Information Cyber Security Analyst
Current• Worked on Threat Platforms providing Security information and recommendations on latest emerging threats & Vulnerabilities. Reported on customer data from Customer security appliances and SIEM to identify risks on AWS & Azure cloud-based accounts.• Design and develop integration and automation between the organization’s cyber security departmental tooling and software suites that maintain platforms.• Customize dashboard creation on SIEM for UBA, cisco, Checkpoint and Palo alto firewalls, switches, routers, legacy servers in Splunk, QRadar, MSS• Onboard devices into SIEM (Splunk and QRadar) for log monitoring.• Leverage Skybox Research Lab's vulnerability and threat intelligence, and automatically correlate it to your unique environment. • With SKYBOX we have modified network modeling and advanced simulations, pinpoint exposed vulnerabilities and other attack vectors. • Integrated SKYBOX context to prioritize vulnerabilities in terms of actual risk and respond to threats with accuracy and efficiency.• Did assessment on the most comprehensive list of firewall vendors, complex rulesets, even virtual and cloud-based firewalls. • Did evaluation on skybox with proven scalability in 1,500 ACL firewall rules sets and within Firewall Assurance keeps rules optimized and ensures changes don’t introduce new risk.• Worked on SKYHIGH CASB solution for monitoring cloud traffic.• Integrated SKYBOX to multiple SIEM automations.• Functioned as primary focal point for customer regarding vulnerability scanning (Qualys), reviewing results, organizing findings into spreadsheet, facilitating recurring calls to disseminate and prioritize findings, providing recommendations to mitigate, and continuing to follow-up.• Create NIST 800-53,800-53A,37 running compliance-based access controls.• Create and modify custom cyber security tools and engage in new cyber security tool development for internal cyber security departmental discretion and use.