Noble Consulting, LLCLead Cyber Engineer
Sep. 2010 - Sep. 2018United StatesProvided client support on system operation and troubleshooting. Performed system analysis, documentation, testing, implementation and user support for platform transitions. Supported Named Accounts and Territory Reps with award-winning SIEM and operational intelligence platform, providing operational awareness for SOCs and Incident response teams, addressing compliance requirements including PCI, FISMA, HIPAA, SOX, ISO and others. I have established compatibility with third-party software products by developing a program for modification and integration. They are designed and implemented complex Internet and Intranet applications on multiple platforms and developed and maintained various VMware servers. ESXi and Server refresh project, with a scope covering over 1000 VM's and servers. Managed and monitored all installed systems and infrastructure to ensure the highest level of availability and worked on Central Management Server (VCenter) to manager all the ESX Hosts in the datacenter. Ran vulnerability and compliance scanning on test machines and reviewed security standard and Minimum Security Baseline for the client. Executed functionality and feature development both within the current application framework. Performed live packet data capture with Wireshark to examine security flaws, and used LDAP injection techniques of exploiting web applications. Troubleshot and researched security incidents using SIEM applications, McAfee Enterprise Security Manager, McAfee Endpoint Protection, IBM Qradar Security Intelligence Platform, and HP ArcSight. Investigation logs and payloads for server crashes, core dumps, DDoS attacks, SQL, XSS, Spam, and more. Event analysis and correlation using multiple log sources, including Windows, Linux, Cisco ASA Systems, and SIEM Solutions.