Summary
Overview
Work History
Education
Skills
Certification
Timeline
Generic

Alexander Sumo

Stanley,North Carolina

Summary

Proven ability to identify trends and concepts across the cyber spectrum and develop/implement technological strategies to build secure walls to ensure the safety of businesses and clients. A natural communicator with strong motivational skills with the ability to build and lead successful teams.

Overview

9
9
years of professional experience
1
1
Certification

Work History

Cyber Security Analyst II

United State Postal Service
06.2021 - Current
  • Perform real-time monitoring using Splunk Dashboard, CrowdStrike and O365 Defender Dashboard.
  • Investigate security events, Analyze malware's, investigate phishing emails, and all threats.
  • Use open-source intelligence tools to investigate threats reported by SIEM tools and take preventive actions
  • Wipe laptops and phones that are compromised.
  • Investigate domains, IP address and block all that are threats to the network.
  • Manage AWS Security Hub vulnerabilities remediation, automated AWS Inspector to scan AWS EC2 instances and utilize Systems Manager for patching
  • Escalate cases to the Incident response team that need further actions or to other teams for further actions
  • Attend weekly meeting to share threat intelligence and put plans in action for threats that the company is facing
  • Work closely with DevOps team, IR & other security team
  • Take phone calls from employee, investigate issue reported and educate employee on the threats.

Security Engineer II

Charter communication
06.2018 - 06.2021
  • Monitor real-time alerts using SIEM tools, like Splunk, Symantec End Point Detection, Tanium, O365 Defender
  • Pick up alerts and investigate all threats and take actions to prevent harm to the network.
  • Analyze logs from all of the tools and document all findings. Email and set up meeting with other teams
  • Complete Pcap analysis,complete IP's and Domains block to mitigate threats
  • Investigate Dos and DDos attacks and document finding and close ticket
  • Investigate security Event from end point devices using crowd-strike, documents findings and act on findings
  • Performed evaluation testing on enterprise intrusion detection systems and prevention systems (IDS/IPS)
  • Understanding of SOAR products and EDR technologies
  • Experience with network protocols, data flows, and vulnerabilities within a TCP/IP environment
  • Take phone calls from Employees, open investigation on employee issue, Freeze Endpoint if necessary
  • Run updated scan on employees endpoints, request attributions, delete unused files and re-image end points


Lead IT Network Engineer

Lowe's Cooperation
01.2016 - 06.2018
  • Install network devices and Troubleshoot Connectivity issues to make sure that the device installed are working
  • Maintained and monitor the network devices installed by my team until the project is over
  • Configure Access points after the field tech installation and complete documentations
  • Collaborate in weekly meeting with other departments and Vendors for update and plans on projects
  • Create training Documentations on new projects and train staff on the new projects
  • Triage and Escalate issues to the right team for further investigating or assistance
  • Work with Vendors to make sure that the company issues are resolve and documented
  • Provide project documentations to field technicians and Work with filed technicians to complete the project.

SOC & NOC Infrastructure Management

CompuCom Cooperation
11.2014 - 11.2016
  • Performed network manage services for enterprise business, investigate issues and ensure SLA are met.
  • Troubleshoot layer 1 and 2 issues with customer remotely and login to routers and switches to investigate issues
  • Open ticket with the ISPs on network connectivity issue and work with the ISP to ensure that the issues are resolve
  • Configure routers and switches and troubleshoot connectivity issues
  • Created and complete change request for customers in the portal or on the phone with the customers
  • Take phone calls from customers, open tickets and update customer on investigations hourly
  • Forced Customer devices on the backup while working with the ISP to get the primary restore
  • Complete documentations, update tickets and escalate issues to level II and other departments.

Education

Associate of Science - Cyber Security

Rowan Cabarrus Community College
Concord, NC

Skills

  • Splunk
  • Symantec
  • Fire-Eye
  • Firepower
  • Arbor
  • Azure-O365 defender
  • Falcon-crowdstrike
  • AWS Cloud Services:
  • Security Hub
  • GuardDuty,EC2

Certification

CYSA+, AWS Certified Security – Specialty, CCNA, & MAT Security Fundamental

Timeline

Cyber Security Analyst II

United State Postal Service
06.2021 - Current

Security Engineer II

Charter communication
06.2018 - 06.2021

Lead IT Network Engineer

Lowe's Cooperation
01.2016 - 06.2018

SOC & NOC Infrastructure Management

CompuCom Cooperation
11.2014 - 11.2016

Associate of Science - Cyber Security

Rowan Cabarrus Community College
Alexander Sumo