Technical Lead
Current• Configure and manage network security Next Generation Firewall (Palo Alto, Checkpoint, Cisco), Firewall (WAF), IPS, IDS, NAC, Hybrid Connections (Point-to-site VPN, Site-to-site VPN, etc.), Firewall Policy and Rulebase review and optimization • Perform Vulnerability scanning (Windows, Linux, Network Devices), analyze risks, prioritize and take steps to remediate the vulnerabilities and security misconfigurations, generate reports • Vulnerability Scanning for applications: SAST, SCA, DAST (Checkmarx, BurpSuite, OWASP ZAP) • Configuration and maintenance of Storage and Fileshare Security (DLP) • Configuration and maintenance of Web Security (Proxy Server, DLP) • Configuration and maintenance of Email Security (SPF, DKIM, DMARC, DLP, Anti-Phishing) • Vulnerability scanning and managing patching of servers (Nessus and Qualys) and reporting • Configuration of SIEM (Trellix Nitro) and incident response automation/SOAR: log ingestion, use cases • Monitoring and handling of security incidents (Alerts from SIEM, IPS, IDS, DLP) • Develop and implement security policies and standards for Cloud Solutions (Compute, Storage, Network on Azure, AWS) • Implement and maintain endpoint security (Anti-malware, Endpoint Protection, Host Firewall/IPS, EDR/XDR, DLP)