About
Security Analyst with 5 years of expertise in Acko in incident response and forensics. Skilled at leading investigations, mitigating threats, and securing systems against attacks. Proven ability to collaborate with executives to develop and implement effective security strategies.
Skills & Expertise (59)
Work Experience
Security Analyst
Acko
Feb 2021 - Present
Good knowledge and working experience in central logging, log management, and Splunk SIEM architecture. Good understanding of Azure Active Directory, Azure MFA, and conditional access. Experience in writing correlation rules and monitoring the Enterprise Security Application. Good hands-on experience in managing the P1 bridge call, involving the stakeholders, and experience in creating the incident response report for critical incidents. Experience in handling and deploying the Defender agents onto servers to onboard into Defender, and troubleshooting agent connectivity issues using the MDE Client Analyzer. Knowledge of email security threats and security controls, including experience in analysing email headers. Prepare and deliver reports and metrics on vulnerability assessment outcomes, remediation progress, and the overall vulnerability landscape to senior management and other relevant stakeholders. Hands-on experience in analysing the device timeline logs and pulling reports by using advanced hunting in KQL. Managing the reporting of AV migration and compliance reports. Experienced in migrating the agents and tools from McAfee EPO to Defender ATP. Prepare Endpoint Compliance reports and initiate the remediation activities wherever required. Designed, implemented, and maintained security systems and controls. Experienced in handling true positive incidents, remediating in a timely manner, and preparing the Incident Response (IR) reports. Knowledge of a breadth of security technologies and topics such as Security Information and Event Management (SIEM), IDS/IPS, Data Loss Prevention (DLP), Proxy, Web Application Firewall (WAF), Enterprise Anti-Virus, Sandboxing, and network and host-based firewalls. Experienced in creating log analytics rules based on the client's requirements by configuring different data tables using KQL language.
Education
B.Tech: CIVIL - DNR College of engineering and technology
- 2019 · Afghanistan
Certifications
No certifications added yet
Interested in this developer?
Profile Score Breakdown
Profile Overview
Availability Details
Visa Status
Citizen
Relocation
Open to Relocation
Skills (59)
Click a skill to find developers with the same skill