Summary
Work History
Education
Skills
Languages
Timeline
BusinessAnalyst
GOKHAN KARADAG/US Citizen

GOKHAN KARADAG/US Citizen

SOC Analyst
Agawam,MA

Summary

CompTIA Security+ certified Cyber Security Analyst, and Security Forensics Analyst with professional experience in business administration, mobile device technical service, cyber security, and forensic analysis. Specialized in security and forensic analysis and incident response. Experience in hands-on projects in monitoring and analysis of potential and active threats using security tools, forensics tools such as Exterro, Axonius, and ServiceNow, and tools such as SIEM and EDR. A team player and open-minded problem solver with a growing passion for cyber security and forensic analysis. Currently working towards getting a CySA+ certificate.

Work History

Tecnology Analyst/Security Forensics Analyst

Infosys LTD
08.2022 - 06.2023
  • SIEM Alert Monitoring and Analysis: Proficient in monitoring and analyzing SIEM alerts using Splunk and IBM QRadar, identifying and responding to incidents, threats, and vulnerabilities.
  • Endpoint Security and Threat Analysis: Skilled in endpoint monitoring using CrowdStrike and ServiceNow conducting thorough threat analysis, and efficiently remediating security issues.
  • Security Tools Expertise: Experienced in utilizing a diverse range of security tools, including CrowdStrike, SentinelNow, Nmap, and Wireshark, to enhance the overall cybersecurity posture
  • OSINT Analysis: Capable of conducting OSINT analysis using specialized tools like Virus Total, urlscan.io, and AnyRun to assess the legitimacy of files, domains, IP addresses, and emails
  • Phishing Email Investigation: Proficient in investigating phishing emails, analyzing attachments and headers, and implementing necessary actions to mitigate risks effectively.
  • Malware Family Recognition: Knowledgeable in recognizing different malware families through internal threat intelligence reports and the MITRE ATT&CK framework.
  • NIST Risk Framework Compliance: Familiar with the NIST Risk Framework, ensuring adherence to cybersecurity policies and guidelines to maintain a secure environment.
  • Forensic Examinations and Incident Response: Hands-on experience in performing forensic examinations on computer systems and mobile devices using tools like FTK and Exterro. Worked effectively in a 24x7 SOC environment, managing incidents and tasks using the Jira ticketing system and Box Office.

Security Operations Center Analyst

CyberNow Labs
08.2021 - 08.2022
  • Work effectively as a team member in a 24x7 Cyber Security Operation Center (SOC), conducting log analysis on IBM QRadar and Splunk SIEM solutions Provide recommendations to technical teams using IBM Security Roar and Jira ticketing systems.
  • Monitor network security using Crowdstrike Falcon and Sentinel One EDR solutions.
  • Analyze phishing attempts, and validate files/domains/emails authenticity through tools like VirusTotal, Hybrid analysis, Url-scan, ViewDNS, and MX Toolbox.
  • Collect and analyze data, use Wireshark to examine infected hosts, and produce executive summary reports with IOCs. Conduct vulnerability assessments with Tenable Nessus and Nmap, and utilize penetration testing skills with Kali Linux-Metasploit on VMware.

Education

Bachelors of Business -

Ataturk University
Erzurum
06.2014

Skills

  • SIEM: Qradar, Splunk ES
  • EDR: Crowdstrike, SentinelOne
  • Ticketing system: IBM Resilient, Jira, ServiceNow
  • Email Security: Proofpoint
  • Penetration testing/ Vulnerability Analysis: Nmap, Wireshark, Kali Linux, Tenable/Nessus, OSINT tools, Powershell
  • Networking: Next Generation Firewall, TCP/IP, OSI Layers, TCP/UDP, DNS, Web application firewall (WAF), IDS/IPS, Cloud security(AWS)

Languages

Turkish
Native or Bilingual
English
Professional Working

Timeline

Tecnology Analyst/Security Forensics Analyst

Infosys LTD
08.2022 - 06.2023

Security Operations Center Analyst

CyberNow Labs
08.2021 - 08.2022

Bachelors of Business -

Ataturk University
GOKHAN KARADAG/US Citizen SOC Analyst