Summary
Overview
Work History
Education
Skills
Certification
Work Availability
Timeline
Hi, I’m

Frank Sowah

Washington,DC
Frank Sowah

Summary

Highly skilled Sr. Cyber Security Analyst with over 9+ years of experience in Security Operations Centre (SOC) environments. Specialized in threat hunting, incident response, and policy auditing within SIEM platforms. Proficient in Microsoft 365 security products and experienced in mentoring and developing SOC analysts. An analytical problem solver with a proven track record of implementing proactive measures, resulting in a significant reduction in security incidents. Holds a Bachelor's degree in Computer Science and currently studying for a master's in cyber security and information assurance. Committed to staying updated with the latest cybersecurity trends to ensure continuous improvement in security practices. Fluent in English.

Overview

13
years of professional experience
4
Certification

Work History

Toyota Tsusho America, Inc
, TX

Sr. Detection and Response Analyst
11.2020 - Current

Job overview

  • Contribute to analyzing cyber incidents and alerts for potential escalation, playing a crucial role in supporting the Cyber Fusion Center to prevent and mitigate cyberattacks.
  • Conduct in-depth analysis of security events, identify indicators of compromise (IOCs), perform intrusion and root cause analysis, and proactively take measures to minimize potential damage to the cyber ecosystem.
  • Detect and respond to security incidents using detection/response platforms, triage incidents, and analyze them through cyber threat intelligence and protection devices.
  • Follow playbooks and SOPs to escalate cybersecurity events and assist in containment and remediation efforts during incidents, tracking details in the internal ticketing system.
  • Conduct threat hunting activities based on internal and external threat intelligence and assist with service requests from customers and internal teams.
  • Identify, recommend, coordinate, and deliver timely knowledge to support teams, keeping management informed of project progress, issues, and changes.
  • Report information to supervisors and upper management, responding to requests for information and assistance.
  • Develop comprehensive documents and manuals for team members and management, working on establishing repeatable and continually improving processes.
  • Serve as a mentor and provide training to other team members as needed.
  • Identified security threats, vulnerabilities and potential malicious activities through log analysis.
  • Developed and implemented strategies to detect emerging cyber threats.
  • Monitored network traffic for suspicious activity using SIEM tools such as Splunk and LogRhythm.
  • Performed incident response and root cause analysis on security incidents.
  • Installed firewalls, intrusion detection systems, anti-virus software and other security measures to protect networks from outside attacks.
  • Conducted vulnerability assessments of IT systems and applications.
  • Analyzed logs from various sources including web servers, application servers, databases, IDS and IPS systems. for possible security breaches.

Marriott International, Inc.
, MD

Sr. SOC Analyst Global Security Operations Center
02.2017 - 11.2020

Job overview

• Assist in handling escalated computer security incidents and cyber investigations, encompassing computer and network forensics, root cause analysis, and malware analysis.

• Recognize areas requiring updates in data security policies and procedures, guiding and training team members accordingly.

• Collaborate with Information Security teams, risk officers, and technology management to shape cybersecurity strategy.

• Document assessment findings on security control implementation, conducting risk assessments based on control status and examination results.

• Act as a coordinator for escalated cyber threats/incidents, ensuring adherence to policies and regulatory requirements.

• Utilize XSOAR for investigating common security threats and work on enhancing security monitoring tools with contextual information.

• Deliver cyber intelligence services and insights to IT and business leaders, identifying new threat tactics used by cyber actors.

• Manage real-time monitoring of third-party security feeds, forums, and mailing lists, utilizing Splunk to investigate threats in the network environment.

• Utilize Netflow analysis, Gigamons, and HPNA for operational support and monitoring of the network infrastructure.

  • Developed and implemented security policies and procedures.
  • Monitored network traffic to detect suspicious activities or policy violations.
  • Performed vulnerability scans on systems, networks, applications and databases.
  • Analyzed system logs and identified potential threats or risks.
  • Provided guidance and technical support for security related projects.

Marriott International, Inc.
, MD

Information Security Analyst
02.2013 - 02.2017

Job overview

· Led and participated in Incident Response for SOC customers, covering Threat Detection, Response, and Remediation. Served as incident commander, effectively communicated issues, and provided recommendations for resolutions. Developed timelines and provided companywide updates during incidents, following disaster recovery procedures. Monitored phishing emails, investigated malware threats, and analyzed malware impact via Splunk and IronPort. Established disaster recovery procedures for SOC team, conducting monthly testing and training. Conducted security control and risk assessments based on security policies and best practices. Analyzed daily reports through NORSE SIEM and Netcool monitoring system for potential threats. Utilized Carbon Black to monitor user activities and restrict access based on vulnerability and impact analysis. Continuously assessed, tested, and implemented new security technologies to enhance network security.

Marriott International, Inc.
, MD

IT Support Technician
02.2011 - 02.2013

Job overview

· Supported internal and external users through troubleshooting, issue escalation, and deploying hardware/software.

· Assisted with installations, upgrades, and provided advanced troubleshooting for Windows and Mac OS.

· Identified and recommended upgrades to IT and communications infrastructure.

· Collaborated with unit personnel on infrastructure development.

· Addressed performance and capacity issues.

· Provided onsite and remote technical support.

· Managed equipment installations, removals, and monitored network infrastructure.

· Utilized ticketing systems Remedy and ServiceNow for documentation and issue resolution.

Education

Western Governors University

Master of Science from Cyber Security & Information Assurance

Valley View University

Bachelor of Science from Computer Science

Michigan State University

Diploma from Hospitality Leadership

Michigan State University

Diploma from Business Management

Michigan State University

Diploma from Management Certificate in Business of Hospitality

Skills

  • Firewall Configuration
  • Application Security
  • Scripting Languages
  • Penetration Testing
  • Intrusion Detection
  • Reverse Engineering
  • Incident Response
  • Compliance Standards
  • Access Control
  • Web Security
  • Protecting Networks
  • Data Security
  • Encryption
  • Managing Security Breaches
  • Monitoring Computer Viruses
  • Regulatory Compliance
  • Tenable Nessus
  • Risk Mitigation
  • Javascript
  • Business Continuity Planning
  • Audit Support
  • Critical Thinking Skills
  • Network Security
  • Information Auditing
  • Linux Server
  • Forensic Analysis
  • Disaster Recovery
  • Best Practices Implementation
  • Compliance Management
  • Reporting and Documentation
  • Issue response and remediation
  • Emergency and non-emergency response
  • Firewall Configuration
  • Fraud detection and prevention
  • Trend detection and analysis
  • Issue detection and resolution
  • Response-to-intervention understanding
  • Audit preparation and response

Certification

CompTIA Security+

Certified Ethical Hacker (CEH)

Certified AWS Cloud Solutions Architect

Certified Information Security Manager (CISM)

Microsoft Security Operations Analyst SC200

Availability
See my work availability
Not Available
Available
monday
tuesday
wednesday
thursday
friday
saturday
sunday
morning
afternoon
evening
swipe to browse

Timeline

Sr. Detection and Response Analyst

Toyota Tsusho America, Inc
11.2020 - Current

Sr. SOC Analyst Global Security Operations Center

Marriott International, Inc.
02.2017 - 11.2020

Information Security Analyst

Marriott International, Inc.
02.2013 - 02.2017

IT Support Technician

Marriott International, Inc.
02.2011 - 02.2013

Western Governors University

Master of Science from Cyber Security & Information Assurance

Valley View University

Bachelor of Science from Computer Science

Michigan State University

Diploma from Hospitality Leadership

Michigan State University

Diploma from Business Management

Michigan State University

Diploma from Management Certificate in Business of Hospitality
Frank Sowah