Cyber Security Consultant with passion for aligning security architecture plans and processes with security standards and business goals. Background designing and implementing layered network security approaches.
Overview
15
15
years of professional experience
1
1
Certification
Work History
Cyber Security Consultant
Tata Consultancy Services
12.2020 - Current
Experience across multiple areas of Transition Management including resource management, planning, client relationship management and end to end project service delivery
Spearheading the knowledge transfer and overall transition acceptance criteria
Adhering to relevant escalation processes to escalate resource issues, delayed project phases, missed deadlines and other planning issues
Identify and log risks identified during transition
Understanding client's setup by assessing their architecture and suggest solution as per best security practices
Developing Network Security strategies, roadmaps and assessments, high level solution designs
Working with the implementation engineers to oversee the build and deployment of the solution
Designing, Configuring and Implementing Network Security solutions
Risk assessment of proposed and existing system architecture for compliance with security best practices, recommending technical controls to mitigate identified risks
Responsible to deliver Infrastructure support on Incidents, Change Management, Service Improvements plans
Onsite Network Security Lead
Tata Consultancy Services
11.2017 - 12.2020
Leading a team of L2 Security engineers for a leading Bank
Administration and configuration for F5 LTM, Cisco ASA, Firepower IPS, Fire AMP endpoints, Fortinet Firewalls, Cisco ESA
VPN Setup Configuration and troubleshooting on Fortinet Firewalls
Security, Intrusion event analysis for IPS, AMP on daily basis and necessary actions for alarms
Execution of Projects based on Client requirements
Periodically reviewing and updating Firewall Rule base
Creating SOP documents for daily operations
Creating device hardening documents according to the regulatory compliance
Facing internal audits for managed devices
Helping leads to fine tune alerts in SIEM
Ensure that environment is running with latest patch and antivirus definition
Responsible for BCP and DR drill as per scheduled calendar
Validate and supervise implementation activities prior to the installation/ upgradation of network security devices
New Context creation, deletion, VLAN bridging Cisco ASA
Upgradation for Cisco Firepower Chassis 9300 series
SIEM / SOC Analyst (L2)
Tata Consultancy Services
02.2015 - 11.2017
Monitoring alert generated for real time logs and exceptions
Implementation of security analytics for various customers across different geo-location
Integration of Event Sources with SIEM, configuring different policies to meet the customer expectations
Creating incidents for alerts triggered in SIEM and follow up until closure
Investigating the events, collecting logs from RSA, raising security incidents, and escalating the violations
Generating daily, weekly, and monthly reports from RSA for security monitoring systems
Creating reports, rules, and dashboards in Security Analytics
Preparing threat advisory to customer as per customer environment
Anticipate new security threats and stay up to date with evolving infrastructures
Integration of event sources such as windows, checkpoint, firewalls using SYSLOG, SFTP, ODBC etc
With SIEM
Owning incident and change processes doing impact and urgency assessment, team coordination for resolution and informing relevant stakeholders
Performing vulnerability assessment and penetration testing for OS, network devices, security devices, websites, etc
Using Nessus, Nexpose & Metasploit tools
Security Engineer (L2)
Tata Consultancy Services
02.2015 - 11.2017
Working in Managed Services model
Supporting Security devices for multiple clients
Configuration and management of firewall (Cisco ASA 55XX, Checkpoint R75.20, R77.30, Fortigate)
Identity Management solution FIM 2010 R2
Automated user ID provisioning/de-provisioning
Configuration & Management of Privileged Identity Management (PIM) solution ARCOS
Managing Automated Password vault, Role based access provisioning
Integration with Incident Management solution such as Service-Now
Configuring SSL VPN (Array Networks, Cisco ASA)
Managing Soft Token access through RSA SecID for two factor authentication of VPN users
Troubleshooting and management of Cisco ACS server
Managing Websense Data Security (version 7.8.3)
Configuration/Monitoring/Reporting DLP policies and incidents
Configuration and Management of Websense Web gateway
Upgradation for ASA, Checkpoint, Websense
Network Security Engineer
HCL Technologies Limited
07.2013 - 01.2015
Implementation & configuration of Web proxy server (IWSVA-5.1, IWSVA-5.6, IWSVA-6.0)
Configuring HTTP/HTTPS access policies
Configuring URL filtering policies
Configuring IP & LDAP based access lists on Proxy servers
Monitoring Checkpoint GAIA R76 server & analyzing logs & policy events in Smart View tracker & Dashboard
Configuring Email policies on gateway of SMAM, SPOOF attacks
Troubleshooting with Public mail domains like Yahoo, Gmail etc
For mail NDR
Providing security solutions and documentation to end users
Implementation & Configuration of Antivirus server (Officescan 10.6)
Monitoring and maintaining web access, Email quarantine PAN India level
Handling a team of 8 L-1 security engineers
Resolving issues related to internet access, Email blocking
Implementing TLS on email gateways
DLP configuration on gateways and endpoints
Generating daily & monthly reports
Network Engineer
Orient Technologies Pvt. Ltd.
09.2012 - 07.2013
Maintenance of Internet Lease Lines on PAN India level
Troubleshooting & Monitoring of Tikona Digital Network circuits
Looking after services provided to Enterprise customers of TDN by clearing there problems like (Link down / CRC errors / Packet Loss /link fluctuation/latency etc.)
Providing Technical Support and Fault Management for (Leased Line, ILL, Internet access)
Troubleshoot and Monitor end to end connectivity (Which include Core network (Cisco 7600) Transport Path Metro Ethernet Network (Cisco 3400/RTS/MROTEK/Radio/ CPE End.)
Remote Access to Cisco Routers and switches for checking end to end Connectivity
Monitoring and Manage end to end WiMAX connectivity (wireless) through Network Management system
(SS- provisioning/SS visibility/Base station/ IP Related/ POE fault)
Check utilization of core network through Multiple router traffic Grapher (MRTG)
Responsible for Service assurance Includes: - 1
Maintain SLA 2
Providing Root Cause Analysis (RCA)
3
Taking High Level of escalations from Customers, Service Account Managers, NOC Heads
4
Co-ordinate with circle Heads to resolve the issues
To co-ordinate with field engineers on solutions to troubleshoot and repair complex circuits, equipment configuration, optical link losses, hardware faults
VLAN assigning
Tagging and Un-tagging
Configuring and monitoring NB5/PB5 radios, MROTEK and RTS switches
Monitoring Interface/VLAN configurations on core 7600 routers
Monitoring VLAN database on POP 3400 switches
Check utilization of NLD links in case of choking
Network Support Engineer
Mind Pro Technologies Pvt. Ltd.
07.2011 - 09.2012
Leased Line maintenance/Procurement/Commissioning responsibility
Co-ordination with field engineers for installation of Network Equipment's, IOS upgradation, new hardware upgrades & Loop Testing
Co-ordinate with Local service providers for Installation, troubleshooting of Leased Lines, MPLS links
Using ticketing tools like IBM Tivoli, Avhan Fulcrum for Network Monitoring
Troubleshooting & maintaining WAN links 24
7
Configure and troubleshooting OSPF routing issues
Configuration of ACL on Routers
Technical Support to customers all over India
Troubleshooting of Hardware & Network modules on routers
Making Daily Downtime calls Report and Monthly Downtime calls Report