Cyber Security Consultant
Current● Engage in a variety of offensive penetration testing assessments including system/network (internal and external), web application, red and purple team, physical, social engineering, including the development and execution of phishing campaigns.● Hands on experience in penetration testing of Windows and Linux environments, Active Directory, network monitoring, TCP/IP networks, and vulnerability and threat management tools (including network based scanners).● Hands on experience in MITRE ATT&CK framework/detailed knowledge of global cyber threats, threat actors, and the tactics, techniques, and procedures (TTP’s) used by cyber adversaries, specifically those targeting the financial services sector.● Establish and implement hardening security concepts and techniques for Unix/Windows/Linux. ● Coordinating and conducting multiple cloud security audits and identifying, reviewing, prioritizing vulnerabilities and remediation measures based on Azure Security Benchmark and NIST standards.● Supporting- in SOC/SIEM vendor selection processes and in the creation of strategic concepts for SOC/SIEM operating models.● Perform external, internal, physical, web, SOC, and malware assessments including evaluation and derivation of measures to improve detection capabilities.● Collaborate with other IT-Security teams to implement security best practices and interact with clients on high and technical levels to discuss findings and resolutions.● Performed Triage, Incident response, Vulnerability management, Threat intelligence and Cyber threat intelligence analysis.● Monitored, identified, investigated, and responded to threats in multi-cloud environments using tools Microsoft Sentinel, Microsoft Defender for the cloud, Microsoft 365 Defender and Third-party security solutions.● Worked closely with business stakeholders, architects, identity administrators, Azure administrators, and endpoint administrators to secure IT systems for the enterprise.