NIRMAL MANOHARAN — DevOps Engineer
• Expert knowledge of SIEM Solution (LogRhythm & Securonix & ArcSight & Splunk & IBM Qradar, Carbon Black, Azure, Cloud App Security, TrendMicro, M365, Proofpoint TAP, Qualys, Fortinet, Nessus, Forcepoint) • Experience in SOC to acquire knowledge in SIEM tools like LogRhythm and ArcSight, which includes Administration, Implementation in multiple environments, Integration of various log sources, Enterprise Security App management, and Correlation rules/dashboards/reports/alerts creation. Implemented in LogRhythm instance, integrated windows log and developed sample use-cases. • Securing Malicious file/malicious URL detecting and preventing the tool from entering into the organization/create a rule and block malicious hashes using TrendMicro and protect all endpoint/provide the application to the privileged’s user and also including application control/endpoint detection and response (EDR). • Malware Analysis using Cuckoo, Virustotal, OpenDNS, Sandbox. • Experience in Orchestration and Automation tools (SOAR) like FortiSOAR. • Created correlation rules in LogRhythm and prepared use cases. • Team Management with effective communication skills. • Collecting, analyzing, and preserving the evidence related to incidents. • Creation of rules, Active List, Dashboard, and active channels based on customer requirements. • Creation of reports, queries, and filters for the events that are generated in ArcSight Console. Ensure application availability and SLA adherence. • To be able to configure and manage use cases into event aggregation and correlation systems. • Experienced in Quality Management, Process Excellence, and SLA Management in the Information Technology and service sector. Adept at driving improvement projects and providing business analytics to achieve organizational goals. Led diverse teams and guided them towards process improvements, and operational efficiency. Drive business performance with a focus on bottom-line and continuous improvements. Vast experience in various areas such as risk assessment, risk management, Third-party Vendor audits, Data Centre audits, Penetration Testing, and Vulnerability Assessment. • Deliver security advice and guidance to IT areas as directed by the Information Security Assessment team management. • Privileged identity management systems using Cyber-Ark.
Stackforce AI infers this person is a Cybersecurity Expert with extensive experience in SIEM solutions and incident management.
Location: Dubai, United Arab Emirates
Experience: 12 yrs 6 mos
Skills
- Logrhythm Siem
- Security Operations Center
- Security Consulting
- Incident Response
- Cybersecurity
- Siem Management
- Incident Management
Career Highlights
- Expert in multiple SIEM solutions and security tools.
- Proven track record in incident response and cybersecurity.
- Strong leadership in managing diverse security teams.
Work Experience
G42
Senior SOC Engineer (2 yrs)
flydubai
SOC Content Engineer (1 yr 6 mos)
StarLink - Trusted Cyber & Cloud Advisor
Professional Services Consultant (5 mos)
Wipro
Cyber Security - Technical Lead (1 yr 1 mo)
SoftwareONE
Cyber Defense Incident Manager (8 mos)
Abu Dhabi Securities Exchange
Senior Cybersecurity Consultant (8 mos)
Saudi Aramco
Information Security Consultant (9 mos)
Cognizant
Information Security Analyst (2 yrs 3 mos)
IIZASOFT
Security Analyst (3 yrs 1 mo)
Education
Bachelor of Technology - BTech at Anna University, Chennai