Summary
Overview
Work History
Education
Skills
Timeline
Generic

Chad Hargrove

Smyrna,GA

Summary

Experienced Microsoft Office 365/Azure Security Expert known for strong customer service, cloud-based identity and access expertise, and securing hybrid O365 environments. Proficient in communicating technical details to various stakeholders, fostering collaboration, and applying technology to solve business challenges.

Overview

6
6
years of professional experience

Work History

Security Analyst and Security Engineer

Georgia Secretary Of State
05.2021 - Current
  • Onboard new users by setting up accounts AND OU (Organization Unit Groups) in Active Directory (On Prem), Azure AD, and assigning Office 365 license.
  • Implemented and managed Role-Based Access Control (RBAC) policies for Azure subscriptions, ensuring secure and least-privilege access for users and services.
  • · Deployed Azure Firewall to create centralized hubs for monitoring and controlling network traffic between virtual networks in compliance with NIST 800-53 R4 Standard,
  • · Delivered internal technical training to Advisory staff as required.
  • · Configured and deployed MFA (Multifactor Authentication) and used SSO for passwordless authentication to reduce risk of compromised credentials.
  • Enabling Azure Defender on subscriptions to protect Azure and hybrid resources to protect management ports of VMs with Just-in-time and adaptive applications controls.
  • Azure/O365 security center – Compliance manager i.e., Azure Benchmark and NIST 800-53/NIST 800-37.
  • Managed Windows application patching and Endpoint security by utilizing Intune for deployment of software and application updates through Intune Admin Center.
  • Offered technical assistance for O365 services and addressed service-related problems by conducting research, troubleshooting, and collaborating with Microsoft for resolution.
  • Device enrollment via Intune Device Enrollment, Device Configuration, Device Security, Conditional Access.
  • Leveraged Cortex XDR's anti-malware and virus threat intelligence feeds with machine learning capabilities to block malicious email attachments in real-time after reviewing quarantined emails in Office 365 Email & Collaboration.
  • Safe guarded access to critical enterprise systems protected by Microsoft Defender by creating Endpoint Access Policies.
  • Enhanced Data Loss Prevention (DLP) measures by meticulously configuring read and write permissions for Service Accounts utilized in network share data backup operations
  • Conduct vulnerability scans of all corporate devices with Nessus Vulnerability scanner.
  • Managed multiple Palo Alto firewalls with Palo Alto Panorama Firewall Manager.
  • Configured and update Palo Alto Global Protect VPN.
  • Detect, record, and monitor potential security weaknesses targeting particular applications within the banking environment using Tenable Nessus
  • Automation Framework for Critical Vulnerabilities: Provide automation structure that initiates ticket workflows whenever critical vulnerabilities are identified on systems.
  • Managing Browser Extensions and OAuth Grants with Microsoft Intune: Utilizing Microsoft Intune in conjunction with Azure and Office 365 to manage browser extensions and oversee OAuth Grants on the company's network.
  • Creating an Endpoint Security Foundation: Developing a comprehensive foundation for endpoint security, complete with dashboards and reports to detect non-compliant systems using Tenable Nessus.
  • Integrating SaaS Application and Internal System Events into SIEM: Incorporating events from various SaaS applications and internal systems into the Security Information and Event Management (SIEM) system using Azure Sentinel.
  • Leveraging Azure Monitor and Azure Sentinel to improve threat detection and create playbooks for streamlining ticket triage in the ServiceNow ticketing system as part of various initiatives.
  • Use Real-Time Visibility to detect vulnerable endpoints using Tanium
  • Set up Logs Analytics Workspace and managed alerts with Microsoft Sentinel.

Office 365 Security Analyst

Cytech Solutions
01.2020 - 04.2021
  • Conducted regular scans of large enterprise networks consisting of over 100 servers and workstations using Qualys Vulnerability Management.
  • Collaborated with compliance and audit teams to streamline reporting and facilitate quicker remediation of compliance-related vulnerabilities.
  • Manage email allow and safe sender list by leveraging Exchange Online Protection (EOP)
  • Continuously overseeing the Microsoft security score and proactively implementing recommended enhancements within the "Email & Collaboration" domain of Office 365 Admin Center.
  • Troubleshoot email delivery issues in Outlook by performing message trace in Office Admin Portal.
  • Manage user accounts in office 365, Active Directory, and Azure AD
  • AWS S3 Security: Proficient in securing AWS S3 buckets by configuring and monitoring access controls, including AWS Identity and Access Management (IAM), bucket policies, and Access Control Lists (ACLs). Implemented automated solutions using AWS Lambda to detect and remediate public access violations while setting up alerts for immediate response.
  • Skilled in SCCM for patch management, ensuring endpoint security compliance through software updates and remote support. Leveraged SCCM for streamlined remote troubleshooting and assistance, improving IT support efficiency.

NOC Analyst

ServIT Inc
02.2019 - 04.2020
  • Managed Break/Fix incidents and performed device decommissioning for surplus or re-imaging.
  • Configured Dell Optiplex 5090 workstations for new hire onboarding.
  • Set up network printers and performed software deployments.
  • Addressed ISSO requests for decryption, including BitLocker Recovery Key Requests and Data Loss and Recovery tickets.
  • Led a team of service desk engineers in successfully completing two Life Cycle Refresh initiatives.
  • Efficiently managed the Service Now ticket queue, ensuring prompt resolution of service requests and incidents.
  • Assisted with user account management tasks in Active Directory, including password resets and access provisioning.
  • Utilized remote tool Bomgar for quick resolution of desktop and laptop issues.

Help Desk Analyst Tier 1

Apex Systems
03.2018 - 01.2019
  • Managed Break/Fix situations.
  • Conducted decommissioning of devices for surplus or re-imaging purposes, facilitated new hire onboarding by configuring Dell Optiplex 5090 workstations, Set up network printers and mapped them using ip address, executed software deployments, and addressed ISSO requests for decryption. Handled BitLocker Recovery Key Request and Data Loss and Recovery tickets.
  • Led team of service desk engineers in proficient completion of two Life Cycle Refresh initiatives: Windows 10 upgrade and replacement of out-of-warranty devices via consulting Dell Support website using pc asset tag#.
  • Effectively oversaw and organized Service Now ticket queue, guaranteeing prompt resolution of service requests and incidents, all while upholding superior levels of customer satisfaction.
  • Assisted with user account management tasks, including password resets, access provisioning, and account deactivation in Active Directory.
  • Effectively used remote tool Bomgar to resolve desktop and laptop issues quickly.

Education

Associate of Science - Azure Security

Https://www.leveldcareers.com/
Remote
06.2023

CompTIA - Information Technology

MyComputerCareer.com / TechSkills
Indianapolis, IN
01.2020

Bachelor of Computer Science - Information Technology

Hinds Community College
Raymond, MS
08.2013

Skills

  • Endpoint Manager, Mobile Application Management (MAM), Azure Benchmark, Identity & Access
  • Management (IAM), Zero Trust, Microsoft Information Protection, Cloud App Security (MCAS), Azure Active
  • Directory (AAD), Data Loss Prevention (DLP), Microsoft Defender, O365, Enterprise Mobility and Security
  • (EMS) and SIEM, Microsoft 365 Defender, Microsoft Defender for Endpoint
  • Security threat response
  • Security Monitoring
  • Information security
  • Microsoft Sentinel
  • Intune (Cloud version of SSCM)
  • Nessus Vulnerability Management
  • NIST 800-53 & NIST 800-37
  • Data Loss Prevention
  • Qualys Vulnerability Management

Timeline

Security Analyst and Security Engineer

Georgia Secretary Of State
05.2021 - Current

Office 365 Security Analyst

Cytech Solutions
01.2020 - 04.2021

NOC Analyst

ServIT Inc
02.2019 - 04.2020

Help Desk Analyst Tier 1

Apex Systems
03.2018 - 01.2019

Associate of Science - Azure Security

Https://www.leveldcareers.com/

CompTIA - Information Technology

MyComputerCareer.com / TechSkills

Bachelor of Computer Science - Information Technology

Hinds Community College
Chad Hargrove