Detail oriented cybersecurity professional with an excellent work ethic and interpersonal skills, seeking a challenging position related to Information Technology and Cyber Security. I have Microsoft SC-200 certificate and I am currently working towards obtaining Azure-500 certification.
Overview
5
5
years of professional experience
1
1
Certification
Work History
Cyber Security Analyst
Relativity
05.2021 - Current
NECreate and track incidents and requests with an integrated ServiceNow (SNOW) ticketing system
Follow detailed operational processes and procedures to appropriately analyze, escalate, and assist in the remediation of security incidents
Perform analysis of log files of Firewall, IPS, IDS, Server, and Proxy via Sentinel SIEM solution
Manage and monitor day to day alerts from Defender for Endpoint EDR
Analyze PCAP files for Malware analysis and find details of the infected hosts and write IOC on executive summary reports
Identify, track, and investigate high-priority threat campaigns, malicious actors with the interest, capability, and TTPs (Techniques, Tactics, and Procedures)
Analyze and review escalated cases until closure
Conduct core information security activities: Security Information and Event Management (SIEM), Malware Detection, Vulnerability Management, Education & Awareness, Open-Source Intelligence (OSINT), Network Monitoring and Log Analysis
Monitor and analyze Security Information and Event Management (SIEM) alerts through Splunk and identify security incidents for remediation and investigation
Provide information regarding intrusion events, security incidents, and other threat indications and warning information to the client.
SOC Analyst I
VisionTEK Global Services
04.2020 - 04.2021
SIEM experience of Microsoft Azure Sentinel
Primary tasks include real time monitoring, investigating Alerts, reporting and troubleshooting.
Experience on various log sources like MCAS, Cisco Umbrella, AzureAD and Identity protection and Proofpoint.
Experience in KQL queries.
SOP and run book creation for process building.
Analyze the Alerts and as per that inform to the admin for Fine-tuning about false offenses.
Assist with postmortem analysis of information security breaches,violations and incidents to identify root cause and lessons learned.
Experience in Defender XDR.
Monitor inbound and outbound traffic for the firewall andinvestigating events.
Education
BS - Science and Technology
Turkey
01.2012
Skills
Problem Solving
Critical Thinking
Teamwork
Attention to Detail
Collaboration
Time Management
Security: Risk Analysis
Malware Analysis
Phishing Analysis
Threat Analysis
MITRE ATT&CK Framework
Defender for Endpoint EDR
AnyRun
VirusTotal
CIS /NIST Framework
Network: Wireshark
Pcap Analysis
Nmap
Nessus
Cyber Kill Chain Framework
TCP/IP
MCAS
Defender for O365
Defender for Identity
Vulnerability Management
Sentinel SIEM
Certification
CompTIA Security+
IBM Cybersecurity Analyst Professional Certificate
Splunk Search Specialization by Coursera
Vulnerability Management Specialist by Qualys
DDOS Attacks & Defenses by University of Colorado
Cisco Threat Hunting Workshop
Introduction to Microsoft Azure Cloud Services by Coursera
Wireshark Project Certificate by Coursera
OWASP Top 10 by Coursera
Salesforce Platform Developer I
Salesforce Admin
Personal Information
Title: Cyber Security Analyst
Projects
Event Management Application, June 2019-2020, Implemented an Event Management project including business processes for a company which adapts salesforce as a CRM. Integrated salesforce platform with third party systems using REST Api. Donation Management Application, June 2020-2021, Implemented a Donation management application project to allow the organization to efficiently and securely track and manage their donations, donor information, and fundraising campaigns by using Salesforce platform.