Fazal Rehman, Lead Security Analyst

Fazal Rehman

Lead Security Analyst

Netsurion Technologies

Lieu
Inde - Bengaluru
Éducation
Baccalauréat, Telecommunication
Expérience
11 years, 5 Mois

Partager Mon CV

Empêcher usager


Expériences professionnelles

Total des années d'expérience :11 years, 5 Mois

Lead Security Analyst à Netsurion Technologies
  • Inde - Bengaluru
  • Je travaille ici depuis décembre 2019

- Handle escalated tickets and Perform deep-dive incident analysis

- Handle EventTracker EDR on client environment and Deep Instinct EDR

- Integrating compliance devices with Splunk and EventTracker on frequent basis.

- Working with device administrators to configure the devices to enable/send the logs

- Maintain and improve the SIEM services to identify emerging threats and meet regulatory compliance.

- Monitor and report Vulnerability Assessment scans running on client environment using SAINT

- Conducting Monthly and weekly client review calls using advanced visualization tools like PowerBI and Report Builder.

- Monitoring SIEM logs, Firewall logs, Active Directory log, IDS and IPS logs.

- Creating and working with IOC and dashboards.

- Knowledge of tools like snort, Saint, Excel, Power BI, Dax Studio, Report Builder and Freshdesk as a ticketing tool.

- Analyzing alerts using Splunk Enterprise Security and EventTracker.

- Assisting the clients and Security Analysts with product and security related issues.

Cyber Security Engineer à MST - ATI Electronics
  • Arabie Saoudite - Jeddah
  • octobre 2015 à octobre 2019

- Continuous monitoring, analyze security alerts and event information for all approved security feeds to include investigation of incidents using system logs, event correlation between IDS/IPS, firewall and other means of detection.

- To monitor the Status & connectivity of 3000+ Devices with SIEM.

- Handle escalated tickets and Perform deep-dive incident analysis

- Integrating compliance devices with Splunk on frequent basis.

- Working with device administrators to configure the devices to enable/send the logs

- Design and develop innovative methods of automatic event processing to satisfy compliance and operational requirements.

- Maintain and improve the SIEM services to identify emerging threats and meet regulatory compliance.

- Assessing the SIEM, Log Baselines implemented and the SOC Procedures, for finding the gaps.

- Conducting workshops to discuss Use cases and Log baselines with Clients

- Monitoring SIEM logs, Firewall logs, Active Directory logs

- Creating and working with IOC dashboards.

- Knowledge of Process Explorer and Carbon Black

- Analyzing alerts using Splunk Enterprise Security and Qradar

- Malware Analysis

- Email Phishing Analysis

Senior Technical Support Specialist à Convergys - India
  • Inde - Bengaluru
  • août 2007 à juin 2010

Éducation

Baccalauréat, Telecommunication
  • à A.P.S College of Engineering (VTU)
  • novembre 2009

Specialties & Skills

Cyber Security
Information Security
Malware Analysis
Security Information Event Management SIEM
CUSTOMER RELATIONS
Phishing Email Analysis
Incident Response
Information Security Tools
Communication Skills
Network Security
IDS/IPS
SOC Analyst
Deep Instinct Endpoint Security

Langues

Arabe
Moyen
Anglais
Expert
Hindi
Expert
Urdu
Expert

Formation et Diplômes

Deep Instinct Certified Engineer (Certificat)
Date de la formation:
August 2020
Incident Response (Formation)
Institut de formation:
Cybrary
Date de la formation:
September 2019
Durée:
6 heures
Information Security (Formation)
Institut de formation:
Cybrary
Date de la formation:
September 2019
Durée:
20 heures
Splunk Fundamentals (Formation)
Institut de formation:
Splunk
Date de la formation:
September 2019
Durée:
12 heures
CompTIA Security+ (Formation)
Institut de formation:
Udemy
Date de la formation:
August 2019
Durée:
20 heures
CCNA (Certificat)
Date de la formation:
July 2009
Valide jusqu'à:
July 2012

Loisirs

  • Travelling and Spending time with my family.