RAK BANK

Started: 2018
Ended: 2019
SOC Analyst - Security Operations Center


Summary

During my service I developed SOC automation strategies and performed incident response and threat hunting to enhance security posture; Also conducted security assessments and compliance tests.

Key Tasks

My main responsibilities in this role are:

  • Patch management and vulnerability management of Bank’s assets ~4k. Nessus, Qualys and MS.
  • Working on reported IOCs and updating in Bank’s database.
  • Conducted secure configuration test on IT infrastructure ~2k assets using Nessus and Qualys..
  • Conducted assessments per PCI DSS requirement #11 for ~600 assets.
  • Developed and implemented the scanning and reporting strategy and tool for workflow automation of SOC.
  • Conducted vulnerability assessments on Bank’s servers, network devices and endpoints in scope.
  • Log Analysis from various network devices and applications.
  • Perform attack simulations on company systems and web applications to determine the exploit risk & security flaws.
  • Document and discuss security findings with information technology teams.
  • Analysing triaged malicious programs and code by conducting reverse engineering techniques and tools, as well as checking behaviour and testing same in virtual machines.
  • Perform Security SIEM Operational task - Analysis, Filters, Active channels, Reports, Suggestion of fine tuning on existing rules and monitor IOC (Indicators of Compromise).

Skills Patch management, vulnerability management, automation of SOC, log analysis, reverse engineering, SIEM, IOC.

Mushraf Mustafa logo