Summary
Overview
Work History
Education
Skills
Websites
Professionalreferences
TECHNICAL PLATFORMS
Timeline
Generic
JOE KAGONDU

JOE KAGONDU

Summary

An astute and certified IT Systems and Cyber Security Analyst with 12 years of hands-on experience. Highly skilled in configuring and fine-tuning security monitoring systems that sufficiently protect the ICT ecosystem. A specialist in various platforms of operating systems, threat detection, incident response, risk management, encryption, and server maintenance, while possessing analytical and problem-solving abilities. Solid skills in mitigating intrusion attempts through proactive response to incidents and preparing manual and scheduled reports for various stakeholders. A valued resource and eloquent communicator capable of forging strong ties with strategic partners and achieving consensus across multiple organizational levels.

Overview

13
13
years of professional experience

Work History

Assistant Manager Cyber Security Operation Analyst

Equity Bank Limited
02.2022 - Current
  • Monitor alerts and alarms from security monitoring tools and initiate corrective actions while ensuring optimal uptime and resource utilization
  • Administer Security Information and Event Management (SIEM) system, improving processes to ensure alerts are dispositioned according to standard processes at all levels of support
  • Participate in investigations on computer security compromises, incidents, or problems and recommend corrective actions
  • Review application, system, database logs and audit trails to identify violations and ensure compliance with procedures and processes
  • Perform vulnerability assessments and regular scans to identify system weaknesses and vulnerabilities, resulting in a 30% decrease in critical security risks with the help of Nessus
  • Creating watchlist & rules to detect malicious activity using Microsoft Defender thus reducing Enterprise attack surface by 40%.
  • Provide ongoing analysis and tuning of the SIEM and implement SIEM and EDR-related management processes, including incident response playbooks and procedures for current and emerging threats
  • Evaluate user and system activity to identify suspicious activities leveraging security systems to monitor network activity and investigate anomalous events and traffic trends
  • Triage events and investigate to identify Endpoint security incidents using Falcon Crowd-Strike to
    investigate and perform the needed mitigation and remediation
  • Collaborate with database administrators, systems developers, and application owners to review and implement security controls that mitigate system security threats throughout the system life cycle
  • Configure and fine-tune security monitoring systems to make sure the Bank is sufficiently protected
  • Investigate suspicious user and system events, breaches, and root causes and mitigate intrusion attempts through proactive response to incidents
  • Conduct Malware Analysis to identify malicious activity and derive Indicators of Compromise (IOCs)
    and associated detection rules
  • Prepare manual and scheduled reports for various stakeholders
  • Research and keeping abreast on technology and cyber security trends


Assistant Manager - Bank Support Desk Analyst L2

Equity Bank Limited
05.2021 - 01.2022
  • Provided 1st level resolution of Finacle functional and technical issues raised by users from the branches and head office
  • Received service requests and incident reports via phone, web, mail, or other authorized means
  • Logged in tickets in the ticketing system, categorized service requests, and assigned tickets to the respective groups/individuals
  • Prioritized Incidents as covered by SLA and confirmed that services are in the Service Catalogue
  • Ensured provision of the incident report with ticket closure of P1 incidents
  • Provided notification inputs and used available resources to resolve incidents (people, tools, and processes)
  • Ensured that the Business Users agreed that the resolution provided addressed their needs prior to Incident closure
  • Escalation of incidents and requests that require expert input directly to the Senior Service Desk Analyst and the SME
  • Provided incident reports with ticket closure on daily/shift reports as per shift responsibility.

ICT Service Desk Analyst

Equity Bank Limited
12.2018 - 04.2021
  • Participated in investigations on computer security compromises, incidents, or problems and recommended corrective actions as first-level system support for all system users
  • Analyzed, diagnosed, and resolved all first-level user service requests assigned within the agreed timelines
  • Provided input and feedback in gaps and areas in core banking applications roles and processes that need enhancements to ensure that users' requests are resolved in a timely manner
  • Prioritized incidences and service requests that require expert input directly to level two departments thus enhancing timely reporting that could significantly impact the business
  • Escalated more complicated and technical problems to the 2nd level support within the Technology departments
  • Spearheaded IT service delivery with ITSM help desk tool: incidents, requests, and process flow control and supported call logging and dispatch by responding to requests for technical assistance promptly
  • Conducted timely exits on all ban systems as per HR exit notifications and managed access control management of user profiles both new and old on bank systems/applications
  • Reviewed application, system, and database logs and audit trails to identify violations and ensure compliance with procedures and processes.

Relationship Officer

Equity Bank Limited
07.2013 - 11.2018
  • Oversaw bank operations that include back office operations, intraday dual custody, and ATM loading/reconciliations
  • Attended to day to day operational issues and customer service within the bank assurance department and cross-sell other products to the existing customer base
  • Built and expanded existing client relationships through proactive contact, account planning, and effective pipeline management
  • Processed/cleared for inward and outward cheques and performed statistical checks in regards to all types of cheques
  • ATM reconciliation through batch-proofing, physical cash, and GL balance
  • Opened different Accounts e.g
  • Cooperate accounts, Archived personal production goals by expanding existing and acquiring relationships, utilizing effective calling techniques, and leveraging bank products and services
  • Investigated and resolved a wide variety of customer claims and requests by gathering additional information and working with other support departments
  • Processed internal and external transfers, and salaries, issued pins and bankers.

ICT Officer - Internship

Kenya School Of Monetary Studies
10.2011 - 12.2012
  • Provided support to users, using HP Service Management System and accelerated Tier-2 support via phone and Remote Desktop access support to users, and sometimes guests
  • Maintained network equipment including Cisco switches, Cisco NEXUS 7000 series, and CISCO MDS
  • Troubleshot and maintained structured cabling and network peripherals
  • Ensured all user authorization forms were duly filled and properly filled in line with policies and procedures
  • Hardware and software maintenance, troubleshooting, and support i.e laptops, desktops, printers projectors
  • Ensured all assets were tagged and all information entered into the asset management system
  • Information such as date of purchase, warranty period, asset tag, serial number, purchase price, vendor name, and address MUST be captured in the asset app
  • Used Spice-works to monitor and update incoming tickets
  • Administered the access control system by adding, removing, amending details, etc
  • Provided access Control reports and maintained the list of users and rights for the Access Control
  • Installed and configured new hardware and software (desktop, laptop, printer, biometric device, etc)
  • Managed and maintained Domain Controller, Citrix systems, Email Server, Anti-Virus server and updates, SQL server, and Backup system for the organization
  • Compiled and organized data for monthly status reports.

Education

Certified Ethical Hacker - Information Security

EC COUNCIL

Cisco Certified Network Associate Routing and Switching (CCNA) -

CISCO
01.2018

Bachelor of Business Information Technology -

Jkuat
12.2012

A+ and N+ Certification -

Institute of Advanced Technology
01.2009

Skills

    Security Monitoring & Log-in Events
    Incident Management and Response
    Cyber Threat Intelligence Detection & Management
    Security Operations
    Log Analysis and Reporting
    Vulnerability Assessment & Management
    Azure Cloud Security
    Identity and Access Management (IAM)
    System Analysis

Professionalreferences

  • GIBSON MURIITHI, Deputy Director, Security Operations, International Rescue Committee, 0720 211343, muriithimacharia87@gmail.com
  • MOSES SSEDAWA, Cybersecurity Architect Manager, Qatar Investment Bank, 0737 235259, +974 39961701, odhiambom10@gmail.com
  • SAMUEL MBOGORI, Senior Manager Applications, Equity Bank, 0722 630 697, samuel.Mbogori@equityank.co.ke

TECHNICAL PLATFORMS

LogRhythm (SIEM)
ArchsSight (SIEM)
Crowdstrike (XDR)
Tripwire (FIM)
Portnox (NAC)
ArchSight Logger
Darktrace
Kali Linux
Wireshark
Cisco ISE
Cisco Routers and Switches
Toad for Oracle V10.1 Linux
Tenable (Vulnerability Assessment)
Microsoft Defender and Cloud App
Microsoft Defender and Cloud App Security
Service Now

Timeline

Assistant Manager Cyber Security Operation Analyst

Equity Bank Limited
02.2022 - Current

Assistant Manager - Bank Support Desk Analyst L2

Equity Bank Limited
05.2021 - 01.2022

ICT Service Desk Analyst

Equity Bank Limited
12.2018 - 04.2021

Relationship Officer

Equity Bank Limited
07.2013 - 11.2018

ICT Officer - Internship

Kenya School Of Monetary Studies
10.2011 - 12.2012

Certified Ethical Hacker - Information Security

EC COUNCIL

Cisco Certified Network Associate Routing and Switching (CCNA) -

CISCO

Bachelor of Business Information Technology -

Jkuat

A+ and N+ Certification -

Institute of Advanced Technology
JOE KAGONDU