Cybersecurity Soc Analyst Resume
2.00/5 (Submit Your Rating)
Alexandria, VA
SUMMARY:
- An Information Technology Security professional with combined experienced over 14 years in Information security analyst, Database administration and Amazon Web services administration with a career exhibiting a proven track record of leadership and professional excellence.
PROFESSIONAL EXPERIENCE:
Cybersecurity SOC Analyst
Confidential
- Monitor and analyze network traffic, IDS/IPS, security events and firewall logs and perform triage analysis to identify security incidents and false alarms using Sourcefire, FireEye & Iron Port.
- Recognize potential, successful and unsuccessful intrusion attempts and compromises through reviews and analyses of relevant event detail and summary information
- Operate Security Information and event management (SIEM) tools like Splunk to collect and analyze large volumes of logs and network traffic and alerts to assess, prioritize, and differentiate between potential intrusion attempts and false alarms.
- Use of Splunk (a Security Information and event management tool) to collect and analyze large volumes of logs and network traffic and alerts to assess, prioritize, and differentiate between potential intrusion attempts and false alarms to uncover malicious activity going on within the network.
- Use McAfee Web Gateway GUI to grant temporal web access to users within the company to websites that are blocked for various business reasons.
- Develop follow - up action plans to resolve reportable issues, and communicate with other IT teams to address security threats and incidents accordingly.
- Use McAfee DLP Manager to protect intellectual property and ensure compliance by safeguarding sensitive data.
- Review data from Threat Vendors and maintain "White & Black" list for malicious IOCs (Indicators of Compromise).
- Used Cisco IronPort to set email policies (block IP, malicious domains, and application blacklisting and whitelisting) following company's SOPs.
- Formulate and coordinate technical best-practice SOPs and Run books for SOC Analysts.
- Respond to inbound requests via phone and other electronic means for technical assistance, and resolve problems independently
- Provide Incident Response (IR) support when analysis confirms actionable incident and escalate tickets if need be.
- Use Splunk to search and analysis email logs to confirm malicious emails are not delivered or quarantine and malicious attachment(s) are dropped.
- Identify, verify, and ingest indicators of compromise and attack (IOC’s, IOA’s) (e.g., malicious IPs/URLs, etc.) into network security tools/applications to protect the Confidential Network.
- Proactively search through log, network, and system data to find and identify undetected threats.
- Report common and repeat problems, observed via trend analysis, to SOC management and propose process and technical improvements to improve the effectiveness and efficiency of alert notification and incident handling.
- Investigate malicious phishing emails, domains and IPs using Open Source tools and recommend proper blocking based on analysis.
Sr Oracle database administrator
Confidential, Alexandria, VA
- Assist Cyber security team with their Security scans request and resolving POAMs findings.
- Proactive Monitoring and support of production and development and QA databases, troubleshooting and maintenance via OEM Grid Control 10g, 11g and 12c in a Linux environment.
- Performing ongoing database maintenance, patching and upgrade from 11.2.0.3 to 11.2.0.4.
Performing ongoing Rac cluster, grid, ASM and Data guard upgrade and patching.
Optimizing database uptime/availability and performing routine audits of DBMS.
- Maintain and support RAC 10g and 11Gr2 environment in production which includes patching and migration.
- Installation, configuration, and support of Oracle Database 10g, 11g and 12c Performance tuning using oracle performance tuning advisors. Installation, configuration, and support of Oracle Grid 11g and 12c.
- Responsible for developing the upgrading strategy, 11gR2 Grid Clusterware RAC database testing and implementation Architect Golden Gate (10.4, 11.1 and 11.2.0) heterogeneous replication solutions
- Designed, Developed Implemented “Zero-downtime” bi-directional replication for data center migration and 11GR2 upgrade projects.
- Implemented active-active and active-passive replication solutions. Coordinate and lead disaster recovery testing exercises to guarantee business continuity
- Trained in-house production DBA staff on golden gate support, maintenance and troubleshooting procedures.
- Monitors Databases for Optimal Performance acting quickly to mitigate performance Issues. Performing space maintenance, database tuning, and configuration maintenance.
- Assist with Database Engineering efforts as requested to include deployments of new databases, data migration and patch/upgrade planning and documentation activities Provides guidance and recommendations for efficient use of database resources. Implementing/maintaining automation of regularly scheduled administrative tasks.
- Installing, setting up and configuring Oracle 12c agents and 11g databases. Administering, troubleshooting and debugging Oracle databases.
- Providing problem resolution for Oracle related issues.
- Developing and maintaining documentation for Oracle software configuration.
- Developing and maintaining operational standards/procedures for Oracle, providing daily monitoring to include (backups, error and system logs, database statistics, DBMS system utilization, and disk utilization and database availability).
- Monitoring ticket tracking system for (Remedy ) problem reporting system and responding to problem tickets according to established procedures and guidelines.
- Performing user maintenance such as adding users, and maintaining Security such as granting access to only required database objects. Providing support for database migration from development to production.Administered and completed Data Uploads utilizing Export/Import and Data Pump to perform refresh, migrate and clone schemas, tables and databases.
Confidential, Arlington, VA
Senior Oracle DBA,
- Responsible for overall strategic planning and redesign of databases requirements gathering and analysis, design, test and implementation through the phases of System Development Life Cycle. Creation, migration, upgrade and administration of 9i, 10 g and 11g Oracle database, SQL server 2005/2008/2012 for development, QA and production in RHEL 5.4/6.4, Unix, Solaris 10 and Windows environments.
- Developed and implemented database automation solutions and performed QA verification of various databases.
- Migrated databases to new datacenter with zero downtime using Golden Gate replication technology.
- Implemented Active Data Guard with fast start failover options, proactive monitoring and support of the RAC High availability set up, applied Oracle patches (interim, CPU, PSU) for bug fixes and security. Performed database, schema and table level refreshes/overlay.
- Used Oracle support to troubleshoot and solve critical database issues.
- Implemented and monitored RMAN backup jobs.
- Upgraded 11gR2 RAC Grid Infrastructure to 11.2.0.3 from 11.2.0.1.
Confidential, Washington, DC
Oracle DBA
- Performed proactive performance monitoring, reporting, and tunning of Oracle databases to ensure the highest standards of availability, resilience, integrity, security and performance required by business systems.
- Managed and maintained backup and recovery procedures (RMAN and Data Pump), rollout, patches and upgrades. Set up, configured and troubleshot Oracle streams replications.
- Resized, relocated and duplexed redo logs to either reduce log switching or eliminate contention. Resized, cloned, moved, partitioned and stripped table spaces, tables, indexes and rollback segments as the case might be.
- Performed data migration using Import/Export, Data Pump and SQL*Loader either interactively or batch mode.
- Designed, tested, implemented and documented database migration procedures.
- Provided a 24/7 support.
- Spearheaded special projects by instructing management on space projections for budget purposes, and database concepts during database tuning and report analysis.
Confidential
Oracle DBA
- Performed proactive monitoring of Oracle database using OEM and Grid Control. A member of the DBA team that managed several production and development databases running in a production support system of a telecommunication service provider using Oracle 9i, 10g and 11g on Unix OS, Sun Solaris and Windows NT servers.
- Installed and configured the Oracle software on several Unix and Windows servers. Successfully implemented scripts for new database creation and database moves.
- Executed Oracle TKPROF on session trace files to identify wait events, CPU timing and to query the Explain Plan.
- Created the development database hot backup and cold backup scripts scheduled utilizing Veritas net backup. Implemented database security through user administration, granting correct roles and privileges and the maintenance of the password utility.
- Tested and applied Oracle patches for software fixes and database upgrades.
- Managed logical and physical data structures, resolved errors from database links, snapshots and table space fragmentation.
- Troubleshot and resolved database connectivity issues for clients/users.
- Configured and created databases in the development, testing and production environments. Successfully upgraded several databases from 9i to 11g while providing both technical and functional support to internal customers.
- Developed and implemented Unix shell scripts used for both physical and logical backups.
Confidential
Network and Computer System Administrator
- Installed, configured, maintained and resolved issues for the networks.
- Planned, coordinated and implemented network security measures to protect data, software and hardware.
- Performed data backups and disaster recovery operations. Operated Master Console to monitor the performance of computer networks and to control user’s access.
- Designed, configured and tested computer hardware, networking software and operating system software. Trained and supervised staff, or participated in staffing decisions.
- Evaluated data processing proposals to assess project feasibility and requirements.
- Met with department heads, managers, supervisors, vendors, and others, to solicit cooperation and resolve problems. Stayed abreast of advances in technology.
- Reviewed project plans to plan and coordinate project activity.
- Developed computer information resources, provided data security and control, strategic computing, and disaster recovery.
- Provided users with technical support for computer problems.
Confidential
Computer Support Specialist
- Oversaw the daily performance of computer systems.
- Answered user inquiries regarding computer software or hardware operation to resolve problems.
- Entered commands and observed system functioning to verify correct operations and detect errors. Set up equipment for employee use, performed or ensured proper installation of cables, operating systems, or appropriate software.
- Installed and performed minor repairs to hardware, software, or peripheral equipment, followed design or installation specifications.
- Maintained records of daily data communication transactions, problems and remedial actions taken, or installation activities.
- Read technical manuals, conferred with users, or conducted computer diagnostics to investigate and resolve problems or to provide technical assistance and support.
- Referred major hardware or software problems or defective products to vendors or technicians for service.
- Developed training materials and procedures, or trained users in the proper use of hardware or software.
- Conferred with staff, users, and management to establish requirements for new systems or modifications.
TECHNICAL SKILLS
- AWS EC2,S3,VPC,ELB and RDS experience
- Migration of MySQL database on premise to AWS RDS
- Experience with Jenkins for CI/CD tool
- Experience in Apache/Tomcat (7.0+) Web Services
- Mysql database hardening and TLS/TDE implementation
- Familiar with Git CI tools
- Experience using BMC Remedy Change Management version 7.6.04.
- Good understanding of Oracle design, architecture, security, auditing & performance tuning.
- Ability to diagnose and correct problems such as but not limited to: errors caused by program faults, system resource limitations and database configuration settings.