Dedicated IT professional with a strong background in networking, software/hardware troubleshooting, security, and OS administration. Committed to supporting and contributing to the continuous operations of the organization by applying comprehensive technical skills and problem-solving expertise. Adept at ensuring system reliability, security, and efficiency to meet organizational goals.
Overview
9
9
years of professional experience
1
1
Certification
Work History
Specialist - Information Security
LTIMINDTREE (Formerly as LNTINFOTECH)
06.2022 - Current
Configuration of GRE tunnel in Zscaler
Zscaler agent Version Upgrade in all the devices
URL & firewall category revalidation in every quarter
Creation of URL, Cloud category and SSL inspection policy
Routing Traffic for specific application to specific data center in Zscaler
DR configuration in Zscaler
Handling Tickets and SC task in Service Now
Blocking of malicious domain on Zscaler and Proofpoint email gateway
Weekly meeting with Zscaler Engineer & client
Configuring App profile and forwarding profile in mobile portal
DLP & CASB configuration as per requirement
Monitored and analyzed data traffic using DLP solutions to detect and prevent unauthorized data transfers
Utilized DLP tools to create detailed reports and dashboards for executive management, highlighting key metrics and incident trends.
Integrated DLP solutions with existing security infrastructure, including SIEM systems, firewalls, and endpoint protection tools
Creation of Firewall policy in Zscaler based on requirement
Creating Customized agent package creation
Routing User traffic to specific ZIA Public Service Edges using Sub cloud
Investigation and response to Proofpoint email security incidents, including the identification and mitigation of advanced threats
Monitored and analyzed email traffic for potential threats, including phishing, spam, and malware,
Configured email security alerts and notifications for timely response to security incidents.
Utilized Proofpoint’s reporting and analytics tools to generate detailed reports on email security metrics
Senior Project Engineer
Wipro Ltd
11.2021 - 06.2022
Deployment of Zscaler Proxy, DLP & CASB
Creating App & Forwarding Profile for Different Project
Troubleshooting for SSL Certificate issue in various application
Creating DLP policy for SAAS base Application
Troubleshooting of URL, VPN with taking Packet capture
Interaction with Zscaler Engineer for troubleshooting
Creating Allow & block Policy for Different Project
Troubleshooting User experience Problem with ZDX
Creating Reports, dashboards & admin Accounts in Zscaler console
Configuration application and probes in ZDX to
Monitor the traffic
Senior Information Security analyst
Persistent Systems Pvt. Ltd, Pune.
08.2020 - 11.2021
Investigating and monitoring Network traffic / IDS / Firewall / Endpoint security logs using IBM Qradar.
Worked on offense event, analyzing the offense with the help of wire shark and threat intelligence platform.
Creating, Finetuning Use cases as per Requirement.
Performing Upgradation, Patch Upgrade and Full Deployment of IBM Qradar.
Deployment of Zscaler Proxy, DLP & CASB done
Performed POC for internet content Filtering i.e. Akamai, Zscaler, Netskope
Creating Policy's in Zscaler for DLP & CASB.
Fine tuning of DLP False Positive Alerts
SAAS Base Application Scanning like OneDrive,GitHub, SharePoint, Etc.
Composing security alert notifications raising ticket to higher officials in ticketing tool.
Advisory incident responders/ other teams on threat and providing evidence and information and tracking the threat resolution.
Email analysis using various open-source tools such as MX Toolbox, redirectdetective.com.
Perform malware analysis technique Using Open-source Tools.
Security Analyst
Outworks Solutions Pvt. Ltd, PUNE
03.2019 - 08.2020
Worked on IBM QRadar Appliance, Troubleshooting on Offense
Worked on Fireeye HX to do inspection and analysis of threat activity on Client Machines and
create appropriate responses in real-time & Prepare SOP Against that threat
Email analysis like SPAM, Phishing etc
Analyzing and Troubleshooting user tickets related on User Proxy, SMG, SMTP, DLP
Investigating the suspicious mail and taking necessary actions such as blocking the IP's, URL's, source, sender's mail ID by coordinating with different teams
Whitelist and Blacklist sender domain, Releasing quarantine mail through Email Gateway
Allowing, Whitelisting, or blocking the URL, domain or IPs based on the request
Monitoring the dashboards related to health monitoring of the Log database, log server, Filtering service and Directory service, database updates
Worked on Cisco Firewall, Creating ACL & Opening Ports & Blocking blacklisted IPs
Troubleshooting Issue related Antivirus for Client machine for Malware, threat, And Risk.