Summary
Overview
Work History
Education
Skills
Accomplishments
Timeline
Generic
Fazal Rehman

Fazal Rehman

Assistant Manager Security Operations
Bengaluru,Karnataka

Summary

Dynamic and versatile professional with 7+ years of exposure and experience ranging from incident response to securing network breaches/attacks, threat hunting, project management and team handling. Expertise in SIEM, MITRE, EDR, Power Bi, Vulnerability Assessment and in a wide range of technologies with the ability to learn quickly and adapt to new environments. Objective: To make a sound position in the corporate world and work enthusiastically with a team to achieve goals of the organization with devotion and hard work.

Overview

12
12
years of professional experience
7
7

Years of Cyber Security Experience

Work History

Assistant Manager Security Operations

Netsurion Technologies
Bengaluru , Karnataka
12.2019 - Current

Duties and Responsibilities


Responsibilities:


• Review and Approve Threat and Incident Reports (Daily and Weekly)
• Perform regular L3 responsibilities.
• Ensure all service requests are addressed on time and Tickets assigned.
• Oversee team operations.
• Drive value proposition meetings and come up with viable solutions to ease off operations.
• Interface with Devops team and lead in resolving product issues.
• Organize and Train all SOC team members.
• Add value to improve efficiency of the security operations.
• Assist SOC Operations along with leadership team.
• Mentor Lead Analyst/senior analysts and specialists.
• During any absence of Team manager, assist in serving clients.
• Act as a technical manager

Primary


• Ensure product updates are completed on time.
• Ensure - Report Fine Tuning- Removal of Unnecessary Reports and reporting optimizations.
• Tracking of License and Support Inputs (Ensure all contract details are monitored and flagged accordingly 2 months prior to expiry)
• Automating the reports and alerts
• Performing the Sanity checks as and when changes made to the Netsurion XDR product
• Optimizing the Reports and Alerts
• Runbook updates for each client
• Tool improvisation Inputs
• Service improvisation inputs
• Presentation and Review of Client Deck
• Providing Technical Trainings
• Integration of New Technology into EventTracker
• Cognizance of Client Environment
• Interaction with client and maintaining healthy relationships with retention
• Internal Team Liaison (Interaction with KP, Engineering, Pre-sales, Deployment Teams)
• Onboarding new clients
• Ensure System Grouping is done for all clients
• Adhering to the policies and procedures defined by NTPL


Secondary


• Ensure asset validation
• Configuration of ET-VAS, ET-IDS and implementing the changes
• Onboarding of L1 and L2 resources
• Training and mentoring of L1 and L2 resources
• Planning Tasks for L2 resources
• Ensuring all the critical observations are logged into Clients Logbook
• Daily Handover
• Daily Roster Updates
• Onboarding of L1 resources
• Planning the tasks for L1 resources and ensure all resources are engaged and spirited always

Cyber Security Engineer - SOC

MST - ATI Electronics
Jeddah
10.2017 - 10.2019
  • Continuous monitoring, analyze security alerts and event information for all approved security feeds to include investigation of incidents using system logs, event correlation between IDS/IPS, firewall and other means of detection
  • To monitor the Status & connectivity of 3000+ Devices with SIEM
  • Handle escalated tickets and Perform deep-dive incident analysis - Integrating compliance devices with Splunk on frequent basis
  • Working with device administrators to configure the devices to enable/send the logs - Design and develop innovative methods of automatic event processing to satisfy compliance and operational requirements
  • Maintain and improve the SIEM services to identify emerging threats and meet regulatory compliance
  • Assessing the SIEM, Log Baselines implemented and the SOC Procedures, for finding the gaps
  • Conducting workshops to discuss Use cases and Log baselines with Clients - Monitoring SIEM logs, Firewall logs, Active Directory logs - Creating and working with IOC dashboards
  • Knowledge of Process Explorer and Carbon Black
  • Analyzing alerts using Splunk Enterprise Security and Qradar
  • Malware Analysis -
  • Email Phishing Analysis

Physical Security Engineer

MST - ATI Electronics - Saudi Arabia
Jeddah
10.2015 - 08.2017
  • Providing technical and physical support for high security areas, security
  • equipment, and security systems in retail chains
    Physical Mobile Device security pre-sales and support
  • Duties involved the installation, use, and maintenance of security equipment, from metal detectors to electronic surveillance
  • Installation and commissioning of Electronic Article Surveillance (EAS), CCTV,
  • Access Control, Networking, Structured cabling
    Handled and completed a ELV projects mainly focusing on Networking systems and cabling installation

Senior Technical Support Specialist

Convergys
Bengaluru , Karnataka
08.2007 - 10.2010

Education

Post Graduate Program in Cyber Security - Cyber Security

Simplilearn
Bengaluru
04.2021 - 10.2022

Bachelor of Engineering - Telecommunication

Visvesvaraya Technological University
Bengaluru
01.2004 - 01.2009

I.C.S.E -

St.Joseph's Boys' High School
Bengaluru
06.1994 - 06.2000

Skills

Information Security Managementundefined

Accomplishments

CCNA - Cisco, Cisco, 07/2009, 07/2012, CSCO11636662
Wireshark: VoIP, LinkedIn
IoT Foundations: Low-Power Wireless Networking, LinkedIn
Key Account Management, LinkedIn
Learning VMware vSphere, LinkedIn
Ethical Hacking: Introduction to Ethical Hacking, LinkedIn
Learning Splunk, LinkedIn
Implementing and Administering Azure Sentinel, LinkedIn
Ethical Hacking: Footprinting and Reconnaissance, LinkedIn
Build a hacker mindset and defend against future attacks, Simplilearn, 2785109
PG CS - Design systems to secure applications, networks, & device, Simplilearn, 2684617
HTTP Essential Training, LinkedIn
Wireshark Essential Training, LinkedIn
Learning the OWASP Top 10 (2018), LinkedIn
Foundations of Operationalizing MITRE ATT&CK, AttackIQ
Foundations of Purple Teaming, AttackIQ
Microsoft Certified: Security Operations Analyst Associate, Microsoft, 10/2022, 10/2023, I443-1635
CYBER SECURITY: TECHNOLOGY, APPLICATION AND POLICY, MIT Schwarzman College of Computing, 60339743
CompTIA Security+ ce Certification, CompTIA, 01/2023, 01/2026, ISO 27001
Foundation - Information Security Certification - Exemplar Global, Inc.
CFISOIN20220141, ISO 27001 Foundation - Information Security Certification - Exemplar Global, Inc.

Timeline

Post Graduate Program in Cyber Security - Cyber Security

Simplilearn
04.2021 - 10.2022

Assistant Manager Security Operations

Netsurion Technologies
12.2019 - Current

Cyber Security Engineer - SOC

MST - ATI Electronics
10.2017 - 10.2019

Physical Security Engineer

MST - ATI Electronics - Saudi Arabia
10.2015 - 08.2017

Senior Technical Support Specialist

Convergys
08.2007 - 10.2010

Bachelor of Engineering - Telecommunication

Visvesvaraya Technological University
01.2004 - 01.2009

I.C.S.E -

St.Joseph's Boys' High School
06.1994 - 06.2000
Fazal RehmanAssistant Manager Security Operations