Senior Cyber Security Analyst with more than 5 years with responsibilities into
large scale environments of proficient and thorough experience specialized in
incident response, proactive network monitoring of SIEM (ArcSight),
vulnerability assessments and penetration testing. Have a deep knowledge in
identifying and analyzing suspicious event. Versatile and ability to manage
sensitive materials. Able to use various security tools to perform logs and packet
analysis. Finally, can perform malware analysis with the overall objective to
ensure confidentiality, integrity and availability of the systems, networks, and
data
Dealing with high priority case escalations.
• Hands-on experience with SIEM platforms, such ArcSight; also,
Penetration Testing and Vulnerability Assessment.
• Identify suspicious/malicious activities or codes.
• Work closely with development, network, and support teams in
implementation of infrastructure components supporting emerging
technologies and applications.
• Manage multiple priorities effectively. Maintain clear and efficient
communications with management and customers. Provide interactive
discussion and guidance to peers. Discuss technical subject matter for
other IT functions.
• Perform incident response and forensic investigation tasks .
• Incident response technical lead for high impact cyber security
incidents.
• Evaluate events, escalations, and incidents to determine remediation
and resolution actions.
• Work with other teams to leverage extracted IOCs and IOAs to enhance
security posture of the organization.
• Analyze malware for functionality as well as extraction of indicators
that can be used as detection methods.
• Coordinate appropriate response activities across teams or directly with
partners to improve potential threats.
• Update playbooks to improve processes and information sharing across
teams.
• Provide knowledge sharing, mentoring, and support of more junior
team members.
• Identify and manage cyber security incidents.
• On-Call incident analysis for critical incidents.
• Ability to act independently and execute with limited information.
• Able to reflect TTPs to detection rules.
• Create custom dashboards and reports.
• Full Investigation and reporting of security incidents.
• Execution of security assessments vulnerability scanning, and
penetration testing.
• Stay up to date on the global and regional news related to security
breaches/vulnerabilities and advise management.
• Administration of security controls including SIEM, Firewalls,
vulnerability management, NDR, endpoint detection, etc.
• Mentorship of junior security analysts.
University of Jordan.
GPA: 3.33/4 - Very Good