shameer Ichanangattu kottiliyil, Senior Cyber Security CSOC Specialist

shameer Ichanangattu kottiliyil

Senior Cyber Security CSOC Specialist

ENEC

البلد
الإمارات العربية المتحدة - أبو ظبي
التعليم
الثانوية العامة أو ما يعادلها, Electronics and Communication Engineering
الخبرة
17 years, 0 أشهر

مشاركة سيرتي الذاتية

حظر المستخدم


الخبرة العملية

مجموع سنوات الخبرة :17 years, 0 أشهر

Senior Cyber Security CSOC Specialist في ENEC
  • الإمارات العربية المتحدة - أبو ظبي
  • أشغل هذه الوظيفة منذ أغسطس 2020

* Security Monitoring of OT & IT networks
* Review log baseline on end devices/applications
*Develop use cases for custom applications
* Perform RCA for ADDA reported security incidents
* Threat Hunting
*Prepare /Review SOP, IRP etc documents
* Develop playbooks for different types of security alerts

SOC Lead في ADNOC Offshore –Abu Dhabi
  • يناير 2018 إلى أغسطس 2020

SOC Lead / IT Security Compliance team
Company Profile: A leading state-owned oil company of the UAE and worked under pay roll
of Al Rostamani Communications LLC (Earlier via Alpha Data and Paramount Computer
Systems.)
Contribution:-
• Managed SOC team which includes preparing shift roaster, review shift hand over
document, review daily, weekly, monthly compliance reports etc
• Worked in cyber security/Security Incident Response team.
• Knowledge of threat areas and common attack vectors (malware, phishing, APT,
technology attack etc.).
• Review log baseline to enable auditing on end devices/applications
• Providing seminars/training to SOC team.
• Provide incident investigation report as per Security Incident Management Process
/ Guidelines
• Perform Root cause analysis (RCA) for the incidents and update the knowledge
management.
• Configure real time cyber security alerts for significant incidents/corporate policy
violation; develop custom dashboards for the effective monitoring and analysis of
the security logs.
• Configure security alert/use cases as per NESA (National Electronic Security
Authority).
• Review SLA report of security incident alerts/tickets.
• Prepare/review documents like SOC SOP, Security incident handling and reporting
, Security Incident response etc
3.Etisalat

Security Technical Expert
  • مارس 2013 إلى يناير 2018

Worked for Etisalat under pay roll of Technologia Etisalat software
Solutions which is an Etisalat Company.
Contribution:-
• Prepare log baseline to enable auditing on end devices/applications
• Support to integrate to new log sources like security devices, servers, applications
etc to SIEM tool for security event monitoring and security alerting/reporting.
• Review/health check of 5000+ log sources, SIEM manager, database, agents etc
• Managing 8 SOC team members which includes preparing shift roaster, review shift
hand over document, review daily, weekly, monthly reports etc
• Configure real time security alerts for significant incidents/corporate policy
violation, develop custom dashboards for the effective monitoring and analysis of
the security logs.
• Configure aggregation, filter-out unwanted/noisy events etc in agent level
• Configure security alert/use cases as per NESA (National Electronic Security
Authority).
• Review SLA report of security incident alerts/tickets.
• Prepare/review documents like SOC SOP, Security incident handling and reporting
, Security Incident response etc
• Detect and initiate take down process for phishing sites targeting Etisalat.
• Managing IPS devices, public sftp server etc

Senior security Engineer في Mobily Infotech
  • الهند
  • يوليو 2010 إلى مارس 2013

Company Profile : Mobily is the trade name of Saudi Arabia's second largest
Telecommunications Company, Etihad-Etisalat consortium. Mobily Infotech is giving
Offshore Support to Saudi Mobily from Bangalore.
Contribution :-
• Installation of Agents for new assets and maintenance of existing asset agents.
• Configure use cases/real time security alerts for security events.
• Configure dashboards, data monitor, active channel etc for SOC monitoring.
• Prepare custom reports, adhoc reports, filter, active channels etc.
• Prepare daily, weekly, monthly and trend reports.
• Ensuring SLA adherence, follow up with the asset owners and ensure that the call
raised is closed on time. Raise incident call based on the analysis of daily reports,
real time alerts and monitoring dashboards

Security Analyst في Paladion Networks
  • الهند
  • أبريل 2007 إلى يوليو 2010

Company Profile: Paladion Networks (ISO: 27001 certified) is a global full service managed
security provider committed to delivering technology solutions to ensure
impenetrable security to 400+ clients in 15 countries across Asia, US and Europe

الخلفية التعليمية

الثانوية العامة أو ما يعادلها, Electronics and Communication Engineering
  • في College Of Engineering
  • يناير 2022

(

الثانوية العامة أو ما يعادلها, Electronics and Communication Engineering
  • في Cochin University
  • يناير 2022

Specialties & Skills

Network Security
Vulnerability Assessment
Information Security Management
Firewall Management
Penetration Testing
REAL TIME
AUDITING
REPORTS
CUSTOMER RELATIONS
DATABASE ADMINISTRATION

اللغات

الانجليزية
متمرّس
الهندية
متمرّس