Summary
Overview
Work History
Skills
Certification
Timeline
Generic

Blaise Wan Ngalla

Mesquite,TX

Summary

Experienced SOC Analyst with more than 5 years experience in Information security with a proven track record of successfully performing network, endpoint, and phishing investigations. Skilled in Incident Response, Threat Hunting, Windows forensics, Intrusion Detection, Vulnerability Assessment, and strategies needed to safeguard highly sensitive systems, data, and communications resources. Self-motivated and goal-oriented cyber security professional with a demonstrated ability to handle complex responsibilities in a demanding environment.

Overview

6
6
years of professional experience
1
1
Certification

Work History

SOC Analyst II

TMNA Services
12.2018 - Current
  • Performed Incident Response, threat hunting and Forensic analysis on infected hosts and ensuring that incidents are recorded and tracked in accordance with organizational SOPs.
  • Investigated phishing alerts up until containment and eradication.
  • Performed vulnerability assessments and management.
  • Performed real-time log monitoring for different devices/servers hosted both on prem and in Azure/AWS such as Firewalls, IDS, IPS, Operating Systems like Windows, Linux, Proxy Servers, Windows Servers, System Application, Databases, Web Servers, and Networking Devices.
  • Assisted with development of processes and procedures to improve incident response times, analysis of incidents, and overall, SOC functions.
  • Utilizing Azure Identity Protection to detect and mitigate potential security threats related to identity and access management.
  • Identified root causes of security breaches through thorough investigation and analysis of log data.
  • Provided technical support during high-priority incidents, ensuring timely resolution with minimal impact on business operations.
  • Provided expert guidance on cybersecurity trends and emerging threats to internal stakeholders for informed decision making.
  • Improved incident management workflows through streamlined communication between SOC Analysts, IT departments, and other relevant parties.
  • Leveraged advanced analytics tools for proactive identification of cyber threats, enabling early response actions against potential attacks.
  • Evaluated new cybersecurity solutions through rigorous testing procedures, recommending most appropriate technologies based on specific requirements and budget constraints.
  • Trained junior analysts in threat intelligence gathering techniques, improving overall team efficiency.
  • Educated and trained users on information security policies and procedures.

Technical Analyst

Texas Department of Criminal Justice
02.2018 - 12.2018
  • Expertly installed and repaired facility and division IT equipment and software per TDCJ standards and guidelines, including terminals, personal computers, printers, cabling, and related software products.
  • Provided exceptional customer support by promptly responding to and resolving inquiries and requests for assistance with division or facility computer systems.
  • Demonstrated analytical skills by providing hands-on support for simple to moderate inquiries and determining appropriate technical areas or vendors to resolve problems and coordinating with other technical areas, as needed.
  • Maintained documentation for each incident or request and escalated complex problems to appropriate level of support per documented procedures.
  • Delivered 24x7 on-call support based on division IT staff rotation and carried pager as warranted.
  • Trained and aided users on division and facility technology, performed preventative maintenance and effectively worked with customers, Service Desk and Technical Services personnel.

Skills

  • Windows Forensic analysis
  • Incident Response
  • Intrusion Detection
  • Threat Hunting
  • Phishing Email Investigations
  • Malware Analysis/Endpoint Security
  • Network Security Protocols/ TCP/IP
  • Data Loss Prevention
  • Vulnerability management
  • AWS/Azure
  • Threat Hunting/Threat intelligence
  • Splunk/Rapid7/Sentinel
  • ServiceNow/ConnectWise
  • CarbonBlack/CrowdStrike/Defender ATP/SentinelOne/
  • Windows/Linux/Unix/Powershell
  • Fast Learner/Self-motivated/ability to multitask/work in a fast-paced environment/problem-solving
  • Creative, innovative, and strategic thinker

Certification

  • MSc . CyberSecurity and Information assurance - Pending
  • CISSP - Certified Information System Security Professional
  • GCFE - GIAC Certified Forensic Examiner
  • GSEC - GIAC Security Essentials Certification
  • CompTIA security+
  • CompTIA Network+
  • AWS Solutions Architect
  • BSc. Botany and Plant Physiology

Timeline

SOC Analyst II

TMNA Services
12.2018 - Current

Technical Analyst

Texas Department of Criminal Justice
02.2018 - 12.2018
Blaise Wan Ngalla