概要

Network and Security: IBM Qradar, Carbonblack EDR, LogRhythm, Trend Micro (Deep Security, Officescan XG, Application Control, Mobile Security, Scan Mail for Exchange, IMSVA, Endpoint Encryption, Control Manager, TM Vulnerability), Kaspersky Security Center,  Syslog,  Symantec Endpoint Security, deploy and Configuration. Fortinet deployment and configuration.


System Administration: Windows Server 2003, Windows Server 2008 R1/R2, Windows Server 2012 R1/R2, Active Directory, Microsoft Hyper-V 2008 R2 & 2012, Web Server (IIS 6/7/8). DHCP server configuration, Windows Backups, Deployment of Remote Desktop Services, Windows Deployment Services, DNS Configurations. Experience in SAN/NAS Storage administration and in Backup Solution (Veeam)


Virtualization: Install, Configure, and Manage VMware ESXi Server, VMware Horizon Networking and Storage, Create, configure, Live Migration, manage, and monitor virtual machines and virtual appliances. Deploy Clone. Manage user access to the virtual infrastructure. Use vCenter Server to monitor resource usage, vMotion, High Availability, and Fault Tolerances. Citrix XenApp/ XenDesktop Administration, Configuration of Netscaler Gateway, Machine Catalog and PVS

项目

Kaspersky Security Center
Trend Micro

工作经历

公司标识
SOC L2 Analyst
Trillium-Information Security Systems (Pvt) Ltd
Jun 2021 - 代表 | Islamabad, Pakistan

 Responsible for conducting information security investigations as a result of security incidents identified by the SOC-Analyst L1. And Use Virtual Security Operation Center for further investigation • Manage Cyber Threat Advisories and take effective follow-up with relevant technology team• Follow Incident Management lifecycle process including identification of security incidents, their root cause analysis and provide recommendations for preventing future occurrences• Act as a point of escalation for SOC-Analyst L1 in support of information• Mentor security analysts regarding risk management, information security controls, incident analysis, incident response, SIEM monitoring, and other operational tasks in support of technologies managed by the SOC• Participate in evaluating, recommending, implementing, and troubleshooting security solutions and evaluating IT security of the new IT Infrastructure systems• Provide recommendations in tuning and optimization of SIEM• Other responsibilities and additional duties as assigned by the security management Team• Also work on Carbon Black EDR

公司标识
SOC Analyst
COMMTEL
Aug 2020 - Jun 2021 | Islamabad, Pakistan

• Deployment & Configuration of QRadar including integration with log sources, parser writing, customization of rules and dashboards and reports
• Implementation, configuration, and Managing IBM QRadar Security Information & Event Management (SIEM)
• Implementing customer-specific use cases and fine‐tuning offenses and rules
• Building the use cases for every Foreseeable Security Threat
• Experience in SOC operational activities such as network traffic monitoring, real-time security event, and log monitoring, offense analysis, and reporting
• Incident Triage of QRadar SIEM – Filter out false positives & watch for potential intrusions
• Monitoring network traffic for security events and perform triage analysis to identify security incidents.

公司标识
Principal Security Engineer
Digit Labs
Jan 2019 - Jul 2020 | Islamabad, Pakistan

- Implementation, configuration, and Administration of LogRhythm Security Information & Event Management (SIEM) Solution and Trend Micro- Act as a point of escalation for other Engineers (Associate Engineer) and provide guidance.- Perform analysis on logs produced by network devices utilized such as firewalls, content filtering, Syslog from various sources/devices, assorted Intrusion Detection capabilities, substantiating vulnerability scanner results, directory services, DHCP logs, and Secure Email Gateway logs.-Integration of supported and non-supported log sources.- Regex writing/parsing for custom reports and dashboards.-Identify and design use cases that address specific enterprise needs.-Maintain SIEM workflow infrastructure.-Trend Micro, Kaspersky, Remote Administration (putty, SSH), Fortinet firewall, Autopsy, TCPdump, Windows and Linus OS, • Support activity and progress reports ensuring issues are properly escalated and resolved to maintain delivery schedule, project cost, and desired results-Trend Micro ( Deep Security, ApexOne, Vulnerability, Deep Discovery Inspector, Mobile Security, and IMSVA), Firewall Logs, Remote Administration (VNC, Putty, SSH), Fortinet Firewall, Linux and Windows OS, Wireshark, TCPdump, and various tools for Malware and Packet analysis

公司标识
Technical Consultant
Premier Star Technology
Jan 2017 - Jan 2019 | Islamabad, Pakistan


-Online & Onsite Support for Trend Micro, Kaspersky, and Carbon Black Fortinet, etc).- Experience with endpoint security solutions for application whitelisting; application blocking, HIPS; antivirus, DLP- Responsible for planning and coordinating all the activities required to perform, monitor, and report on the Incident process- Experience in security scanning, vulnerability management- Monitor the incidents to ensure that the Service Level Agreement are respected- Experience managing Incident Management or other large command center organizations- Participate in training, educational opportunities, and personal network with other professionals.- Existing customers’ quarterly health check-ups (online). Any other task assigned by the management- Could work on-call hours that would include 24/7 coverage per the SOPs- Good collaboration skills, confident and structured when dealing with conflict

公司标识
System and VMware Administrator
NetHome
Aug 2016 - Dec 2016 | Peshawar, Pakistan


-Experience in Installation of all types of Microsoft Windows Operating Systems (2008/2012 Servers), Application Software under multi-platform environments, deployment & monitoring Servers.--Experience with Active Directory Administration, Disaster Recovery Planning, Remote Access, Office Products, Routers, Switches, and Backup devices.-Experience with Virtualization technologies like Installing, Configuring, and Administering VMware ESX/ESXi. Created and managed VMs (Virtual Server) and also involved in the maintenance of Virtual Servers.- Practical work experience in Installing, Maintaining, Monitoring, Troubleshooting, and Managing Blade Center server, Configuring and Zoning Storage Area Networks and SAN Switches and VMware ESX Server Administration.- Experience in Active Directory, GPOs, DNS, DHCP, File & Print Server, IIS (Web Server), FTP, Terminal Server, NAT, Microsoft, and Clustering in Windows-based server environment.- Knowledge about SAN Configuration and Implementation, Storage Components like Internal storage, Attached storages, SAN Switches, HBA, LUN & Mapping, RAID groups, Volume Groups.- Experience in Network LAN/WAN deployment, including IP Addressing and Troubleshooting.

公司标识
IT Assistant
Society for Sustainable Development (SSD) UNICEF
Mar 2011 - Apr 2014 | Peshawar, Pakistan


- Successfully put together and configured new desktop computers for clients.- Successfully installed Windows 7 Professional operating systems on a number of desktop computers as well as downloading and installing software off of department servers.- Provided technical support, including password resets & server backups. Responded to inquiries.-Diagnosed and troubleshot hardware and software issues- Assisted in Network Connection issues, printer related issues, and Hardware Diagnoses/Repair.- Assisted with technical documentation of systems and processes

学历

University of Peshawar
学士, , Bachelor of Information Technology‎
Business Analytics For Decision Making Technology
所占比重 65%
2011
Islamia College Peshawar
中级/A级, , F.A‎
所占比重 60%
2006
Islamia Collegiate School
大学入学/0级, , Matric in Science‎
所占比重 72%
2004

技能

中级 Cisco
中级 Symantec
熟练 .VMware
熟练 Active Directory
熟练 Active Directory Experience
中级 Admin Analysis
熟练 Administer Servers
中级 Analysis Skills
熟练 Antivirus Products Knowledge
中级 Application Security
熟练 Assess Network Threats
初学者 Attack & Penetration
初学者 AWS Or Cloud Experience
熟练 BACKUP EXEC
熟练 Bilingual English
熟练 CCNA
中级 CCNP
中级 Cisco
熟练 Cisco Network Switches
中级 Cisco Routers Knowledge
中级 Citrix
熟练 Citrix Xen Desktop
熟练 Citrix XenApp
熟练 Cleaing
熟练 Client Service Oriented
初学者 Cloud Computing Knowledge
熟练 Computer Network Operations
熟练 Computer Technologies Proficient
熟练 Conservation Awareness
中级 Customer Success
中级 Cyber Security
熟练 Cybersecurity Knowledge
中级 Data Network Design
熟练 Datacentre Virtualization
熟练 Desktop Laptop Object
中级 DHCP
中级 Disaster Recovery
中级 DKIM
中级 DLP
熟练 DNS
中级 Documentation and Reporting
中级 EIGRP
熟练 Endpoint
中级 Endpoint Threat Detection & Data Loss Prevention
熟练 ESXi
熟练 Ethical Hacker
中级 File Servers
中级 Firewall 1
熟练 FTP
熟练 High Quality Documentation

语言

中级 英语
中级 普什图语
熟练 乌尔都语