Cloud and Cyber Security Consultant (Jun, 2016
–Mar, 2024) at EcadmicTube PVt ltd
PROFESSIONAL SUMMARY
Strong 9+Years Technical background in USA, UK, Australia, Kuwait, UAE, Oman, Jordon
followed 5+years as a Senior Cloud & Network Engineer in the USA Broad cross Platform
Experience Linux, Windows, Storage, VMWare.
A high level of application solutions knowledge and client / server applications in general, and a
high degree of understanding of best practice approaches for the implementation of enterprise-
wide technology.
Experienced with visualization technologies (Proxmox,VMWare, Hyper-V).
Worked knowledge of security regulations such as PCI-DSS, HIPAA, NIST, SOC2, Thread
Modeling, OWASP Top 10 and SANS 25.
Experience with tools: Aircrack-ng, Hydra, Burpsuite, Metasploit, OWASP-ZAP, Nmap, Wireshark, Sqlmap,
John-Ripper, CloudCracker, FoxProxy, netcraft, Cloudgoat,Pacu,Scout2, Nesuss.
Port scan servers using NMAP and close all unnecessary ports to reduce the attack surface.
Deployed over 450 Palo Alto VM Series 1, VM Series 2 and Palo Alto Networks VM-300 Bundle 2, Palo Alto
Prisma Access, Prisma Cloud, Cortex and Panorama to have a centralized management in AWS and on-
premises VM environments.
Hands-on experience in remote troubleshooting.
TECHNICAL SKILLS
o SIEM & Network Tools: Splunk, ELK, McAfee, Wireshark
o VMWare: Vsphere, ESXi 5, Virtual Box
o Rack Server: Dell PowerEdgeR110,R250
o AWS: (IAM, EBS, EC2, ALB,53, ACM, ELB, IGT, S3, SSO,CloudTrail,CloudWatch)
o Technologies: Routing, Switching and Firewall.
o Networking Protocols: IPv4, TCP, UDP, ICMP, SNMP, FTP and TFTP.
o Routing Protocols: OSPF, EIGRP, Static Routing and BGP.
o Switching concepts: VLAN, VTP, STP, Layer 3 Switching, and Inter VLAN Routing.
o Load balancing protocols: HSRP and VRRP.
oSecurity implementations: NAT/PAT, VPN Configuration, SSH, and ACL Configuration.
Key Responsibilities:
Offered technical assistance concerning security best practices, implementing novel processes that
significantly enhanced security measures across more than 10 business units.
Produced comprehensive training materials focusing on information security awareness, effectively
educating over 15 staff members within their initial month of employment.
Proactively monitored resources and applications using AWS Cloud Watch including creating alarms to monitor
metrics such as EBS, EC2, ELB, RDS, S3, SNS and configured notifications for the alarms generated based on
events defined.
Evaluated, deployed, and supported application security technologies, processes and workflows on multiple
platforms (Server, Client, Mobile, Tablet, etc.).
Assisted with designed and security oversight of next-generation firewalls, intrusion prevention systems, DDOS
solutions, SSL-terminating load balancers, WAF, security groups and NACL.
Recommended and managed transmission protection requirements for all environments (systems, applications,
containers, etc.) such as VPC peering best practices, SSL certificate management, key pairs, etc.
Administered IT-monitoring toolset like AWS CloudWatch to collect and track metrics, collect and monitor log
files, and set alarms that notify security team of users with console access and no two-factor authentication
enforced.
Prisma Cloud integration with QRadar and AWS for webhooks.
Deployed Palo Alto firewalls through L2 and L3 interfaces on models such as VM-300, VM-500, and VM-1000-
HV.
Leveraged Palo Alto Networks' Wildfire inspection engine to prevent Zero-Day attacks.
Responsible for providing support for network core and Ian infrastructure platforms, systems, and tools and
providing documentation and guidance to tier 1 and tier 2 support teams.
Implement advanced Palo Alto Firewall features like URL filtering, User-ID, App-ID, Content-ID on both inbound
and outbound traffic.
Managed the company's DNS, email, VPN, and firewall infrastructure, achieving a 100% uptime for a SaaS
offering catering to more than 500+ users.
Conducted penetration testing to rectify vulnerabilities in RW's applications, bolstering security measures by
67%.
Implemented a suite of security measures including firewalls, IDS/IPS, SIEM, DLP, and endpoint security
solutions, leading to a 79% reduction in malicious attacks year over year.
Conducted comprehensive network and web application penetration tests using tools like Burp Suite,
Arachni, OWASP, Nikto, SQLmap, and over 10 other automated utilities.
Devised and implemented robust security solutions fortifying the company's IT infrastructure against cyber
threats, resulting in an 89% reduction in security incidents.
Introduced innovative methodologies that substantially reduced the time needed to execute weekly backups
by 85%, resulting in a monthly saving of 24 person-hours.
Analyzed security incidents, resulting in a 48-hour reduction in the time required to detect and respond to
security breaches within the first year.
Updated security policies and procedures, ensuring compliance with over 20 regulatory standards at a rate of
98%, significantly boosting compliance scores.
Handling escalations and network-related Outages & Incidents
Responsible for Installing the Services to the Customers and Supporting them for any technical
difficulties.
Daily health check of the entire devices
Analyzing bandwidth utilization for different services/links.
Localizing the issue (Link down, packet drops, website issues, alarms, overload, and loss)
Crafted and implemented rigorous cloud security policies and protocols, driving a notable
enhancement in compliance adherence with industry benchmarks like ISO 27001 and NIST.
Engineered and rolled out a state-of-the-art cloud-based intrusion detection framework, achieving
a substantial reduction in the average response time to security breaches.
Performed routine audits of cloud security infrastructure, meticulously identifying and mitigating
potential risks, resulting in a commendable decrease in vulnerabilities.
Collaborated seamlessly with the DevOps team to seamlessly integrate security measures into
Continuous Integration/Continuous Deployment (CI/CD) pipelines, elevating the security posture
of application deployments by a significant.
Led the strategic planning and execution of a holistic cloud security framework, resulting in a
noteworthy 30% decline in security incidents and bolstering the organization's defenses against
cyber threats.
Drove the initiative for migrating vital business applications to cloud platforms, guaranteeing a
smooth transition devoid of any downtime, while concurrently boosting application performance
by an impressive.
Introduced automated security audits and compliance checks, leading to a notable 50% reduction
in manual effort and greatly enhancing the efficiency and precision of security assessments.
Directed the seamless integration of multi-cloud environments, optimizing system interoperability
and driving a notable reduction in operational expenditures.
Conducted comprehensive penetration tests on AWS environments, meticulously identifying
vulnerabilities and misconfigurations across various AWS services including EC2 instances, S3
buckets, IAM configurations, and web applications.
Collaborated closely with development and operations teams to remediate identified
vulnerabilities, providing expert guidance and recommendations to enhance the security posture
of AWS environments.
Leveraged expertise in AWS security practices and penetration testing methodologies to provide
actionable insights and recommendations to clients.
Held responsibility for leading and executing penetration testing projects from initiation to
completion, ensuring thorough testing and comprehensive reporting of findings.
Maintained up-to-date knowledge of emerging threats, vulnerabilities, and best practices in AWS
security, contributing to continuous improvement initiatives and knowledge sharing within the
organization.
Implemented stringent data encryption mechanisms and robust identity access management
protocols, yielding a significant 25% decrease in data breaches and unauthorized access events.