Naveed Anjum Sadiq, L3 SOC Analyst

Naveed Anjum Sadiq

L3 SOC Analyst

IBM - Saudi Arabia

Location
Saudi Arabia - Riyadh
Education
Master's degree, Information Security
Experience
15 years, 5 Months

Share My Profile

Block User


Work Experience

Total years of experience :15 years, 5 Months

L3 SOC Analyst at IBM - Saudi Arabia
  • Saudi Arabia - Jubail
  • My current job since November 2017

• Incident handling and response
• Identifying key areas to improve SOC monitoring and processes
• Planning and implementing changes to improve SOC operations
• Providing management with reports and devising plan to work on improvements
• Preparing security incident reports and recommending actions
• Performing threat hunting to identify any potential advance threats in the environment
• Assisting in assessing different security solution against organizational requirements

SOC Analyst / IS Specialist at Advance Electronics Company
  • Saudi Arabia - Riyadh
  • May 2016 to November 2017

• Created and maintained Incident Response process as per the guidelines of NIST.
• Identifying anomalies and policy violations by monitoring and audit.
• Planning and implementing proactive changes to improve security posture of organization with respect to emerging threats.
• Protecting system and information by defining policies, procedures and guidelines.
• Developing plans for risk mitigation by analyzing and assessing potential security risks.
• Evaluating security tools and technologies and providing feedback to management.
• Professional communication and documentation of processes and procedures.

Team Lead - Information Security at Trillium Information Security Systems
  • Pakistan - Rawalpindi
  • March 2013 to April 2016

• Leading technical activities for different security solutions in order to meet client’s requirement.
• Primarily looking after the pre-sale, post-sale and R&D activities for:
o IBM QRadar SIEM
o IBM XGS and SiteProtector
o IBM Guardium DAM
o IBM Privileged Identity Management
o Avecto Defendpoint Privileged Management
o CA Strong Authentication
o CA Shared Account Management
• Carrying out PoCs for different solutions in order to demonstrate solution of client’s problems.
• Arranging and managing pre-sales and post-sale activities
• Creating solution documents for customers
• Planning and Managing technical projects
• Performing Research and Development
• Managing technical resources

Network/System Support Engineer at Sui Northern Gas Pipelines Ltd
  • Pakistan - Islamabad
  • January 2009 to March 2013

• Diagnosing application errors and network connectivity problems
• Management of various services like DNS, Domain Controllers and Active Directory.
• Managing LAN, WAN and VPN
• Installation, configuration & administration of Windows Server 2003/2008. Installation and troubleshooting Windows Operating System, Servers.
• Installation, configuration & administration of Linux OS, Maintain & Manage various services running in Linux system which include proxy server (squid) and DHCP.
• Maintaining inventory of assets and keeping record of asset issuance/retrieval, theft/sabotage of assets etc.
• Creating Daily, Weekly and Monthly activity reports and incident reports etc.
• Performed daily, weekly and monthly back up of data
• Developing schedules, resource allocation plans, and system test plans
• Assisted users, and gave training for installed systems and programs including Oracle Financial and CC&B
• Attended technical conferences and seminars to stay informed about new product developments

Education

Master's degree, Information Security
  • at Military College of Signals - National University of Science and Technology
  • September 2014

Following subjects were part of this course. Advance Network and Web Security Cryptography Crypt-analysis Computer Security Information Security Management Standards Applied Mathematics Information Theory and Coding

Specialties & Skills

Problem Solving
Incident Management
Information Security Management
Team Management
Information Security Policies, Procedures and Guidelines
Privileged Identity Management
Multi Factor Authentication
Incident Handling
Security Information and Event Management Systems (SIEM)
Database Activity Monitoring
Infrastructure Security

Languages

English
Expert
Urdu
Native Speaker
Punjabi
Native Speaker

Memberships

ISC2
  • CISSP
  • June 2017
ISACA
  • NA
  • June 2017
EC-Council
  • C|EH
  • June 2013

Training and Certifications

Certified Ethical Hacker (CEH) (Certificate)
Date Attended:
June 2013
Valid Until:
June 2019
IBM Certified Deployment Professional (Security QRadar SIEM) (Certificate)
Date Attended:
December 2014
Valid Until:
January 9999
IBM Certified Deployment Professional (XGS – Next Generation IPS) (Certificate)
Date Attended:
December 2015
Valid Until:
January 9999
Certified Information Systems Security Professional (Certificate)
Date Attended:
June 2017
Valid Until:
June 2020
Five Days Advance Training on IBM QRadar (Training)
Training Institute:
IBM at Dubai Knowledge Village
Date Attended:
April 2014
Duration:
40 hours
Four Days Technical Enablement Session on IBM XGS (Training)
Training Institute:
IBM at Dubai Knowledge Village
Date Attended:
May 2014
Duration:
32 hours