vinoth purushothaman, Senior IT Security Analyst

vinoth purushothaman

Senior IT Security Analyst

Lennox International

Location
India - Chennai
Education
High school or equivalent, Cyber Forensics And Information Security
Experience
12 years, 2 Months

Share My Profile

Block User


Work Experience

Total years of experience :12 years, 2 Months

Senior IT Security Analyst at Lennox International
  • India - Chennai
  • My current job since September 2017

• Performing Vulnerability Assessment, Penetrating Testing, Web Application Security testing for the
servers and applications that are placed across Geographical Locations.
• Finding Vulnerabilities in the Network using Nexpose, Nessus, QualysGuard and Create Comprehensive
Vulnerability assessment reports that lead to do Exploitations.
• Have streamlined the vulnerability process and designed the architecture.
• Responsible to fix the security loopholes identify during testing/audit and ensure all reported issues
are addressed during post implementation review.
• Automated the Workflow between Nexpose and SCCM to automate the Patch Work Flow.
• Dedicatedly Manage Europe Infrastructure for our company and taking care of end to end Cyber
security Related issues.
• Maintaining the servers with the MS security patches and ensure 100% patch compliance using the
WSUS & SCCM.
• Securing computers from all type of cyberattack using Mcafee ePO. Responsible for pushing the
Policies and covering the DAT version for newly released threat across the Globe.
• Perform Threat Hunting, proactively collect IOC’S and feed it to SIEM, Fortinet, Barracuda to stay on
top of Cyber Threats.
• Works as IRT Member and investigate the Cyber Security Incidents and share the appropriate
workarounds for the Monitoring Team.
• Analyze the Phishing emails, understand the header pattern and identify from where it originates and
take appropriate action to prevent it.
• Part of PCI Audit and accountable for Scanning and Remediating the PCI in scope devices. Gather
appropriate evidence and share with the external auditors as and when required.
• Conduct trainings on information security controls, policies and guidelines.

IT – Analyst at Tata Consultancy Services
  • United Arab Emirates
  • May 2017 to August 2017

• Performing Vulnerability Assessment, Penetrating Testing, Web Application Security testing for the
client
• Assisting client in fixing the security loopholes identified during assessment and make sure that all
identified vulnerabilities/issues are addressed and closed before the next reporting cycle.
• Take the ownership in closing the identified vulnerabilities, providing the mitigation steps
and coordinate with the respective stakeholders to close the vulnerability.
• Answering vendor questionnaire on behalf of client by studying and understating their IT Security
Policy

Engineer at Sify Technologies Pvt. Ltd
  • March 2015 to May 2017

Offering clients, a way to stay ahead of data breach threats through security consulting services which
involves Vulnerability Assessment, Penetrating Testing, Web Application Security Testing & Security
Baseline Configuration Audit.
• Helping clients to fix the security loopholes identify during testing/audit and make sure that all
reported issues are fixed after testing
• Securing computers from all type of Virus attack using Symantec Endpoint protection and Trend Micro
Deep Security Manager.
• Patch Management - Patch verification, testing and deployment.
• Performing Periodic Port scan and Firewall policy audits to meet the Security Policy Standards
• Define Security Policies, Procedures and Guidelines for the latest technology.
• Hardening Linux & Windows servers based on CIS benchmark for better security.
• Handling security incidents like Virus attack, Hack attempt, ISMS policy violation and so on.
• Developing and implementing IT processes aligned with business objectives for effective data
management.
• Designing templates and streamlining reporting processes.
• Designing appropriate security controls & audit procedures for effective and efficient implementation
and measurement of enterprise security.
• Helped in the process of companies CERT IN Certification It's a rigorous process and consists of
vulnerability assessment identifying, exploiting and reporting vulnerabilities followed by rounds of
interview

Associate at Talent Maximus ( Sify Technologies Pvt. Ltd
  • March 2014 to March 2015

• Keeping computers up-to-date with the latest patches using Kaseya patch management software.
• Conducting periodic vulnerability assessment using Nessus against servers and other network devices
to fix any reported vulnerabilities.
• Performing penetration testing using Acunetix against websites/applications during security incidents
and as a part of SDLC to identify and address the security loop holes.
• Facing external/internal ISMS and QMS audit and work with auditors to close the gaps reported for
continuous process improvement.
• Conducting periodic firewall audit, review and approve new port opening requests as per Firewall
policy to minimize the potential risk.
• Monitoring network traffic via Snort IDS and taking necessary action against valid suspicious alert

System Engineer at Blue Lagoon Resor
  • February 2012 to January 2014

Responsible for all Network Essentials, day-to-day troubleshooting in LAN/standalone PCs and OS
Installation.
• Network and Security Administration.
• Extensive background in internetworking, LAN, and WAN technologies.

Education

High school or equivalent, Cyber Forensics And Information Security
  • at EC
  • January 2020

courses: Certified Ethical hacker

Bachelor's degree, Computer Science
  • at S.R.R Engineering CollegeAnna University
  • January 2020

courses: Certified Specialist in Vulnerability management from Qualys Guard

High school or equivalent, Cyber Forensics and Information Security
  • at Madras University
  • January 2020

.

Specialties & Skills

Vulnerability Management
Patch Management
Penetration Testing
NETWORKING
SERVERS
AUTOMATE
CONSULTING
CUSTOMER RELATIONS
DATA MANAGEMENT
FIREWALLS
INFORMATION SECURITY

Languages

English
Expert
Tamil
Expert

Training and Certifications

Certified Ethical Hacker (Certificate)
Date Attended:
November 2014