Cyber Security Analyst
Current- Conducting log analysis and SIEM alerts on Splunk ES solutions to respond to the common types of attacks such as DDoS, credentials stuffing, phishing/spam, brute-force.
- Providing recommendations to the technical teams via the Jira ticketing systems.
- Monitoring and analyzing endpoint security through CrowdStrike to counter well knownattacks on workstations such as malware, pup, trojan.
- Identifying security anomalies for investigation and remediation.
- Performing analysis to determine the legitimacy of files, domains and emails usingonline resources such as VirusTotal, Any Run, Shodan and MX Toolbox, Joe Sandbox,and AbuseIPDB.
- Examining phishing emails on Proofpoint, perform analysis.