Summary
Overview
Work History
Education
Skills
Certification
Timeline
Generic

Uma Maheshwar M

Lansing,MI

Summary

IT/cybersecurity professional with over 12+ years of experience in identifying and mitigating cyber threats, implementing security protocols and policies, and security incidents. Strong understanding of industry-standard security tools and regulations. Proven ability to identify and resolve security vulnerabilities and design and implement security solutions to protect sensitive data. Demonstrated ability to effectively communicate and collaborate with cross-functional teams to identify and resolve security issues. Watchful professional offering comprehensive, hands-on experience identifying, investigating, and responding to information security alerts. Expertise in searching through data-sets to detect threats and anomalies and administering metrics to maintain security processes and controls. Focused on helping businesses safeguard sensitive data from hackers and cyber-criminals.

Overview

14
14
years of professional experience
1
1
Certification

Work History

Cyber Security Engineer

Idaho Department Of Labor
01.2021 - Current
  • Performing Malware Analysis/Reverse Engineering activities and using the findings to identify potential artifacts/persistence for remediation, enrich our Threat Intelligence and Threat Hunting efforts, and bolster our detection capability.
  • Acting as a subject matter expert for EDR/XDR technologies, Malware Analysis/Reverse Engineering, and Forensics.
  • Utilize software development and reverse engineering skills to triage and reverse malware, as well as develop offensive methods
  • Key contributor to multiple technical projects, including EDR/XDR, Malware Analysis, Threat Intelligence, and Threat Hunting.
  • Creating detailed Standard Operating Procedures (SOPs), Killbooks/Response Playbooks, and other technical documentation for the Cyber Operations function.
  • Handling investigations of varying magnitude, including those of the highest complexity without the need for supervision or oversight.
  • Involved in conducting interviews for Security Analysts and providing them with comprehensive training when hired. Additionally, serving as a technical escalation point for the Security Operations team as a whole.
  • Performed network troubleshooting to isolate and diagnose common problems.
  • Developed security metrics and technical analysis to give insight into performance and trends.
  • Developing and improving processes for incident detection and the execution of countermeasures.
  • Ensuring continuous improvement of industry expertise through year-round engagement in courses, certifications, and conferences.
  • Authored security and vulnerability reports, detailing logged incursions and suggesting remediation efforts.
  • Worked closely with state agencies to identify their business continuity and disaster recovery needs.
  • Traveled to client sites to perform onsite testing.

Cyber Security Analyst/Engineer

Swift
12.2019 - 01.2021
  • Executed incident remediation processes across Windows, Mac, and Linux platforms using Falcon Real Time Response (Including PowerShell, Bash, etc.).
  • Performed Malware Analysis/Reverse Engineering to obtain an understanding of malware capabilities, and what the threat actor was attempting to accomplish.
  • Conducted host-based forensic investigations to discover, correlate, and remediate artifacts, understand the full impact and scale of the attack, and prevent further damage/attacks.
  • Developed and improved processes for incident detection and the execution of countermeasures.
  • Produced high-quality written and verbal communications, recommendations, and findings to customer management
  • Performed system analysis, documentation, testing, implementation, and user support for platform transitions.
  • Validated results and performed quality assurance to assess accuracy of data.
  • Queried databases for information needed for report processing.
  • Identified clear connections between policies and business results to eliminate or reduce confusion and help employees achieve goals.
  • Monitored compliance and filing requirements in conjunction with staff and management.
  • Performed budget analysis to control expenditures and predict future budget needs.
  • Conducted workplace compliance training to reduce liability risks and operate effectively.
  • Generated reports detailing findings and recommendations.
  • Performed preventative maintenance to keep tools and equipment functional.
  • Conducted feasibility studies for proposed projects using potential ROI and risk management.
  • Developed work plans for various personnel roles based on strengths and talents.
  • Collaborated with IT teams to integrate security measures into the development and deployment of new applications

Network Security Engineer

Axiom Technology Group
07.2019 - 12.2019
  • Worked with teams to develop company-wide information assurance, security standards and procedures.
  • Coordinated with third-party security information and event management (SIEM) providers to maintain protections and predict threats.
  • Designed standardized incident logging system to track historical incursions while helping prevent future breaches.
  • Managed company Bring Your Own Device program, onboarding employee devices and verifying absence of inherent security threats.
  • Implemented necessary controls and procedures to protect information system assets from intentional or inadvertent modification, disclosure or destruction.
  • Installed and maintained commercial firewall solution, working with security vendors to consistently apply best practices and software updates.
  • Applied Center for Internet Security (CIS) benchmarks to verify performance of ongoing security measures.
  • Worked with business partners to balance requirements, security and risk reduction.
  • Engaged business and technology stakeholders to gather goals and requirements.
  • Performed network troubleshooting to isolate and diagnose common problems.
  • Developed security metrics and technical analysis to give insight into performance and trends.
  • Created frameworks by designing and developing technical solutions.

Networking Engineer

Abercombie & Fitch
02.2019 - 07.2019
  • Monitored system performance to identify potential issues.
  • Managed, tracked, and coordinated problem resolution and escalation processes.
  • Performed troubleshooting for Juniper, Cisco, and packet analysis.
  • Provided network support services for devices such as hubs, bridges, routers, and other hardware.
  • Provided complete end-to-end engineering and installation of route-based IP network solutions.
  • Troubleshot complex multi-vendor network service provider issues.
  • Created VPN infrastructure and allowed for secure remote connections.
  • Monitored network capacity and performance to diagnose and resolve complex network problems.
  • Organized frameworks to transfer secure data from internal to external and public networks.
  • Established robust infrastructure and data capacity for new applications.

Sr Network Engineer

OCLC
12.2016 - 01.2019
  • Established and monitored key performance metrics to verify consistent compliance with important networking standards.
  • Oversaw company's entire network and related policies covering use, maintenance and infrastructure.
  • Built and improved network documentation and training procedures to lead successful team completing high-quality work.
  • Employed strong team management and task prioritization skills to streamline project turnaround times and meet tight deadlines.
  • Liaised with dispatch personnel to optimize skill distribution and minimize service lag times through careful engineering triage.
  • Installed and configured network security solutions such as VPNs, Firewalls and intrusion detections and mitigation tools.
  • Recommended network security standards and upgrades to management.
  • Monitored network activities to quickly detect and resolve operational and security issues.
  • Configured, tested and maintained LAN/WAN components and connections.
  • Improved network operation by incorporating new technologies into existing designs.
  • Managed, tracked, and coordinated problem resolution and escalation processes.
  • Troubleshot complex multi-vendor network service provider issues.
  • Provided network support services for devices such as hubs, bridges, routers, and other hardware.
  • Recommended options for disaster recovery and remote access security.
  • Escalated emergency technical issues beyond knowledge to maintain optimum up-time.
  • Detected intrusion attempts and promptly responded to DDoS attacks.
  • Established robust infrastructure and data capacity for new applications.
  • Integrated data, voice and video networks for use in multi-site installations.
  • Integrated fixed wireless connectivity into facilities requiring high-speed networks.

Network Analyst

T-Mobile
02.2015 - 11.2016
  • Administered software licensing and purchasing for effective installation of network.
  • Mitigated risk by analyzing complex computer systems to assess vulnerabilities.
  • Completed remote repairs involving software solutions and hardware repairs.
  • Troubleshot and maintained networking devices and infrastructure across enterprise.
  • Created inventory, report and invoicing databases.
  • Diagnosed system hardware and software problems using advanced root-cause analysis.
  • Visually inspected temperature sensors to maintain health of servers and network devices.
  • Analyzed data traces using protocol analyzers to identify anomalies and find solutions.
  • Documented all server and network problems and other unusual events in detail.
  • Performed code review, code optimization, SQL query optimization and performance improvement for servers.
  • Implemented and maintained firewalls, series switches and security appliances.
  • Upgraded network software and hardware for optimized performance.

Network Specialist

Inovalon
10.2013 - 01.2015
  • Troubleshot and maintained networking devices and infrastructure across enterprise.
  • Installed firewalls and VPNs to increase and manage client network security.
  • Implemented security strategies on private networks at multiple sites across state corporate WAN.
  • Defined database requirements for both EMIS and RTS systems.
  • Reviewed network settings and made immediate updates, which improved overall security measures.
  • Configured and installed wireless controllers, routers and switches.
  • Upgraded and expanded network systems and components.
  • Incorporated feedback and recommendations from other staff members when modifying software.
  • Monitored system logs for all company computers and devices to maximize uptime.
  • Managed development, deployment and training of RTS system and internal systems suite.
  • Implemented and maintained firewalls, series switches and security appliances.
  • Completed remote repairs involving software solutions and hardware repairs.
  • Diagnosed system hardware and software problems using advanced root-cause analysis.
  • Served as liaison between user community and software providers.

Network Consultant

Wipro Technologies
04.2010 - 08.2013
  • · Involved in Configuring and implementing of Composite Network models consists of Cisco7600, 7200, 3800 series routers and Cisco 2950, 3500, 5000, 6500 Series switches. Also worked with ASR 1K and 7K.
  • · Configured networks using routing protocols such as RIP, OSPF, BGP and manipulated routing updates using route-map, distribute list and administrative distance for on-demand Infrastructure.
  • · Configured OSPF redistribution and authentication with type 3 LSA filtering and to prevent LSA flooding.
  • · Configured OSPF over frame relay networks for NBMA and point to multipoint strategies.
  • · Implementing traffic engineering on top of an existing Multiprotocol Label Switching (MPLS) network using Frame Relay and Open Shortest Path First (OSPF).
  • Cisco Secure Access Control Server (ACS) for Windows to authenticate users that connects to a VPN 3000 Concentrator. Worked on FTP, HTTP, DNS, DHCP servers in windows server-client environment with resource allocation to desired Virtual LANs of network.
  • Designed and implemented networks in collaboration with project engineers.

Education

Master of Science - Masters in Networking And Telecommunications

Stratford University
Falls Church, VA
2016

Skills

Mentorship and Talent Development

Malware Analysis and Reverse Engineering

Security Research

Enterprise Security Operations

Digital Forensics

ProofPoint

XDR/EDR (CrowdStrike, CarbonBlack, Cortex XDR)

Cortex XSOAR/Demisto

Incident Management (Jira, RT, ServiceNow)

Technical Project Leadership

Threat Intelligence

Risk Management

Penetration Testing

WireShark

SIEM (AlienVault, FortiSIEM, Splunk)

  • DDoS Prevention
  • Network Security Management
  • Incursion Tracking
  • Firewall Installation
  • Incident Logging Oversight

Certification

  • CompTIA Security+
  • Amazon Web Services Security Specialty
  • GIAC Exploit Researcher and Advanced Penetration Tester (GXPN)
  • GIAC Reverse Engineering Malware (GREM)
  • GIAC Web Application Penetration Tester (GWAPT)

Timeline

Cyber Security Engineer

Idaho Department Of Labor
01.2021 - Current

Cyber Security Analyst/Engineer

Swift
12.2019 - 01.2021

Network Security Engineer

Axiom Technology Group
07.2019 - 12.2019

Networking Engineer

Abercombie & Fitch
02.2019 - 07.2019

Sr Network Engineer

OCLC
12.2016 - 01.2019

Network Analyst

T-Mobile
02.2015 - 11.2016

Network Specialist

Inovalon
10.2013 - 01.2015

Network Consultant

Wipro Technologies
04.2010 - 08.2013

Master of Science - Masters in Networking And Telecommunications

Stratford University
Uma Maheshwar M