M

Maruf R.

DevOps Engineer

Greater Toronto Area, Canada3 yrs 11 mos experience

Key Highlights

  • Expert in Cyber Security policy development and risk management.
  • Proven track record in managing global security operations.
  • Strong leadership skills with effective team training capabilities.
Stackforce AI infers this person is a Cyber Security professional with extensive experience in risk management and security operations.

Contact

Skills

Core Skills

Cyber SecurityRisk ManagementPolicy ComplianceIt SecurityTeam ManagementSecurity Operations ManagementVulnerability ManagementMicrosoft Dynamics 365Role DevelopmentThreat IntelligenceIncident ManagementServer SetupTroubleshootingProduct TestingEmployee TrainingAssemblyBlueprint Following

Other Skills

Policy DevelopmentVendor ManagementNetwork MonitoringProject CoordinationSecurity Systems OptimizationSecurity ReportingStakeholder CollaborationVulnerability AssessmentTechnical ReportingData ManagementESD HandlingInventory ManagementData EntrySocial NetworkingStrategic Planning

About

As a Senior Security Analyst at Olameter, my remit includes managing the Cyber Security department at Olameter, crafting robust security policies and vigilant monitoring of our networks to preempt cyber threats. My academic background in Economics and Finance from North South University underpins my strategic approach to risk assessments and policy compliance, ensuring our vendor and employee alignment with cybersecurity risk management. Our team's success in safeguarding corporate data and technology platforms is a testament to our collective expertise and ongoing education in the field, including my certifications in Software Development Fundamentals and CompTIA Security+. Leadership and Microsoft Office proficiency facilitate effective communication and training, essential in overseeing our global operations team and reinforcing our security posture.

Experience

3 yrs 11 mos
Total Experience
--
Average Tenure
--
Current Experience

Olameter inc.

Senior Security Analyst

Jun 2022Present · 4 yrs · Aurora, Ontario, Canada

  • Managing the security department within the organization, risk reduction is our goal, and yet the race is never over.
  • Developing and updating security policies, procedures, and guidelines based on industry best practices.
  • Maintaining awareness of new cyber threats, vulnerabilities, and technologies to keep the organization secure.
  • Conducting risk assessments to identify potential security threats and vulnerabilities.
  • In a collaborative ISO 27001 initiative, provided key cybersecurity expertise and played a central role in project coordination by reviewing audit findings, liaising with various departments to drive the resolution of security issues, and facilitating discussions on report outcomes. This successfully navigated our core application through its Type 1 audit, ensuring robust security posture and compliance. Actively contributing to the ongoing journey towards Type 2 certification.
  • Monitoring network activity and working with the SOC team to identify signs of intrusion or compromise.
  • Maintaining all security tools and technology.
  • Spearheaded the evaluation, selection, and procurement of critical cybersecurity services and products, expertly managing vendor relationships and leading price negotiations to secure optimal solutions and achieve significant cost efficiencies for the organization.
  • Monitoring internal and external policy compliance.
  • Ensuring that vendors and employees understand our cybersecurity risk management policies
Cyber SecurityRisk ManagementPolicy DevelopmentVendor ManagementNetwork Monitoring

Netenrich, inc.

Senior Security Operations Center Manager

Mar 2021Jun 2022 · 1 yr 3 mos · Markham, Ontario, Canada

  • Participate in evaluating, recommending, implementing, and evaluating IT security of the new IT Infrastructure systems.
  • Managed, trained and oversaw an overseas security operations team, keeping in mind North American culture and requirements
  • Worked as part of a team to ensure that corporate data and technology platform components are safeguarded from known threats.
  • Communicate effectively with customers, teammates, and management.
  • Providing inputs on tuning and optimization of security systems & Staying up-to-date with emerging security threats.
IT SecurityTeam ManagementSecurity Systems Optimization

Stratejm inc.

3 roles

Cyber Security Consultant

Feb 2020Mar 2021 · 1 yr 1 mo

  • Performed 3rd party Security Operations management on client site (to support SOC, SIEM and vulnerability scanning)
  • Performed weekly vulnerability management reporting and other security adhoc reporting as required
  • Managed ticket requests for IT teams for Security team requests and resulting from 3rd Party Security Operations ticket follow ups as required.
  • Reviewed and analyzed security logs and reports from a variety of sources including security tools, servers, network devices and recommend and implement improvements for an improved security posture
  • Performed system access reviews, audits and security administration activities
  • Participated in the response to a security incident
  • Performed monthly phishing campaigns
  • Performed monthly red/blue exercises
Security Operations ManagementVulnerability ManagementSecurity Reporting

Microsoft Azure and Dynamics 365 Security Administrator for OCS

Oct 2018Mar 2021 · 2 yrs 5 mos

  • Responsible for supporting Finance, Supply Chain, and other various teams for D365 related administration roles and worked with stakeholders to propose and adopt best practices within Dynamics 365 for a Crown Corporation
  • Understanding of Microsoft Dynamics 365 to drive improvements and identify areas for further improvement.
  • Collaborated with different departments on specific access requests, implementation of roles, design and testing.
  • Developed, tested, deployed and maintained various custom Roles, Duties, and Privileges as well as user access on the Microsoft Dynamics 365 platform.
  • Developed roles on D365 keeping in mind with the concept of Security, to ensure that there is no possibility of users gaining access to data that they should not have access to.
Microsoft Dynamics 365Role DevelopmentStakeholder Collaboration

Cyber Security Intelligence Analyst / Account manager

Sep 2017Mar 2021 · 3 yrs 6 mos

  • Responsible for the management of the Security, Network, Operations incidents and involved with the project management team regarding the setup/onboarding stages of multiple Clients.
  • Apply threat intelligence principles, strategies, and goals using sources and methods utilized by Recorded Future.
  • Reviewed over active SIEM Use Cases, and created a custom set of Unique Use Cases applicable to each Clients Environment.
  • Used End Point protection tools such as Crowdstrike to perform end point malware analysis by identifying anomalies, abnormal patterns and reviewing network usage
  • Proactively search for threat within customer’s environment looking for indicators of compromise (IoC)
  • Review and analyze security and system events, alerts, reports, within the SOC
  • Detect security issues, create incident manage problems until closure;
  • Coordinate escalations and collaborate with internal technology teams to ensure timely resolution of issues;
  • Provide resolution plans for system and network issues
  • Vulnerability Risk and Threat Identification Assessment: Qualys which involves Vulnerability identification on company Assets, Asset priority classification and coordination of patch management, and to create Vulnerability summarized reports for the client, to highlight the riskiest assets that needs to be worked on.
  • Cyber Intelligence and Reconnaissance: Performed a daily analysis on the surface/deep/dark web identify any corporate data on clients.
  • Monitored daily device asset updates along with monitoring, notifying or verifying device performance, availability and log data.
  • Created monthly reports and provided client analysis Weekly/Monthly review meetings with high level members of end clients, summarizing the security and operational events of the previous period.
  • Analyzed client phishing emails using sandbox tools and Threat Intelligence to research and determine the threat to the end clients.
Threat IntelligenceIncident ManagementVulnerability Assessment

Bell

IT Server Technician

Jun 2017Jul 2017 · 1 mo · Mississauga

  • ●Worked on setting up, maintaining, and monitoring commercial servers, both new and refurbished.
  • ● Wrote Technical Reports based upon topics such as: computer hardware, software and server
  • optimization.
  • ● Troubleshot hardware and network related problems.
  • ● Built and deployed desktop computers, laptops and servers
  • ● Set up office hardware equipment such as televisions, projectors, printers etc.
Server SetupTechnical ReportingTroubleshooting

Geek squad

Electronic Product Tester / Repair

Aug 2016Jan 2017 · 5 mos · Brampton, Ontario

  • Tested multiple different products such as computers, cell phones, drones, cameras and televisions
  • Tested products to determine defective devices and performed repair / restoration of units
  • Strong database skills as proven through reviewing data in preparation for sale on third party websites, such as ebay
  • Performed checks for personal data, and ensured personal data is wiped following government standards
  • Managed and trained 5 employees successfully instilling them with skills required for testing products
  • Regularly surpassed daily productivity records of 25 units per day by 20%.
Product TestingEmployee TrainingData Management

The manitowoc company

Assembly engineer

Jan 2016Apr 2016 · 3 mos · Mississauga, Ontario

  • Assembled computerised commercial stoves, regularly beating daily productivity standards of 10 completed units by 20%
  • Looked up and followed complex assembly blueprints during assembly of units
  • Performed installation of sensitive computerised control boards, sensors, and display modules, and practiced safe ESD (Electronic Static Discharge) handling procedures
AssemblyBlueprint FollowingESD Handling

Mevotech

Packing, Order Picker

Dec 2015Jan 2016 · 1 mo · Mississauga, Ontario

  • Responsible for organizing, packing, and classifying goods
  • Performed data entry on the information of goods into stock information database
  • Learnt and managed stock keeping database, keeping track of inventory inputs and outputs
Inventory ManagementData Entry

Education

North South University

Economics and Finance

Jan 2012Jan 2015

Npower Canada

Certification Program Field Of Study Software Development & Testing Program

Jan 2017Jan 2017

HURDCO International School

Jan 2006Jan 2011

Stackforce found 100+ more professionals with Cyber Security & Risk Management

Explore similar profiles based on matching skills and experience