Summary
Overview
Work History
Education
Skills
Languages
Hobbies and Interests
Projects
Timeline
Generic

kaifa dunor

Charlotte,NC

Summary

Dedicated cybersecurity enthusiast equipped with a comprehensive skill set gained through intensive training in a cybersecurity boot camp. Proficient in identifying and mitigating security vulnerabilities, implementing robust security measures, and conducting thorough risk assessments. Adept at utilizing cutting-edge tools and techniques to safeguard systems and data. Eager to apply newly acquired knowledge and hands-on experience to contribute effectively to cybersecurity initiatives. Seeking opportunities to leverage passion and expertise in ensuring the integrity and resilience of digital environments.

Overview

5
5
years of professional experience

Work History

Technology Analyst T1

Wells Fargo
Charlotte, NC
01.2021 - Current
  • As to deal with the critical importance of reviewing historical incidents, new and emerging threats, and a proactive versus reactive response to risk and opportunities
  • Threat-hunting initiatives conduct Malware Analysis to identify malicious activity and derive Indicators of Compromise (IOCs) and associated detection rules
  • Investigate and report on cyber threat hunt findings, including recommendations to improve security posture across detective and preventive controls Identify and ingest indicators of compromise (IOCs), malicious IPs/URLs, into network tools/applications observe security solutions; SIEMs, firewall appliances, intrusion prevention systems, data loss prevention systems, analysis tools, log aggregation tools search firewall, email, web or DNS logs to identify and mitigate intrusion attempts triage events and investigate to identify Endpoint security incidents using Falcon CrowdStrike and Cisco secure Endpoint to investigate and perform the needed mitigation and remediation
  • Log security incidents in the IT ticketing system leverage internal and external data sets and threat intelligence feeds to drive cyber manage security incidents throughout their lifecycle to closure perform root cause analysis of security events, evaluate anomalous activity at the level of the network and endpoint review threat intelligence and run it in SIEM tools to find out if a threat exists or applicable in environment receive input from threat intelligence sources and analyze events to identify threats and risks; provide threat intelligence reports to various customer and company organizations search firewall, email, web, and DNS logs to Identify and mitigate intrusion attempts
  • Stay up to date with current vulnerabilities, attacks, and countermeasures with security blogs and internal news reporting from CISA, SANs, and the Hacker News perform Incident monitoring, response triage, and initiate investigations create and track incidents and requests using ticketing tool: (Remedy) analyze security and event data from the network (IDS, SIEM) Conduct log analysis using Splunk provides information regarding intrusion events, security incidents, and other threat indications and warning information
  • Investigate malicious phishing emails, domains, and IPs using Open-Source tools and recommend proper blocking-based analysis

Help Desk Technician

TEKsystems
Charlotte, NC
02.2020 - 12.2021
  • Troubleshoot and resolve desktop, laptop, and connectivity problems
  • Provide initial LAN/WAN, computer hardware, Windows, Microsoft Office, and remote communication support to handle setup and configuration
  • Also, install printers’ drivers and troubleshoot issues with printers, unlock accounts on Azure AD, reset MFA, and view logs on Splunk of user logging and password lockout
  • Ticketing system, ServiceNow, patching, and reimaging computers
  • Reset password and unlock account on Active Directory
  • Support French and English-speaking end users
  • Diagnose and troubleshoot with the outcome to resolve PC-related hardware and software
  • Support users with any issues involving O365 and Windows10 workstations
  • Communicate effectively, efficiently, and frequently with customer contacts
  • Providing daily remote support for Intrados employees via equipment provided
  • Answering phone calls regarding Windows10 support via the Internet
  • Working/completing tickets assigned via the Intrados Help Desk system

Education

Associate in science -

Central Piedmont Community College
Charlotte, NC
05-2020

Skills

  • Wireshark
  • Windows
  • Linux
  • Bash scripting
  • VirtualBox
  • Active Directory
  • Azure portal
  • Data Recovery
  • SIEM (Splunk)
  • Firewall configuration
  • Office365
  • Software troubleshooting
  • VPN configuration and Hexadecimal Tool

Languages

English.

Hobbies and Interests

Workout, Travel, Art, Yoga, Cooking, Travel, Music

Projects

Developed content to perform the following tasks for Azure Sentinel (SIEM): Used custom PowerShell script to extract metadata from Windows Event Viewer to be forwarded to third-party API to derive geolocation data. Configured Log Analytics Workspace in Azure to ingest custom logs containing geographic information (latitude, longitude, state/province, and country). Configured Custom Fields in Log Analytics Workspace with the intent of mapping geo data in Azure Sentinel. Configured Azure Sentinel (Microsoft's cloud SIEM) workbook to display global attack data (RDP brute force) on a world map according to physical location and magnitude of attacks., Also practice hands-on exercises with tryhackme.com: Splunk, Wireshark, OSINT tools, and MITRE.

Timeline

Technology Analyst T1

Wells Fargo
01.2021 - Current

Help Desk Technician

TEKsystems
02.2020 - 12.2021

Associate in science -

Central Piedmont Community College
kaifa dunor