As an experienced IT professional with a focus on Cyber security, I bring 8 years of expertise to the table. My skills are centered around Splunk and Splunk ES, as well as core SOC services like Packet capture and IDS/IPS systems. I have a passion for working on projects without formal training, allowing me to pick up new skills throughout the process. My background as a web developer has given me a particular interest in WEB application's security. I have studied SANS 542, SANS 503, and SANS 504 topics, and am always looking to expand my knowledge in the field.
-
Cyber Security EngineerErnyka GroupTehran, Ir -
Cyber Security EngineerErnyka Group Apr 2021 - PresentTehran, Tehran Province, IranInstall, configure, and maintain various components of Splunk enterprise, like forwarders (universal and heavy), search heads, indexer, deployment manager, license master etc. on RHEL systems on cloud environmentAdministering Splunk and Splunk App for Enterprise Security (ES) log management, ingestion, normalization.Splunk data integrations with business-critical enterprise applications and systems.Develop specialized Splunk Security and Compliance applications, add-ons, data models, dashboards, content using Splunk SPL.Develop custom risk scoring to weed out white noise and only show actionable incidents to SOC AnalystsDevelop Dashboards for Security Analysts with detailed drill down capability for incident response.Adopt a use case driven mindset to gather requirements, conduct analysis, and develop/deploy threat detection content and investigation workflows for security operationsDevelop triage workflows for analysts to assign and track ongoing investigations.Knowledge and implemnt of SIEM technologies including SOAR.implemnt nids(snort v3) and integrate with siem (snort v3) -
Network ConsultantDibariis Textiles Sep 2017 - PresentTehran, Tehran Province, IranSince 2017 , I have been working as a consultant for information technology and part - time with the Dibariss textile company .The design of the network infrastructure and consulting in the use of new devices within the organization for more efficiency.The textile company has operated in the field of yarn production and includes 3 offices and a factory.1-VPN Server2-Configure IIS3-Configure FW Fortigate Rule & Kerio Control UTM4-Configure Vcenter & Manage VM5-Define Policy In Eset Smart Security v8.0 & Kaspersky Antivirus v10.06-Microsft Services Based on Windows Server 2012 R27-Citrix Virtual Apps (formerly XenApp) & Tsplus
-
Cyber Security SpecialistArman Economic Group Jul 2019 - Apr 2021Tehran, Tehran Province, IranArman Economic Leaders Group works in the field of providing IT technology for Export Development Bank .Since 2019, I have worked in the SOC section.I first met with banking services and began operating at the same time as SOC.With regard to security periods on the SOC of knowledge, I have improved my knowledge and made my work more efficient with regard to existing equipment within the bank as well as available access, and I can find a better understanding of the performance of the machines in different layers.Descriptions of tribes and items done in the section:.Works with Splunk SIEM infrastructure. Monitore events, response to incidents and reporte finding. Analyse security event data from the network (IDS, SIEM). proactively look for suspicious anomalous activity based on data alerts or data outputs from various toolsets and SIEM platform.Perform network traffic analysis using raw packet data, network flow, Intrusion Detection Systems (IDS), and custom sensor output from communication networks.. Work with protocols at layers 2 and higher in the OSI model, to include ARP, TCP, UDP, ICMP, DNS, Telnet, SSH, HTTP, SSL, SNMP, SMTP, and other common protocols that use the well-known ports.. Providing shift handover reports for documentation and knowledge transfer to subsequent analysts on duty. Operate As 24 * 7 * 365 responsible for responding to security incidentsIt should be mentioned that I have been teaching Sans 504 to the work department for 20 hoursIn centralized, I am mostly acquainted with the following items during the working period.1-Fortigate2-FortiAnalyzer3-Fortiweb4-Splunk5-Sophos6-Symantec Messaging Gateway
Ehsan Kiani Education Details
-
Information Technology
Frequently Asked Questions about Ehsan Kiani
What company does Ehsan Kiani work for?
Ehsan Kiani works for Ernyka Group
What is Ehsan Kiani's role at the current company?
Ehsan Kiani's current role is Cyber Security Engineer.
What schools did Ehsan Kiani attend?
Ehsan Kiani attended Payame Noor University.
Not the Ehsan Kiani you were looking for?
-
-
-
Ehsan Kiani
M.Sc. Graduated Student | Seeking Ph.D. Position In Theoretical PhysicsTehran Province, Iran -
Free Chrome Extension
Find emails, phones & company data instantly
Aero Online
Your AI prospecting assistant
Select data to include:
0 records × $0.02 per record
Download 750 million emails and 100 million phone numbers
Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.
Start your free trial