Summary
Overview
Work History
Education
Skills
Certification
Timeline
Generic

Maqsood Sheik

San Antonio,USA

Summary

Led enterprise IT security initiatives with 7 years of experience as a Cybersecurity Engineer, reducing vulnerability remediation time by 30%, optimizing SOC operations, and conducting forensic analysis that improved incident response by 25%. Enhanced threat detection capabilities by implementing advanced analytics and led comprehensive patch management using Rapid7 and Veracode, achieving a 95% patch compliance rate. Specialized in cloud security automation by developing detailed real-time dashboards with Splunk, increasing monitoring efficiency by 40%, and ensured 100% regulatory compliance with ISO and NERC/CIP standards.

Overview

8
8
years of professional experience
1
1
Certification

Work History

Cyber Security Analyst

CPS Energy
09.2023 - 04.2025
  • Analyzed and triaged security alerts using SIEM tools like Splunk & Microsoft sentinel, successfully identifying and mitigating over 50 potential breaches including brute force attacks and unauthorized access attempts.
  • Developed and implemented custom correlation rules and dashboards in SIEM platforms, enhancing real-time threat detection and reducing incident response time by 30%.
  • Executed penetration testing and static source code reviews to uncover vulnerabilities, improving application security posture and reducing risk exposure by 40% across enterprise systems.
  • Optimized and managed network protocols and remote device setups, securing communication across 5+ sites and plant locations, which increased network uptime by 25% and reduced security incidents by 15%.

Cyber Security Analyst

TxDOT
02.2021 - 07.2023
  • Operated SIEM tools like Splunk to monitor over 10,000 security logs daily, enhancing SOC operations' threat detection efficiency by 20%.
  • Utilized vulnerability management tools such as Tenable Nessus, Rapid7 Nexpose, and Insight to run comprehensive vulnerability reports and penetration testing tools including Core Insight, NMAP, Wireshark, OpenVAS, Burp Suite, and Metasploit, identifying and mitigating 95% of critical vulnerabilities within SLA.
  • Developed and delivered regular reports detailing vendor risk profiles, mitigation efforts, and actionable recommendations, reducing vendor-related risks by 30% over 12 months.
  • Led virtual data center onboarding reviews and third-party risk assessments in compliance with SOC2, ISO 27001, and PCI-DSS standards, ensuring 100% audit readiness and compliance.
  • Implemented and maintained cybersecurity frameworks including NIST, MITRE ATT&CK, SOC2, HITRUST, HIPAA, PCI DSS, and ISO 27000 series, ensuring continuous compliance using Fusion GRC and decreasing compliance gaps by 25%.
  • Enhanced asset and vulnerability management by identifying threats, applying patches, conducting security testing (SAST and DAST), and enforcing policies such as DLP, IDPS, MFA, and SSO, improving organizational security posture and reducing incidents by 40%.

Network Engineer

Ferguson Enterprises
04.2018 - 01.2021
  • Designed and executed End of Life (EOL) upgrade projects across North America Data Centers, successfully migrating 100% of legacy devices to Nexus 5K/6K/9K platforms, enhancing network performance by 30% and reliability.
  • Collaborated with PMOs and ISPs to facilitate MPLS carrier cutovers and increased circuit bandwidth from 1G to 10G on ASR1004 routers, resulting in a 500% improvement in data throughput and enhanced network scalability.
  • Implemented rigorous network change management by integrating configurations into ServiceNow, ensuring adherence to audit-compliant approval processes and achieving 100% compliance during review cycles.
  • Engineered secure B2B extranet pods with site-to-site IPsec VPNs and exclusive MPLS connections, enhancing secure connectivity with third-party clients and supporting business continuity.

Network Engineer

Express Scripts
11.2016 - 02.2018
  • Configured and maintained routers and switches, implementing RIP, EIGRP, OSPF, and BGP routing protocols to ensure 99.9% reliable remote infrastructure management across 50+ nationwide office locations.
  • Troubleshot and managed escalations for day-to-day network issues, reducing downtime by 15% and enhancing office connectivity.
  • Managed co-location and datacenter infrastructure, including installation and administration of Cisco routers (2600, 3600, 7200) and switches (2900 Catalyst 3560), optimizing network performance and increasing security compliance by 20%.
  • Designed and implemented DMZ environments for Web, Mail, and FTP servers using Cisco ASA 5500 series firewalls, enhancing security posture and reducing unauthorized access incidents by 30%.

Education

Master's - electrical engineering

Northwestern Polytechnic University
Fremont, California
06.2015

Skills

  • Cyber Security: SIEM Tools, Incident Response & Handling, Vulnerability Management, Firewall & IDS/IPS Monitoring, Endpoint Detection & Response, Risk Assessment & Compliance

Certification

  • CISSP - Certified Information System Security Professional

Timeline

Cyber Security Analyst

CPS Energy
09.2023 - 04.2025

Cyber Security Analyst

TxDOT
02.2021 - 07.2023

Network Engineer

Ferguson Enterprises
04.2018 - 01.2021

Network Engineer

Express Scripts
11.2016 - 02.2018

Master's - electrical engineering

Northwestern Polytechnic University
Maqsood Sheik