Senior Security Analyst
Current• Serving as a vital member of the Cyber Security Red Team, my responsibilities encompass conducting diverse security assessments tailored to various stakeholders.• Responsible in designing and publishing technical hardening requirements (THRs) for multiple technologies worked with technology team to ensure those security controls implemented and provide assurance and governance to L2 IRM. • Responsible to collect the security events from multiple sources into a centralized database and then converts the inherent risk into residual risk to identify the true risk and then worked with remediation team for the risk based remediation program. • Overseeing the monitoring of systems, including Intrusion Detection Systems (IDS), Security Incident and Event Management (SIEM), anti-malware tools, logs, and cyber-security technologies, to ensure swift detection and efficient triage of malicious activities.• Taking charge of identifying and responding to cyber threats through in-depth, proactive analysis of monitoring, network, application, and system event data to pinpoint potentially abnormal or anomalous system behavior.• Managing security for Active Directory domains in line with the least privilege principle, reviewing and establishing trust relationships between domains.• Defining the scope of security testing assignments and generating high-quality security test reports and documentation as necessary.• Successfully developed, reviewed, and implemented security administration guidelines and processes adhering to HIPAA and ISO-27001 standards. Achieved 100% compliance and readiness for audits, ensuring robust security measures and regulatory alignment.