Summary
Overview
Work History
Education
Skills
Certification
Awards
Disclaimer
Timeline
Generic
Mohammed Imran M Y

Mohammed Imran M Y

Bangalore,KA

Summary

To associate myself with a progressive and dynamic organization that gives me an opportunity to seek a challenging career and to be a part of a team that works towards steady growth.

Overview

13
13
years of professional experience
5
5
Certification

Work History

Technical Specialist

IBM India Pvt Ltd
12.2017 - Current
  • Responsibilities in Current Organization- IBM India Pvt Ltd
  • PROJECT AT IBM : Cyber Fusion Center SOC Analyst – Dedicated Project of Banking Industry
  • NATURE OF WORK : Level 2 (L2) Support
  • SCOPE OF WORK : Handling SOC monitoring tool – SPLUNK, Cortex XSOAR, EDR – CrowdStrike, Tanium, Email Security – Proofpoint, Zscaler
  • PERIOD : August 2024 to till date
  • RESPONSIBILITIES:
  • Handling SOC monitoring tool Splunk alerts which are integrated with multiple log sources like EDR – CrowdStrike, Tanium, Network alerts, Proofpoint, Zscaler, windows logs, Linux logs.
  • Analysis of Splunk notables through Search Processing Language (SPL).
  • Analysis of EDR notables through CrowdStrike and Tanium consoles.
  • Handling XSOAR cases and creation of XSOAR tickets which needs to be escalated to Incident Response team.
  • Handling Email Security – Proof point cases related to emails of Phishing, Vishing, Smishing
  • Monitoring Zscaler console.
  • Monitoring network traffics from Stealthwatch console.
  • PROJECT AT IBM : Endpoint Detection and Response (EDR) Solution Admin – Dedicated Project
  • NATURE OF WORK : Level 3 (L3) Support
  • SCOPE OF WORK : Handling Endpoint Detection and Response (EDR) Tool – Tanium
  • PERIOD : June 2022 to August 2024
  • RESPONSIBILITIES:
  • Managing EDR product Tanium sensors across all endpoints which includes workstations and servers.
  • Deploying Tanium sensors agents on endpoints as a part of compliance.
  • Configuring policies on endpoints based on business requirement.
  • Securing the environment from zero-day attacks by updating private threat intel with the highly reputation Indicators of Compromise (IOCs).
  • Managing the on-going incidents occurred and helping respective teams for resolutions.
  • Upgrading Tanium sensor versions to the latest versions released to market to be secured from non-vulnerabilities.
  • Creation of hypothesis based on the flow of incidents received.
  • Creating threat hunting queries in Tanium.
  • Indulging in presenting the monthly view of Endpoint Security solutions to the Customer.
  • Monitoring Microsoft Sentinel (SIEM) and Tenable Vulnerability management tool.
  • PROJECT AT IBM : Endpoint Threat Management Team – Dedicated Project
  • NATURE OF WORK : Level 3 (L3) Support
  • SCOPE OF WORK : Handling Antivirus Technologies (McAfee EPO 5.3.1, 5.9.1 & 5.10 Update11/Agent/VSE/DLP/HIPs/Endpoint Security - ENS)
  • PERIOD : December 2017 to May 2022
  • RESPONSIBILITIES:
  • Installing and configuring McAfee ePolicy Orchestrator 5.3.1 & 5.9.1 on 18 Business Units which has 18 McAfee ePO servers with Embedded/dedicated SQL servers.
  • Upgrading McAfee ePolicy Orchestrator from current to latest version as per BU requirements for example from 5.3.1 to 5.9.1 and 5.9.1 to 5.10.x.
  • Migration of McAfee ePolicy Orchestrator application and database from older windows box to new windows box based on supported platform and BU requirement.
  • Managing 4000+ servers with McAfee Agent 5.6.x, VSE 8.8 Patch 15, Endpoint Security Threat Prevention 10.7.x.
  • Fine tuning McAfee Agents, VSE & ENS policies from EPO as per business requirement and best practice from Security perspective.
  • Installing latest versions on McAfee products extensions and check-in in master repository.
  • Migration of McAfee VirusScan Enterprise to Endpoint Security product from ePO and setting up mirror policies.
  • Handling and working on High Severity Tickets (P1) dedicatedly.
  • Handling escalations with respect to Endpoint Protection technologies.
  • Presenting Monthly compliance and progressions to the customers.
  • Working with 4 engineers of Endpoint Threat Management Team to achieve agreed Service Level Management and improving technical skills with 9/5 support.
  • Creating Standard Operation Procedure (SOP) documents for all activities.
  • Analyzing Virus logs for a week/month and provide the best practice solutions to avoid infections in the environment.

Senior Security Engineer - ITO Service Delivery

Hewlett Packard Enterprise
04.2016 - 11.2017
  • Responsibilities in Previous Organization- Hewlett Packard Enterprise (New Name – DXC Technology)
  • PROJECT AT HPE : Infra Lead for 2 accounts in Endpoint Threat Management Team - Shared
  • NATURE OF WORK : Level 3 (L3) Support and Team Lead
  • SCOPE OF WORK : Handling Antivirus Technologies (McAfee EPO 5.3.1/Agent/VSE/HIPs, Trend Micro OfficeScan/Deep Security Manager & Agent)
  • PERIOD : April 2016 to November 2017.
  • RESPONSIBILITIES:
  • Installing and configuring McAfee ePolicy Orchestrator 5.3.1 and Agent Handler applications on the servers.
  • Managing 2000 servers with McAfee VSE 8.8 Patch7 and HIPs 8.0 Patch7.
  • Fine tuning McAfee VSE & HIPs policies from EPO as per business requirement and best practice from Security perspective.
  • Installing latest versions on McAfee products extensions and check-in in master repository.
  • Handling and working on High Severity Tickets (P1) dedicatedly.
  • Handling escalations with respect to Antivirus technology.
  • Presenting Monthly compliance and progressions to the customers.
  • Driving team of 7 engineers to achieve agreed Service Level Management and improving technical skills with 24/7 support.
  • Creating Standard Operation Procedure (SOP) documents for all activities.
  • Installing and configuring Trend Micro OfficeScan and Deep Security Manager latest versions in cluster environment.
  • Fine tuning Deep Security Agent (Anti-Malware/IPS) policies for servers.
  • Analyzing Virus logs for a week/month and provide the best practice solutions to avoid infections in the environment.
  • Creation and maintenance of each account’s documents to have a successful ISO audit.
  • Implementing and deploying Trend Micro Deep Security Agents on DMZ network.

Senior Project Engineer

Wipro InfoTech Pvt Ltd
08.2011 - 04.2016
  • Responsibilities in Oldest Organization- Wipro InfoTech
  • PROJECT AT WIPRO INFOTECH : Antivirus & Patch Management (AVPM) - Shared
  • NATURE OF WORK : Level2 (L2) Support and Team Lead
  • SCOPE OF WORK : Handling Antivirus Technologies (McAfee, Symantec, Trend Micro) and Patch Tools (SCCM 2007/2012, BigFix/Tivoli, WSUS)
  • PERIOD : August 2011 to April 2016
  • RESPONSIBILITIES:
  • Anti-Virus:
  • Routine Check of Antivirus Updates in the Manager Servers (McAfee EPO, SEPM, Trend Micro) and its functioning.
  • Analyzing the update percentage and troubleshooting to provide the maximum outcome.
  • Analyzing the virus infection reports and providing the solution\action taken to prevent it.
  • Managing server’s compliance with AV and Patch.
  • Installing the McAfee EPO 4.6.x and 5.1.x in standalone and cluster environment.
  • Installing McAfee products in the McAfee EPO 5.1.x placed in standalone and cluster environment.
  • Installing McAfee Agent Handler in the DMZ and configuring in the McAfee EPO 5.1.x.
  • Configuring Master and Distributed Repositories based on the customer environment.
  • Configuring and Master Repository Update policies.
  • Creating the Tasks for the automatic DAT updates in McAfee EPO.
  • Creating the policies of the McAfee DLP 9.2.9.3and providing\blocking the USB\external device access as per the requirement.
  • Creating policies of the McAfee Endpoint Encryption 7.0.x7.1.3 as per the requirement to the endpoints.
  • Installing McAfee Endpoint Encryption for Drives in the local clients and assigning the respective users to it.
  • Password recovery of McAfee pre-boot authentication in the drive encrypted machines.
  • Installing and configuring McAfee Endpoint Encryption for File & Folders in the McAfee EPO 5.1.x.
  • Installing the McAfee Endpoint Encryption for File & Folders packages in the local clients.
  • Configuring the policies for McAfee Endpoint Encryption for File & Folders as per the business requirement.
  • Installing and configuring Management of Native Encryption in the McAfee EPO 4.6.x and 5.1.x.
  • Installing Management of Native Encryption in the MAC systems.
  • Troubleshooting the McAfee EPO issues in the cluster environment.
  • Troubleshooting multiple issues in the McAfee EPO 4.6.x and 5.1.x
  • Adding the endpoints in the EPO console and pushing the tasks through EPO.
  • Configuring the Minimum and Maximum outage in the SQL for the AV application.
  • Running the queries and analyzing the high usage logs related to the AV application.
  • Deployment of Symantec Endpoint Protection Manager (SEPM) and configuring the clients in it.
  • Building the replication of Symantec Endpoint Protection Manager (SEPM).
  • Pushing the Sylink files automatically through the client deployment wizard from the SEPM console.
  • Configuring Group Update Providers and LiveUpdate Policies.
  • Patch management tools:
  • Creating the tasks to install\un-install the software and patches through Tools (SCCM 2007/2012, Bigfix\Tivoli, WSUS).
  • Troubleshooting the unsuccessful of software\patch deployments in the machines and providing the SOPs to the members.
  • Building the Secondary sites in the SCCM 2007.
  • Troubleshooting the secondary sites if it gets failed to communicate with the primary site.
  • Troubleshooting the roles of the SCCM if any gets failed.

Education

SSLC -

Seventh Day Adventist Matric Higher Secondary School
01.2006

MS - undefined

BITS Pilani
01.2015

B.Sc. - undefined

Adhiyamaan College Of Engineering
01.2011

12th - undefined

R.V Govt Boys Higher Secondary School
01.2008

Skills

  • Cybereason Endpoint Detection and Response (EDR)
  • Tanium Endpoint Detection and Response (EDR)
  • CrowdStrike Next GenAV
  • McAfee - (ePolicy Orchestrator 46x, 51x, 53x, 59x & 510x, Agent, VirusScan Enterprise, Data Loss Prevention, Host Intrusion Prevention, Endpoint Security (ENS), Drive Encryption for Windows, Management of Native Encryption for MAC, Files & Folders Encryption for Windows)
  • McAfee Forefront Email Security
  • Symantec - (Symantec Endpoint Protection Manager 11x & 12x, Symantec Endpoint Protection (SEP), Symantec Data Loss Prevention 14x, Symantec PGP Mail, WDE
  • Trend Micro - (Trend Micro Control Manager (TMCM), Office Scan 105, 106 & 110 SP1, OfficeScan Client, Trend Micro Deep Security 96, Deep Security Agent)
  • Microsoft Sentinel (SIEM)
  • Splunk (SIEM) - (Expertise with SPL (Search Processing Language) and understanding of Splunk architecture)
  • Tenable Vulnerability Management tool
  • Microsoft System Center Configuration Manager (SCCM) 2007 & 2012, IBM Big-Fix/Tivoli Patching tool
  • Windows Server Update Service (WSUS)
  • Knowledge on Email Security – Proofpoint
  • Knowledge on Security Devices (Firewall, Checkpoint)
  • Knowledge on Network Devices (Routers, Switches)
  • Installing and configuring AD, DNS, GPO in the customer environment

Certification

  • AWS Foundation Course
  • ITIL Foundation certificate in IT Service Management
  • AZ-900: Microsoft Azure Fundamentals
  • CR1010: Introduction to the Cybereason UI
  • Forcepoint DLP Administrator

Awards

  • Outstanding performance and contribution 2019 - IBM,
  • “GTS Delighters” for demonstrating collaboration and excellence to delight IBM clients 2020,
  • Outstanding performance and contribution 2022 - IBM

Disclaimer

I hereby confirm that the above provided information is true and correct to the best of my knowledge, information and belief.

Timeline

Technical Specialist

IBM India Pvt Ltd
12.2017 - Current

Senior Security Engineer - ITO Service Delivery

Hewlett Packard Enterprise
04.2016 - 11.2017

Senior Project Engineer

Wipro InfoTech Pvt Ltd
08.2011 - 04.2016

MS - undefined

BITS Pilani

B.Sc. - undefined

Adhiyamaan College Of Engineering

12th - undefined

R.V Govt Boys Higher Secondary School

SSLC -

Seventh Day Adventist Matric Higher Secondary School
Mohammed Imran M Y