I'm Cyber Security Engineer and conducts advanced penetration testing to identify vulnerabilities in computer systems and web applications, which could be penetrated by malicious intruders. Also, I have ability to analyze risk assessment, Incident response management plan, make sure of compliance and conduct audit. I am hard working, self-motivated, professional, determined, dynamic personality and well-disciplined and love to learn more advanced technologies.
• Develop Information governance policies and procedures as per ISO 27001 standard. • Conduct detailed Risk assessment as per ISO 27001 and ISA 62443 industry standards. • Conduct vulnerability assessment of network infrastructure and applications. . • Perform incident management and logs management on SIEM products including Qradar, Manage Egnine products. • Perform Gap analysis and create risk register. • Plan and conduct Business Contentious Plan & Management. • Planning, implementing, managing, monitoring, security measures for the protection of the organization’s data, systems, and networks. • Perform Penetration testing of web servers, web applications and networking devices using Nessus, OpenVAS, NMAP, Metasploit, OWASP Zap, Burp Suite and much more. • Manage offenses and make investigate incidents. • Create procedure, playbooks, and guideline on incident management, risk management and vulnerability management. • Conduct cyber security awareness sessions / trainings. • Hands on experience of Manage Engine products including Manageengine OPM, Desktop Central patch management solution and AD Audit for log analyzer. • Hand on experience of data protection and information classification, data breaching. • Knowledge of disaster recovery, digital forensic tools, technologies and methods. • Monitor and manage OT network & ICS network. • Experience with ISA 62443 standard (IC-33,IC-34,IC-37).
• Find vulnerabilities of web application (PHP, CMS, WordPress, JavaScript etc)
• Perform security assessment and Penetration testing manually and through tools.
• Perform Penetration testing on web websites through OWASP ZAP, Nessus, OpenVAS, Metasploit, NMAP, IBM Application Scanner, MySqlD, WPScan and much more.
• Perform penetration testing on physical devices like routers, switches, firewalls and servers.
• Create documents of vulnerabilities and provide remediation and solution.
• Manage Linux web servers (Apache, NGINX, Drupal, Sphinx etc).
• Manage Database backup.
• Configure and manage Apcahe, NGINX servers, CMS, SearchD application on web servers.
• Configure and manage linux based email server and SharePoint.
• Manage OpenVZ and KVM switch.
Manage GPON Network
Provide Customer Support at Level II and III
Configure, Manage and Troubleshoot the Cisco Switches, Routers
Manage and Troubleshoot Active Directory, Exchange Server
Monitoring the Network Issue from NMS
• Configure, Manage, and Troubleshoot network infrastructure (Routers, Switches)
• Configure, manage and Troubleshoot OSPF and BGP
• Manage and Troubleshoot MRTG, EMCO Tool
• Windows Server Maintenance(Installation, Troubleshooting)
• Provide Support troubleshooting technical problems
• Remote support of on-site engineers and end users/customers during installation
• Wireless Equipment Configuration, LOS, Support(Ubiquity Wireless Networking products)
Internship in MCB House as a Security Engineer