Summary
Overview
Work History
Education
Skills
Certification
Timeline
Generic

Sriharsha Jupalli

Cyber Security Analyst
St Louis,MO

Summary

Cyber Security Analyst with over 3 years of experience, proven track record in safeguarding organizational assets & mitigating digital threats. Demonstrated expertise in vulnerability assessments, employing Nessus & Burp Suite to identify & eliminate high-risk vulnerabilities. Skilled in network traffic analysis, malware detection, and proactive threat hunting, with a strong foundation in security frameworks including OWASP, and MITRE ATT&CK. Adept at configuring and managing essential security infrastructure, including firewalls, IDS/IPS, and secure proxies, to enhance organizational defense against evolving cyber threats. Proficient in simulating network attacks and testing cyber defense mechanisms using virtualization technologies. Demonstrated ability to translate technical findings into actionable insights, regularly presenting to management to drive security improvements. Proficient in ethical hacking, penetration testing, and cybersecurity frameworks such as NIST and CIS Controls.

Overview

5
5
years of professional experience

Work History

Cyber Security Analyst

Berkshire Hathaway
01.2024 - Current
  • Conducted regular vulnerability assessments using Nmap, Snort, and OpenVAS, identifying and mitigating over 50 security vulnerabilities, resulting in a 25% decrease in security incidents
  • Managed SIEM solutions, including Splunk and Burp Suite, correlating over 10,000 security events and alerts monthly, reducing incident response times
  • Assisted the Security Operations Center (SOC) at Berkshire Hathaway in investigating and responding to potential ongoing security incidents, providing support to clients and ensuring effective communication and timely resolution
  • Created Python scripts to extract essential data from the Microsoft Defender API, resulting in a 50% increase in data collection efficiency and improved security monitoring capabilities
  • Conducted penetration testing and vulnerability assessments using tools like Metasploit, BeEF, and Nessus, identifying and mitigating over 50 high-risk vulnerabilities in web applications and networks, enhancing security posture
  • Monitored and analyzed network traffic and security events using Splunk and Wireshark, identifying and responding to security incidents, reducing mean time to resolution (MTTR) by 20%
  • Applied Burp Suite and Nmap for penetration testing, identifying and securing 15 critical vulnerabilities in the company's infrastructure.

Cyber Security Analyst

Hellinex Cloud India
01.2020 - 07.2022
  • Utilized Metasploit and Nmap to perform detailed vulnerability scans, assessing the level of exposure in systems and networks, and recommended remedial measures to strengthen the security of the organization’s information technology structure
  • Conducted comprehensive risk assessments, threat modeling, vulnerability assessments, and penetration testing (VAPT) to identify and mitigate security risks, ensuring proactive threat mitigation
  • Configured and maintained IDS/IPS systems using Snort and Suricata, enhancing the detection and prevention of network intrusions by 40%
  • Conducted malware analysis and performed offline assessments of malware behaviors using virtual environments through online sandboxes, while designing defense mechanisms based on the analysis for effective prevention and management of incidents
  • Implemented endpoint protection solutions, including Symantec Endpoint Protection and CrowdStrike, to safeguard over 500 devices, reducing malware infections by 30%
  • Implemented and maintained NIST Cybersecurity Framework and CIS Controls to fortify organizational security posture, enhancing threat resilience and adherence to industry standards
  • Performed Penetration testing using Nessus and Qualys, identifying and mitigating over 200 critical securities vulnerabilities, enhancing overall system security
  • Implemented SonicWall and Palo Alto Networks protocols to secure the company's network, resulting in a 30% reduction in unauthorized access attempts.

Education

Master of Science - undefined

Cybersecurity | Saint Louis University

Skills

  • TECHNICAL SKILLS
  • Tools:
  • Splunk, Burp Suite, Metasploit, Nmap, Nessus, Qualys, CrowdStrike, The Hive, IPS, IDS
  • Wireshark
  • Scripting and Automation Python, Bash, Powershell
  • Platform: VMware, VirtualBox, TCP/IP & OSI Layers, Routing, LAN, DNS, TCP/UDP, Protocols, SSL VPN
  • Proxy, Sandbox
  • Security Frameworks/Standards: NIST, OWASP, Cyber Kill Chain, MITRE ATT&CK, Information, Security, Playbook
  • IDS/IPS Snort, Suricata
  • Firewall Cisco ASA, SonicWall, Palo Alto Networks
  • Operating Systems Windows, Kali Linux, Ubuntu
  • SOC Experience Online Sandbox, Malware Analysis, DNS Filtering, Log Analysis, Email Phishing Analysis

Risk assessment

Incident response

Digital forensics

Network security

Attention to detail

Phishing detection

Vulnerability assessment

Threat intelligence

SIEM management

Incident response management

Identity management

Log analysis

Penetration testing

Security operations center

Compliance monitoring

Data encryption

Application security

DDoS prevention

Analytical thinking

Intrusion detection

Certification

  • CompTIA Security+ - CompTIA.

Timeline

Cyber Security Analyst

Berkshire Hathaway
01.2024 - Current

Cyber Security Analyst

Hellinex Cloud India
01.2020 - 07.2022

Master of Science - undefined

Cybersecurity | Saint Louis University
Sriharsha JupalliCyber Security Analyst