Experienced Security Operations Engineer with a demonstrated history of 4+ years working in the cloud technology and services industry. Passionate about learning new things and exploring the world!
Overview
4
4
years of professional experience
6
6
Certificates
Work History
SecOps Engineer
Safe Security
New Delhi, New Delhi
10.2020 - Current
Managing the overall Security Posture of Cloud Environments and work on fixing the issues identified.
Enabling Guardrails, managing IAM User and their access level. Configure monitoring and logging across the product.
Automate the remediation of SecurityHub alerts
Automating hardening of EC2 Instance Centos machines as per CIS Level 1 benchmark using Bitbucket, Jenkins and Packer.
Configuring AWS Security services like Guarduty, Security Hub, AWS Access Analyzer and AWS Detective.
Ensure proper Tagging for resources in AWS organization wide using proper Config Rules and IAM Policies.
Introducing Patch Management of AWS EC2 instances using AWS Patch Manager Service.
Monitor AWS Bills by opting for AWS Savings Plans and Implementing AWS Instance Scheduler for Stop-Starting EC2 Instances
Setting up PIM/PAM tools for the AWS and other internal third-party integrations
Setup of NGFW Firewall for the product.
Operations Engineer
AWS
Bangalore, Karnataka
07.2018 - 09.2020
Hands on experience in Security oriented AWS Services like Guard Duty, Cloudwatch, Cloudtrail, AWS Config, KMS, Secrets Manager.
Architecting infrastructure of PA Firewall setup and setting up WAF on AWS.
Automating Periodic scanning, vulnerability assessment and patching of EC2 instances.
Hands-on Experience in configuration of Network architecture on AWS with VPC, involving setting up Subnets, Internet gateway, NAT, Route table, S2S VPN,etc
Automating, Configuring and deploying on AWS stacks using Cloud Formation and Terraform.
Monitoring the server's performance, CPU Utilization, disk usage etc using Cloudwatch custom metrics and alarms.
Configured AWS Multi Factor Authentication in IAM to implement 2 step authentication of user's access using Google Authenticator and AWS Virtual MFA.
Wrote runbook and automations for remediating SecurtiyHub findings