Summary
Overview
Work History
Education
Skills
Affiliations
Certification
Accomplishments
Timeline
Generic

IMADUDDIN MOHAMMED

Naperville,IL

Summary

Experienced professional with a strong background in technology-related roles. Proficient in software development, system administration, and technical support. Skilled in problem-solving and optimizing performance. Capable of managing projects and collaborating effectively with teams. Committed to continuous learning and staying current with industry trends to contribute to organizational success.

Overview

10
10
years of professional experience
1
1
Certificate

Work History

Cyber Security Analyst

Preventive Measures
Atlanta, GA
03.2024 - 05.2024
  • Performed IT audits which entail Identifying and defining issues, developing criteria, reviewing and analyzing evidence and documenting client processes and procedures.
  • Performed audits using ISMS ISO 27001 SOC2, HIPPA amd cyber security frameworks.
  • Worked on NIST IT controls, applications, networks, operation, change management, logical, physical and environmental controls.
  • Performed SAST security assessments of web-based applications and mobile applications using Burp Suite Professional, APK, and iOS file source code static testing. Used Genymotion emulator and MOBSF static testing, including external penetration tests.
  • Analyzed network traffic logs, firewall logs, intrusion detection system alerts, and antivirus reports to identify potential threats.
  • Designed solutions to protect against common web attacks, such as cross-site scripting, CSRF, and SQL injection.
  • Developed and implemented secure coding practices for applications using Sonar-Qube SAST source code analysis.
  • Performed manual testing on web-based, mobile, and desktop applications.
  • Performed unit testing of the developed application to ensure compatibility with different versions of Android OS using Android ADB.
  • Drafted reports summarizing the results of investigations into potential non-compliance and maintain SOP's.
  • Monitored changes in relevant federal and state regulations, rules, and laws related to HIPAA compliance.

Senior Security Analyst L3

Wipro Limited
Naperville, IL
08.2021 - 02.2024
  • Performed Installation, configuration and upgrade of Key components of CyberArk Suite like Azure EPV Vault
    (Primary, DR), PVWA, CPM, PSM, and PTA components from 10.5v to 12.2 version client (SEC).
  • Performed the M365 backup restoration of 20,000+ user accounts, Azure active directory domain, applications from service provider, and consumer accounts.
  • Performed capacity planning of CyberArk Storage, PSM Session recordings, and user licensing.
  • Develop custom CPM web and SSH-based plugin development, as per the requirement, for managing the credentials for Enterprise web applications and target machines.
  • Performed IT audits security operations gap assessments SSO platform like PAAS web application services on-boarding (such as hardening Cisco devices, Oracle products, SaaS applications and access/role/safe design segregation of duties SOD client (MAC-MN).
  • Setup auto discovery and auto on-boarding of privileged accounts and their dependencies (windows services, IISAppPool’s) in the network.
  • Monitored network traffic for suspicious activity using SIEM tools, such as Splunk, FireEye Helix, and EDR-Crowdstrike.
  • Performed Incident response by gathering evidence security alerts, vulnerabilities and potential malicious activities through log analysis.
  • Performed administration roles of Office 365 and Azure AD accounts on global administration for the largest Food (Kellogg's)Industry.
  • Performed perimeter defense, Email/SMTP gateways using Azure SASE CASB for analyzing phishing emails, threat URLs, attachments' Exif data using Isolation browser and Kali Linux.
  • Experience in creation of policies, compliance, and following clauses of ISMS 27001 and NIST OWASP top 10 standards as defined by Risk/Audit/IT Security, and execution of project. tasks defined by the SME in the design/architecture phase.

Cyber Security Analyst L2

Ernst & Young
Hyderabad, Telangana
02.2018 - 03.2020
  • Performed SOC operation of creating, modifying, and deactivating user accounts, and controlling their access to systems, applications, and data.
  • Responsible to onboard integrate new application to Azure AD with SAML OAuth standards.
  • Worked on integration micorsoft Azure MFA with single-sign on VPN, connections oracle access manager, VDI and other third party tools.
  • Performed SSO connections in Azure AD with SAML 2.0 framework.
  • Implement the access control, MFA, creating active directory cloud for application services in Azure management portal using RBAC other protocols by following NIST controls.
  • Experience in deliver provision for login issues check for logs files work with client and SAML level 3 to find root cause analysis fro SSO issues gather accurate useful information form end user for SSO/MFA issues.
  • Worked closely with application teams and resolved the issues for their Java, .Net based applications to retrieve the passwords using AAM.
  • Performed internal audits to ensure compliance with existing controls for SOC1/SOC2 reports.
  • Performed security testing vulnerability scanning tools like Nessus, Wireshark, Nmap.
  • Prepare documents findings in the security assessments reports (SAR) and conduct risk assessments testing and documentation of key SOC2 and IT general controls leveraging a defined process compliance monitoring process.
  • Performed security awareness training and campaign programs deliver the campaign reports to managements.

Cyber Security Analyst

Omega Tech
Hyderabad, Telangana
09.2014 - 09.2017
  • Worked as a Level-2 Analyst and perform security operations using SIEM IBM Qradar and RSA NetWitness Platforms which includes use case creation, dashboard design, tuning of use cases to minimize false positives.
  • Experience on working DMARC, DKIM and SPF alignment for 100+ domains for confidential by implementing EFD (Email Fraud Defense) proofpoint CASB artificial intelligence solutions.
  • Experience in threat hunting and independent threat research to find malware, bugs, vulnerabilities and weakness in web and mobile applications.
  • Work on Rapid7 insight platform XDR to analysis the end point detection files meta data threat Intelligence and anticipate the behavior foreshadow breaches.
  • Scale and analysis the data get details timeline XDR rapid7 with advance detection library and continuous base line health activity.
  • Build proof of concepts and develop security strategies, Manage Offshore staff, Predictive Security Analytics.
  • Red Team/ Blue Team Exercises with postmortem remediation efforts and lessons learned.
  • Extensive experience in forensic analysis and data harvesting from Windows and Mac operating systems.
  • Develop acquisition, analysis, and e-discovery harvesting from Windows systems.
  • Assist the management in day-to-day lab operations and assist the mentors during examinations.

Education

Master of Science - Cyber Security

Campbellsville University
Campbellsville, KY
08-2023

Bachelor of Science - Cyber Security

JNTU
India Hyderabad
08-2013

Skills

  • SIEM Solution IBM Qradar, FireEye Helix, Splunk, RSA Netwittness
  • EDR,XDR Crowdstrike DLP Symantec Solutions
  • VAPT Burpsuite, Veracode, Sonarqube, Mobsf, Android ADB, metasploit, Nmap, Nessus
  • Forensics OEM tools like AccessData FTK, Encase, UFED, Oxygen, IMsolo4, HTCI Eadsfox Raid Machines, elcomsoft passware, Oceans systems, Hydra autopsy, OSINT
  • CyberArk enterprise privilege management components PVWA
  • Intermediate experience in Java SE/EE, Python and Bash scripting

Affiliations

  • Participates Hackathon in (2018- 2020) analysis the disk forensics to recover deleted folders and morphing photos check the meta data of vulnerable jpg file in which consist malicious peace of code to capture the CSRF credentials using open source tools like autopsy, FTK Imager kali linux Exif meta data and analyze the artifacts Encase.
  • Challenge to takeover the windows 2012R2 server operating system in which disable the anti virus service and take over the user, domain and account information.
  • Developed an application and presented in the opensource community, Application named AUTO-C: a tweaked C/C++ Compiler

Certification

  • Certified Ethical Hacker ECH:- ECC7294510386
  • Cisco Certified Network Associate (CCNA) CISCO ID: CSCO12521829
  • Certified CyberArk Sentry, CD.
  • Certifed Splunk Fundementals.
  • Certified Mobile Examiner UFED.
  • Certified AccessData Examiner.
  • Certified ISO 27001 Provisional Auditor.
  • Certified Proofpoint Azure CASB Analyst.
  • Certified Nullcon DevSecOps.
  • Certified Data Science 101.

Accomplishments

  • Delivered training Telangana state of police 2017 batch as a computer forensics.
  • Delivered training to a TSPA (Telangana State Police Academy) for four days on forensics tools like FTK, AD Triage, ImagerSolo-4,5 and Oxygen.
  • Delivered training to CB-CID Haryana police North Zone-sector28 on concepts of networking and cyber forensics.
  • Delivered training to TS 11 Districts Karimnagar, Mahabubnagar, Nizamabad, Siddipet,Medak. On OEM tools FTK AD Triage.
  • Delivered training in Central Detective training school of BPRND, MHA on cyber Forensics and investigation and Security threat analysis operations.

Timeline

Cyber Security Analyst

Preventive Measures
03.2024 - 05.2024

Senior Security Analyst L3

Wipro Limited
08.2021 - 02.2024

Cyber Security Analyst L2

Ernst & Young
02.2018 - 03.2020

Cyber Security Analyst

Omega Tech
09.2014 - 09.2017
  • Certified Ethical Hacker ECH:- ECC7294510386
  • Cisco Certified Network Associate (CCNA) CISCO ID: CSCO12521829
  • Certified CyberArk Sentry, CD.
  • Certifed Splunk Fundementals.
  • Certified Mobile Examiner UFED.
  • Certified AccessData Examiner.
  • Certified ISO 27001 Provisional Auditor.
  • Certified Proofpoint Azure CASB Analyst.
  • Certified Nullcon DevSecOps.
  • Certified Data Science 101.

Master of Science - Cyber Security

Campbellsville University

Bachelor of Science - Cyber Security

JNTU
IMADUDDIN MOHAMMED