Hetram Yadav Email and Phone Number
Cyber Security professional having 9 years of work experience in Telecom, e-commerce, Banking and FinTech industry. Areas of work includes:#Vulnerability Management#Security Analysis and Incident Handling#SIEM Engineering (Splunk, Qradar, McAfee) - Administration , Integration & Content Development#Digital Forensics#IAM#Cloud Security (AWS/GCP/Azure)#DLPCertifications: - CHFI - CPISI - Splunk Enterprise Security Certified Admin (SPLK-3001)- Oracle Cloud Infrastructure Foundation Associate- Aviatrix Certified Multi Cloud Associate- Azure Fundamentals (AZ-900)Skills : Syslog, Syslog-ng, Log Analysis, Log ParsingLinux administrationOS - Unix, Windows, Kali,Mac Programming Languages - Python Configuration Management - AnsibleVersion management - Git (Bitbucket repository )Network & Security - Wireshark, Acunetix, Nmap, BurpsuiteForensic - FTK Imager, Encase PE Studio, autopsy, DD,GuyMager ## This is my personal account so whatever i write/comment/share does not reflect my organization's views ##
-
Cloud Security ResearcherSnowbit By Coralogix Oct 2023 - PresentTel Aviv, Israel, Il -
Sr. Manager- Cyber SecurityOaknorth Bank Apr 2023 - Oct 2023London, England, GbIncident Detection & ResponseKey Projects/Achievements- Transition from MSSP to in house SOC team- Implementation of EDR solution (Sentinelone)- Threat hunting initiatives- Creating playbooks for different incident scenarios/use cases- Improving Microsoft Cloud Security Posture by applying MS Defender controls- Implementing RBA- SOC Maturity wrt NIST/MITRE- Implementing SOC alerting using slack/Opsgenie for 24*7 coverage- Implementation of DMARC solution(ProDmarc) to move the policy to reject mode- Automating the Cloud Security Incident Response -
Manager - Cyber SecurityOaknorth Bank Aug 2021 - May 2023London, England, GbIncident Handling, SOC,Threat Hunting, Vulnerability Management, SIEM,Threat Intel,Enterprise Security Tools, Security Awareness, Zero Trust,MS Defender,SentinelOne,CrowdstrikeKey Projects/Achievements- Achieved 100% security agents compliance coverage-Automating the Vulnerability reporting within splunk helped to reduce the manual efforts of creating reports and timely reporting of the new and CISA vulnerabilities as per defined policy - Implementing the Security Awareness & Phishing auto response tool (Knowbe4/PhishER)- Improved the user awareness by executing monthly Security Awareness Campaigns and assigning the trainings to the users- Implementing DLP policies for endpoints, email and web channels. - Migrating the email gateway- Started Vulnerability Management Program and ensured timely closure of CISA and Non CISA findings -Creating visibility around WAF,RDS,,VPC logs to detect any anomaly-Implementationf zero trust artchitecture with Zscaler(ZIA,ZPA,F/W, Posture Mgmt,DLP) with support of netwok team- Patching splunk servers for known vulnerabilities -
Senior Security EngineerFis Oct 2019 - Aug 2021Jacksonville, Fl, UsDetection Engineering - Develop a comprehensive strategy for effective detections of malicious activity - Current monitoring and detection capabilities to identify areas for improvement - Checking Detection Effectiveness- Tuning, Validation - Collaboration with SOC team to reduce the false positives and enhancing security monitoring coverage - Collaboration with Threat Intel team to discuss the emerging threats and creating detections based on their research and findingsQradar - Managing Qradar admin activities- Content Development and MITRE mapping of use cases - Providing On call SIEM support to SOC for any critical issues - Participation in IDRBT Cyber Drills SIEM Migration from Qradar to Splunk- Creating searches, reports and dashboards - Migrating log sources and use cases from qradar to splunk - CIM normalization of the data - Admin activities - Managing index, Indexers, Data models, SH clusters, Cluster master and Deployment Server - Creating custom TAs for parsing and normalization of data- Providing Knowledge Transfer to team personnel on Splunk solutions - Managing syslog-ng server and creating filters for syslog traffic to write the logs to disk- Implementing RBAC to Splunk -
Executive-It SecurityBookmyshow Jan 2018 - Sep 2019Roles and Responsibilities includes-- SIEM Implementation (Splunk) - Architecting, Integrations, Content Development & Documentation - Cloud Security (AWS/GCP)- Identity and Access Management for servers (using ansible/AD), VPN and Cloud (AWS,GCP)- Conducting PoCs and evaluating security products- Monitoring security tools - Sophos AV, Fortigate F/W, Bitsight and FIM(ELK Wazuh) - DLP Implementation(Forcepoint)- Patching servers for vulnerabilities- Participating internal and external PCI DSS audits for SIEM -
Assistant Manager- It SecurityJio Oct 2016 - Dec 2017Navi Mumbai, Maharashtra, InRole :SIEM Administration & Integration Responsibilities: - Reporting SIEM compliance status to mangement- Managing and troubleshooting SIEM ESM(McAfee) for Jio and Jio Payments Bank - Installation, Configuration, Integration & troubleshooting of SIEM solutions and its various components- Daily SIEM helath monitoring - Diagnosis of system notifications regarding performance problems or system failures (e.g. events dropping, HA system failed, IO errors- Working with support to resolve the platform issues - Device Integration (AWS, Telecom, Network, Servers and Security tools)- Log Troubleshooting- Parsing unrecognized log format- Writing Filters to drop the unwanted logs - Architecture review of applications to undrstand the logging requirements and use cases scenarios- Facing ISO audits for logs storage and availability -
Security Analyst L2Jio Jan 2016 - Sep 2016Navi Mumbai, Maharashtra, In- Security alerts monitoring - Detecting security incidents- Coordinating with SIEM team for tuning of rules, dashboards and reports- Taking ownership of the alerts from creating tickets to closure of the incident -
Vulnerability ManagementJio Jul 2015 - Dec 2015Navi Mumbai, Maharashtra, In- Conducting Vulnerability Assessment for all systems in the network using Nessus - Ensuring compliance to minimum baseline security standards for endpoints, network, servers and datbases- Hardening and patching of OS(Linux,Windows)- Analyze the report and suggest workaround for issues -
Cyber Security ResearcherIndian Infosec Consortium Jan 2015 - May 2015Developed a tool named Remote DNS Monitoring and Mass DNS Spoofing with Phishing.Finding Vulnerabilities in wireless networksDecoding the hidden messages -
Cyber CrimeGurgaon Police Jun 2014 - Jun 20141 Month Internship in Gurgaon Cyber Police Station on cyber crime handling. -Case study of financial frauds and social media crimes -How forensics team works to retrieve the data -CDR Analysis
Hetram Yadav Skills
Hetram Yadav Education Details
-
Sardar Patel University Of Police, Security And Criminal JusticeCyber Security -
Iet AlwarComputer Science -
Sksss, Lachhmangarh, Alwar(Raj.)Maths
Frequently Asked Questions about Hetram Yadav
What company does Hetram Yadav work for?
Hetram Yadav works for Snowbit By Coralogix
What is Hetram Yadav's role at the current company?
Hetram Yadav's current role is Cloud Security Researcher || Cyber Defense.
What schools did Hetram Yadav attend?
Hetram Yadav attended Sardar Patel University Of Police, Security And Criminal Justice, Iet Alwar, Sksss, Lachhmangarh, Alwar(Raj.).
What skills is Hetram Yadav known for?
Hetram Yadav has skills like Information Security, Ceh, Linux, Security Analysis, Dns, Networking, Penetration Testing, Computer Security, Security Operations Center, Vulnerability Management, Programming, Microsoft Office.
Free Chrome Extension
Find emails, phones & company data instantly
Aero Online
Your AI prospecting assistant
Select data to include:
0 records × $0.02 per record
Download 750 million emails and 100 million phone numbers
Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.
Start your free trial