Summary
Overview
Work History
Education
Skills
Projects
Certification
Languages
Linkedin
Timeline
Generic

HESHAM ZEIADA

Columbus,OH

Summary

Proven Cyber Security Analyst with a robust background at JP Morgan Chase & Co., enhancing security postures through comprehensive threat assessments and advanced SIEM tools like Splunk. Expert in Linux hardening and cloud technologies, I've effectively translated threat intelligence into actionable strategies, significantly bolstering system defenses. My strategic mindset and Python proficiency have driven successful security solutions and SOC advancements.

Overview

7
7
years of professional experience
1
1
Certification

Work History

Cyber Security Analyst

JP Morgan Chase & Co.
Columbus, USA
05.2022 - Current
  • Conducted analysis of prevent, detect, and alert gaps in our environment using tools such as Madinat Security Validation, Threat Catalog, and Splunk
  • Focused on identifying critical and high likelihood TTPs (Tactics, Techniques, and Procedures) to improve our security posture
  • Be on top of existing TTPs, new threats/vulnerabilities, and ensure we have relevant and latest actions available in the Mandiant Security Validation platform (MSV)
  • Analyzed the scope of testing based on threat level, availability infrastructure, resources, etc
  • And drove conversations with control owners to ensure appropriate coverage and alignment with risk management goals
  • Designed, developed, tested, documented, and implemented threat behaviors into Mandiant Security Validation (MSV)
  • Implemented network programs, with Linux and Windows System Hardening, to protect data from unauthorized access
  • Converted threat behaviors into continuous testing through monitors in MSV, ensuring ongoing evaluation and validation of security controls
  • Regularly triaged, analyzed, escalated, tracked, and closed any and all monitor failure notifications to maintain the integrity of the testing environment and ensure prompt remediation of any security control issues
  • Provided regular reports and recommendations to management on the status of security gaps and ongoing security initiatives.

Cybersecurity Apprentice

Evolve Security Academy
Chicago, USA
10.2021 - 05.2022
  • Introduced disaster recovery procedures, to minimize attack losses
  • Reviewed log-based data, using SIEM, to verify system security
  • Configured firewalls and analyzed data using IDS/IPS
  • Developed reports and recommendations for SOC growth
  • Performed Security Threat Assessments to identify system vulnerabilities
  • Implemented network programs, with Linux and Windows System Hardening, to protect data from unauthorized access
  • Created EC2 networks, with private and public subnets separated by a DMZ and automated within Terraform for AWS
  • Built dashboards for the CIS framework, devise indexes, with source type, and lookup tables utilizing Splunk
  • Wrote comprehensive client reports with remediation recommendations using Nessus and OpenVAS.

Manager on Duty, Small Business Specialist And Relationship Banker

JP Morgan Chase & Co.
Columbus, USA
04.2017 - 05.2022
  • Trained a team of 8 bankers on account software, customer service, and banking policies and procedures
  • Building strong relationships with customers to ensure they are having positive banking experiences with our branch
  • Performing fraud scanning, cash management, and transaction reviews to protect the security of their accounts
  • Assist new and existing clients with opening banking accounts, informing them of all available options
  • Provide financial counseling and investment advice to business clients for their financial planning needs
  • Resolve issues related to online banking services, and utilize websites.

Education

Certificate, CyberSecurity -

Evolve Security Academy
03.2022

Diploma, Radiography -

Fulbright Scholarship
06.2011

Associate, Radiography -

El Mansoura Technical Institution
Egypt
07.2007

Skills

  • SIEM
  • Splunk
  • ELK
  • Wireshark
  • Cobalt Strike
  • BloodHound
  • CrowdStrike
  • LogScale
  • Mandiant Security Validation (akaMSV or Verodin)
  • Microsoft Defender
  • Linux
  • Python
  • AWS
  • Azure
  • Dev Shell
  • Nessus
  • NMAP
  • Burp Suite
  • Metasploit
  • Windows OS
  • OWASP Top 10
  • MITRE ATTACK
  • Network Security
  • Firewall
  • IDS, IPS
  • Encryption
  • Automation
  • Threat Intelligence
  • Jira
  • Agile
  • Cloud
  • Palo Alto Cortex

Projects

  • Microsoft Defender & Palo Alto Cortex Evaluation, Leveraged the MITRE ATT&CK framework with high and very high threat rating techniques to execute attacks against MS Defender and Palo Alto Cortex and evaluate their ability to detect, prevent, and alert on potential security threats., Collected evidence from MS Defender to support ongoing evaluation and validation of security controls and to inform the development of targeted remediation plans.
  • CrowdStrike Evaluation, Led the evaluation of Crowdstrike on Windows and Linux hosts through scoping high and very high threat behaviors, executing them against Crowdstrike, collecting evidence, and presenting results to management and stakeholders to inform decision-making on security controls and remediation plans.
  • Splunk Alerts Evaluation, Created threat behaviors to test Splunk alert logic and ensure its effectiveness in detecting and responding to potential security threats.

Certification

  • Zero-Point Security Certified Read Team Ops (RTO) (In progress)
  • Evolve Sec. Certified Professional (ESCP)
  • CompTIA Security+
  • AWS Cloud Practitioner

Languages

  • English
  • Arabic

Linkedin

https://www.linkedin.com/in/hesham-zeiada/

Timeline

Cyber Security Analyst

JP Morgan Chase & Co.
05.2022 - Current

Cybersecurity Apprentice

Evolve Security Academy
10.2021 - 05.2022

Manager on Duty, Small Business Specialist And Relationship Banker

JP Morgan Chase & Co.
04.2017 - 05.2022

Certificate, CyberSecurity -

Evolve Security Academy

Diploma, Radiography -

Fulbright Scholarship

Associate, Radiography -

El Mansoura Technical Institution
HESHAM ZEIADA