Dedicated Information Security resource having almost 5 years of experience in SOC deployment and as an incident responder. I have experience in the deployment and configuration of multiple SOC-related tools, administration of SIEM Solutions, SOAR Deployment & Configuration, Threat Intelligence Platform deployments, Log Management, Case Management server level configurations & VA/PT of telecom sector of Pakistan. My prime responsibilities include integrating critical network-level assets and ensuring communication for further analysis, devising and strategizing technical solutions, conducting network application VA/PT, and implementing PCI DSS compliance requirements and NIST Framework. In my past professional career, I built a 24/7 SOC (SIEM, TIP and SOAR) in telecom sector and worked as a security analyst. Now, I am building nTSOC for the public sector in Pakistan, a regulatory authority for more than 20 telecommunication operators. I am looking for a better opportunity in the Middle East to work in a multicultural environment and benefit the organization from my information security experience.
Deployment of Threat Intelligence platform for National SOC.
Deployment and Configuration of SOAR platform and customize the playbooks and workflow to reduce dwell time.
Prepared an SOP document for all SOC-related operations (Administrator Tasks, Monitoring guidelines and KPIs).
Deployment and configuration of SIEM in PTA.
Integration of Layer 2 and Layer 3 devices with SIEM.
Prepare advisories from Commercial and open sources Threat Intelligence platform as a proactive approach to preventing threats for PTA.
Detect Incidents by monitoring the SIEM console, Rules, Reports and Dashboards.
Integration of firewall, antivirus and email security gateway.
Report the incident to the concerned team along with the SOC team.
Document all actions are taken as part of the incident investigation.
Event parsing and mapping for Exchange, DC and Firewall.
Rule creation and fine running related to critical devices.
Customized monthly SIEM report creation log source-wise.
Configuration, Manage LAN up-to 100 nodes & Providing Tier 1 & 2 Support related Hardware, Software & Networking faults.
Provide assist to Network Administrator and System Administrator for Clients Fault tolerance, Oracle Client/Servers.
Installing and configuring appropriate hardware and software as required.
Facilitate all end user in their problems domains / exchange servers.
Maintain all accurate inventories of technology hardware & software.
Perform helpdesk tasks, including problem solving and providing operational support to clients on the departmental LAN and WAN.