To meet the ever rising challenges successfully in the corporate world by making optimum use of skills & try to achieve excellence in work and to join an organization that shall lead to professional and social growth and in turn is a contributing factor in the growth of the organization. IT professional with 13 years of experience developing and implementing security solutions in fast-paced environments and Skilled in Endpoint/Data/EDR/XDR/M365 Security
Overview
13
13
years of professional experience
16
16
years of post-secondary education
13
13
Certifications
4
4
Languages
Work History
Cyber Security Consultant
TATA Consultancy Services LTD.
1 2016 - Current
Managing troubleshooting and operations for endpoint security products
Perform daily administrative duties on systems to ensure that all systems are operating properly
It includes log reviews, account maintenance, resolution of pending alerts, preparation of daily reports, maintenance of policies/rules
Detect security issues, create customer tickets, and manage problems until closure
Work with vendor to request fixed for the identified defects in the products functionality
Ensure major software product version updates are rolled out as they become available by the product vendor after undertaking testing as part of the Service and Service pricing
Enforce policies for malware detection and automatic remediation actions (e.g
Deleting or quarantining malicious files, cleaning up malicious registry entries)
Performance issues due to application of antivirus to specific servers shall be detected timely and solved in compliance with mutually agreed and customer approved policies
Manage and administration of Microsoft 365 Defender console
Working on High & Medium alerts on Microsoft 365 Defender console
Create custom detection rule in Microsoft 365 Defender console
Work with SCCM and software distribution team for roll out latest sensor and MDE client on servers and workstations
Ensure all pre-requisites meet before rolling out MDE
Troubleshoot MDE and sensor communication issues
Offboard, quarantine and app isolate machines from Microsoft 365 Defender console
Manage Advance features in Microsoft 365 Defender
Create Alert suppression rule in Microsoft 365 Defender
Block IP address, Domains, file hashes from Microsoft 365 Defender
Manage automation folder exclusion in Microsoft 365 Defender
Create onboarding and offboarding packages from Microsoft 365 Defender
Weekly Microsoft CASB report
Sanctioned and Unsanctioned apps from Microsoft Defender for cloud apps console
Create policies for Microsoft Defender for cloud apps
Manage configuration and settings under Microsoft Defender for cloud apps
Overall administration of Microsoft Defender for cloud apps
MS PKI for the certificate management in its environment
Nagios alerts monitoring
Manage McAfee VirusScan Enterprise Storage product and implementation at new sites
Work on Incidents, Change requests & service tasks through ServiceNow ticketing tool
Manage Microsoft CASB console and work on High/Medium alerts
Threat sample submission to McAfee & Microsoft
Extra DAT & Latest signature roll out in McAfee & Microsoft Defender
POC needs to be perform whenever new Endpoint Products proposal comes from customer
Manage High CPU utilization, File/Folder exclusion tasks
Centralized management of Anti-Virus software
Maintenance and support of McAfee ePO, Defender AV & Defender for Endpoint
Providing technical resolutions to project team members and responding to queries regarding errors or questions about programs
Create and deliver reports to business lines pertaining to compliance
Perform analysis of events/incidents and provide remediation suggestions to relevant owners
Implement tasks/projects critical to the organizations Endpoint technologies (workstations, laptops, servers etc.)
Worked with large and enterprise customers in a wide range of functions including but not limited to product demos, solution architecture, professional services, and product support
Implementation and configuration of security products
Create HLD, LLD, configuration and operational documents
Working on Change request, Incidents, Service request and Problem tickets
Attending weekly monthly operational meeting with customer
Prepare PPT slides for weekly reports
Prepare weekly & Monthly compliance reports
Prepare Audit report and present audit data to customer
Prepare and perform POC for new security products
Configuring, managing, and monitoring the setup for more than 30K+ Endpoints globally
Documenting security policies configuration
Handling virus outbreak scenarios Threat management and maintaining security compliance
Responsible for ensuring 95% compliance, performing daily activities, creating documents for technical reference, creating reports weekly
Troubleshoot multiple AKAMAI ETP clients issues
Location creation and policy configuration in AKAMAI ETP console
Ensure AKAMAI ETP clients are running on latest version
Whitelisting IP and domains from AKAMAI ETP console
Manage Network configuration settings in AKAMAI ETP console
Create cases with AKAMAI vendor and troubleshoot issues together.
Developed customized endpoint protection solutions that significantly reduced malware infections within client environments
Collaborated with cross-functional teams to develop comprehensive cybersecurity policies and procedures
Ensured regulatory compliance by conducting thorough audits of information systems and security controls
Strengthened business continuity by creating disaster recovery plans in the event of a cyber attack or breach
Increased employee awareness of cybersecurity best practices by developing and delivering training programs
Recommend improvements in security systems and procedures
Improved overall security posture by regularly updating antivirus software, firewalls, intrusion detection systems, and other protective measures as required
IT Operations Analyst
Accenture Services Pvt Ltd
03.2015 - 01.2016
Managing and implementing of Trend Micro in their infrastructure
Documenting security policies configuration
Handling vulnerability outbreak scenarios patch management and maintaining security compliance
Responsible for ensuring 100% compliance, performing daily activities, creating documents for technical reference, creating reports for daily and weekly
Meeting the SLA and timeframe
Configuring, managing, and monitoring the setup for more than 10000 computers globally
Resolving Virus issues on client/servers
Generating daily Reports for virus on machines in client's network and act as per requirement
Upgrade Trend Micro Software on users' machine from older versions to latest available
Deployment of Trend Micro Client Software on desktops through TMCM & OSCE
Proactively identify IT security risks including IT technical implementations or business processes
Reports creation as per the ITIL requirements.
Communicated and explained business requirements to team members to understand and implement functional demands
Installed system updates to address vulnerabilities and reduce security issues
Troubleshot incidents reported by end-users to schedule system changes and identify permanent solutions
Increased customer satisfaction by providing timely and accurate support to end-users in troubleshooting technical problems
Consultant P2
Capgemini India Pvt Ltd
03.2011 - 03.2015
Managing and implementing of Symantec Endpoint Protection in their infrastructure
Documenting security policies configuration
Handling vulnerability outbreak scenarios patch management and maintaining security compliance
Responsible for ensuring 100% compliance, performing daily activities, creating documents for technical reference, creating reports for daily and weekly
Meeting the SLA and timeframe
Configuring, managing, and monitoring the setup for more than 10000 computers globally
Resolving Virus issues on SEP client/servers
Creating & Troubleshooting GUP
Creating centralized exception policy
Troubleshooting installation, communication, live update issues for Symantec
Generating daily Reports for virus on machines in client's network and act as per requirement
Upgrade Symantec Client Software on users' machine from older versions to latest available
Deployment of Symantec Client Software on desktops through Symantec System Centre/Symantec Endpoint Protection Manager or manually
Proactively identify IT security risks including IT technical implementations or business processes
Incident Management of ITSM (BMC remedy) Incidents and EARS Tickets
Assistant Delivery Manager at Tata Consultancy Services, Global Shared ServicesAssistant Delivery Manager at Tata Consultancy Services, Global Shared Services