policies and procedures. Evaluate system conformance with security policies.

Business Analyst في Valasiss Digital Communication
  • الولايات المتحدة
  • يناير 2008 إلى ديسمبر 2010

Environment: Team Foundation Server (TFS), Microsoft Test Manager, Microsoft Application LifeCycle Management, Visual Studio, HP Quality Center, Quick Test Pro., MS Project, Oracle, MS Visual Basic 2010, VB Scripting, SQL, PL/SQL, DQL, Windows XP, 7, Visual Studio, UNIX Shell Scripts, Windows, IBM Mainframe, IBM ClearCase, ClearQuest

Duties Performed:
➢ Developed and implemented test plans and schedules.
➢ Managed and monitored test activities for a specific software release from project initiation through production deployment
➢ Selected and implemented agile development practices according to the application requirements for every project
➢ Ensured participation of clients in the process of development
➢ Attended Sprint Planning meetings
➢ Developed and managed manual test cases for food and grocery stores
➢ Reviewed bug reports from the test technicians for errors.
➢ Created new Requirement and User stories
➢ Worked with rational functional testing, automation tools, and programming languages
➢ Wrote the Requirements and Functional Specification documents.
➢ Conducted Joint Application Development (JAD) sessions to develop and agree upon a system that focuses on the business requirements.
➢ Participated regularly in Walkthroughs and Review meetings with Project Manager, QA Engineers and Development team.
➢ Regularly interacted with offshore and onshore development teams.
➢ Handled regular deployment issues across Dev, Prod and Test environments.
➢ Implemented and support software installation packaging and distribution using Web Based Software Deployment (WBSD).
➢ Troubleshoot development and production failed packages and communicate offline end-points to appropriate support teams and developers.

Qality Speciliaty Analyst في Ford Motor Company
  • الولايات المتحدة
  • أكتوبر 2007 إلى ديسمبر 2007

Duties Performed:
➢ Performed Requirement Assessments, created Test plan and Test cases as per the business requirements.
➢ Developed Software Security Policy
➢ Designed Physical and environmental security
➢ Designed and Developed Access Control
➢ Identified and Analyzed Vulnerability and Threat
➢ Evaluated transactions paths, Threat zones, and Risk exposure
➢ Developed Software Quality metrics, tracing the bugs for the management.
➢ Participated and reported statuses in all test related project team meetings.
➢ Collaborated with developers as needed to isolate root cause of defects.
➢ Reviewed Business Requirements Documents and the Technical Specification.
➢ Wrote Test Cases based on the technical and functional specifications.
➢ Created Test Scenarios to validate the Business Rules.
➢ Developed and maintained Test cases, Test data, Test scenarios and other test documentations using automated bug tracking tool TestDirector.
➢ Documented, managed, and engaged in error diagnosis for system run processes on special investigation crisis team

الخلفية التعليمية

ماجستير, Computer Information Systems
  • في University of Detroit Mercy
  • أغسطس 2005

Software Quality Assurance, Software Life Cycle Documentation, Information Security, Networking, Database Design and Adminstration,

Specialties & Skills

UNIX Shell Scripting
Quality Assurance
Team Foundation Server
Oracle 9iAS
HP Data Protector
Adobe PhotoShop
Oracle Database
Unix Shell Scripting
MS Office
Software Quality
SQL- PL/SQL
Microsoft Team Foundation Server
Test Managment
HP Quality Center
Cybersecurity

اللغات

الانجليزية
متمرّس
العربية
متمرّس
الهندية
متمرّس

التدريب و الشهادات

CSM (الشهادة)
تاريخ الدورة:
November 2019
صالحة لغاية:
November 2021
ITIL v3 Foundation (الشهادة)
تاريخ الدورة:
July 2014

الهوايات

  • Traveling, writing
    I like Traveling, I have traveled almost 75 cities of the world in 11 countries including, Qatar, Bahrain, London, Rome, Seattle, New York, Kuala Lumpur and Singapore I am also a freelance writer and Journalist, I love to read and write.