To be a part of an environment that promotes team effort and provides an opportunity for growth. Eager to take up higher roles and responsibilities, thus emerging as a better Information Security professional and contribute significantly to the growth of the team and organization.
4+ years of progressive experience in Endpoint security domain with expertise on Antivirus, Data loss prevention, Encryption and Vulnerability management technologies. Cybersecurity Specialist with proficiency in online security research, planning, execution and maintenance. Skilled at training internal users on security procedures and preventive measures.
Overview
4
4
years of professional experience
Work History
Security Analyst
SMG INFOTECH PRIVATE LIMITED
12.2019 - Current
Evaluated third-party vendors'' security posture during contract negotiations, ensuring adherence to organizational requirements and minimizing risk exposure.
Assisted in the successful completion of security audits, resulting in a boost of client trust and confidence.
Conducted regular vulnerability assessments to identify weaknesses and implement appropriate countermeasures.
Managed access controls for sensitive information systems, safeguarding data integrity and confidentiality.
Educated employees on cybersecurity awareness through training sessions, significantly reducing instances of human error-related breaches.
Proactively implemented patches to mitigate known vulnerabilities, maintaining the highest level of system protection possible.
Enhanced network security by implementing intrusion detection systems and monitoring potential threats.
Managing the Trellix ePO Antivirus server and working on the regular client compliance issues.
Working on remediation of risk entries and potentially unwanted applications and viruses with proper workflow.
Managing all clients’ needs to be update with latest virus definitions ,if any communication issues with servers creating an incident and working in it.
Upgrading AV server and clients to latest releases from the vendor by creating change request on service now.
Vulnerability assessment across IT systems and Network devices
Vulnerabilities, recommend corrective measures and ensure the adequacy of existing information security controls.
Preparing a high-level vulnerability assessment report and sharing the results with corresponding Administration teams.
Prepare Vendor patch register based on recent patches released by all vendors.
Recommend the Critical patches to Windows and Mac admin teams to perform the patching.
Perform the Vulnerability scans to check the status after patching.
Cloud Lock Policies and made exclusions as per user requirements and working on Incidents with proper investigation to avoid the Data loss through Organization.
Ability to present complex technical topics to senior level executives.
Identify false positives and risk acceptance candidates.
Managing the Data loss prevention and encryption deployment and administrative activities on ePO.
MNE policy fine tuning and creation based on the business requirements.
Handling encryption and decryption issues on the user systems
Handling USB encryption requests with the help of FRP components
Troubleshooting with users on FRP activation issues
Education
Bachelor’s Degree in Eletrical And Electronics - Bachelor’s Degree in Eletrical And Electronics
JNTU Hyderabad
Nalgonda, India
05.2016
Skills
Monitor the security of critical systems (eg, Trellix ePO, Qualys VM, Cloud Lock, Trellix DLP, Management of Native Encryption, and Palo Alto etc) and changes to highly sensitive computer security controls to ensure appropriate system administrative actions, investigate and report on noted irregularities
Conduct network vulnerability assessments using tools to evaluate attack vectors, identify system vulnerabilities and develop remediation plans and security procedures
Handling DLP related Service request and Incident with various customers
Monitoring the DLP incidents and alerts generated on ePO console
Working on USB access issues and other DLP related activities and policy fine tuning
Handling all Security Firewall devices related major and minor incidents and handling access issues on Palo Alto firewalls
Conduct routine social engineering tests and clean-desk audits
Investigate potential or actual security violations or incidents to identify issues and areas that require new security measures or policy changes Strategy Development
Define, establish, and manage security risk metrics and track effectiveness
Coordinate with third parties to perform vulnerability tests and create security authorization agreements and standards
The ability to balance risk mitigation with business needs
Collaborate with business units to determine continuity requirements and Disaster Recovery
Conduct business impact analysis for vital functions; document recovery priorities of the key processes, applications, and data
Establish disaster recovery testing methodology
Plan and coordinate the testing of recovery support and business resumption procedures while ensuring the recovery and restoration of key IT resources and data and the resumption of critical systems within the desired timeframe
Monitoring and creating Incident, Problem, Change Request and Service Request tickets in Service Now and ensure issues are resolved within SLA
Educational Certifications
Bachelor’s Degree in Electronics and Communication from JNTU Hyderabad in 2016, Qualys Certified Vulnerability Management Specialist, Attended Internal ePO trainings
Timeline
Security Analyst
SMG INFOTECH PRIVATE LIMITED
12.2019 - Current
Bachelor’s Degree in Eletrical And Electronics - Bachelor’s Degree in Eletrical And Electronics
Senior Ar Caller at U.S Medical billing, Visionary Rcm Infotech India Pvt Ltd, Omega Healthcare private limited and Access Healthcare private limitedSenior Ar Caller at U.S Medical billing, Visionary Rcm Infotech India Pvt Ltd, Omega Healthcare private limited and Access Healthcare private limited