Highly skilled and certified Information Systems Security Professional (CISSP) with over 8 years of experience in Enterprise Security. Currently employed as a Security Engineer at Fire Financial Services. Proven track record of coordinating with Networks and Servers teams to conduct comprehensive security audits and ensure compliance with industry security standards and regulations such as GDPR, CIS, NIS, and DORA. Technical expertise includes managing Microsoft Azure infrastructure, AWS exchange online, Endpoint Management, SIEM, Cortex Advanced Threat Protection, and more. Dedicated to enhancing organizational security by leveraging diverse skillsets acquired throughout career. Excel in effectively communicating security requirements to stakeholders and providing deep technical expertise in remediating security risks. Known for dependability and extensive experience providing security and protection services in various settings. Keen eye for detail and excellent problem-solving skills enable de-escalation of potentially dangerous situations while upholding highest standards of safety and security.
Overview
10
10
years of professional experience
Work History
SECURITY ENGINEER
Fire Financial Services
06.2024 - Current
Advising the Management with security initiatives by following the industry best practices and regulations set by Central Bank of Ireland. (DORA & NIS)
Enhanced the Data loss prevention security control through implementation of SAML, Proxy web server and NACs
Implemented AWS Security Hub for Production environment to measure KPIs for vulnerabilities and AWS security score.
Oversee security program by ensuring adherence to organization security goal through standards, procedures and monitoring the effectiveness
Enhanced Endpoint security for the organization with the use of Microsoft Endpoint Management and Microsoft Defender.
Perform security monitoring and forensic analysis to detected and mitigated security incidents effectively
Lead staff security training sessions in providing security awareness and compliance sessions in line with industry regulation
Collaborate with risk and compliance teams to proactively manage and report security risks identified through MITRE ATT&CK Framework
Worked with teams to develop company-wide information assurance, security standards and procedures.
Implemented necessary controls and procedures to protect information system assets from intentional or inadvertent modification, disclosure or destruction.
SECURITY SPECIALIST
Turas Mobility services LTD (M50 eFlow)
05.2020 - 05.2024
Review and ensure system Security Compliance for Servers (CIS benchmark), Network Devices and Mobile Devices through Microsoft Endpoint Management
Design and Implement policies and procedures for mobile devices such as Laptops and mobiles through Microsoft Endpoint Manager using Zero trust Architecture principles
Design and Implement Network Access Control for servers and Network devices to reduce the attack surface
Conduct Vulnerability scans for all system within infrastructure to identify security vulnerabilities
Manage Endpoint Devices through Microsoft Endpoint Manager (Intune MDM) for Security compliance, Application Management, Group policy deployment, Encryption and Configuration Policy
Conduct risk assessment on a quarterly basis for all infrastructure and communicate the threat reports with protection measures to the Senior Management/ C-Suite team within Turas and the Client Tii
Ensure the new and the existing systems are in accordance with the industry best practices in terms of Information security
Conduct cost/benefit analysis of various services provided by service providers on a quarterly basis and make recommendations to C-Suite team
Manage External Penetration test yearly and report the findings to the C-Suite team
Member of Change Advisory Board to review and analyze the change based on organizational impact
Identifying and classifying Data and Assets based on the financial impact to the organization on a quarterly basis
Provide architectural, technical guidance with industry recommendation for securing the systems
Vulnerability Management and Remediation through Networks and the servers team
Providing security awareness training to various stakeholders within the organization
Manage and Maintain Anti-Malware and Anti-Exploit Management using 3rd party applications and liaise with respective business units to remediate the issues
Reviewing Firewall rules and policies to identify anomalies through forensic knowledge gathering on a quarterly basis
Monitoring IBM QRadar to identify alerts and categorize based on the various aspects (Source IP, Alert Type, Sev score based on CVSS etc.) of the threat to neutralize it
Monitor Azure Identity and Access Management platform to review access control and enforce various industry best practice like Principle of Least Privilege and Separation of Duties
Review and implement the security requirements for the various systems deployed across Azure and On-Premises
Conduct workshops to address different security breaches by differentiating false positives and true positives
Part of Disaster Recovery and Business Continuity salvage team.
IT ENGINEER
H&MV Engineering
12.2017 - 05.2020
Manage day-to-day IT troubleshooting for company-wide users both locally and remotely (Multiple H&MV locations)
SharePoint Management - Creation of Site, work flows, Permission in SharePoint Online
Office 365 Administration - User creation, Mailbox management and Group administration
Troubleshooting and managing Windows Server (Active Directory, Group Policy, DNS, DHCP, File security, VPN) and Azure AD
Monitor, manage & configure internal infrastructure (Switches, Servers, Storage devices, Printer, Desktops, Laptops and Mobile Devices)
Implemented new security protocols for email security, Server security, Antivirus, Firewall, Multi-factor Authentication for Office accounts and Encryption
Process automation through Microsoft Flow, PowerApps and PowerBI
Procurement of external software for various departments to execute specific business needs
(CRM, Payroll, Engineering Applications)
Management of Cloud Infrastructure through Microsoft AZURE
Plan, design and deploy virtual machines, services and networks on Microsoft cloud as required by the organization through AutoDeploy and AutoScale Entra ID policies
Mentor recent graduates in bridging the gap between their academics and current IT trend
Ensure the various threats are identified, prevented and/or responded on a timely manner using various tools such as ManageEngine Desktop central Vulnerability Manager, TrendMicro for Anti-Virus and Mimecast for emails.
Provided secondary training to personnel struggling with technological tools and systems.
SENIOR SYSTEMS ENGINEER
Cognizant Technology Solutions
06.2014 - 08.2016
Part of Windows Server Administration team for private cloud data centre consisting of 150 Windows servers
Ensure the servers are patched monthly through WSUS
Technical point of contact for all Windows server related issues
Manage and maintain the new and existing Windows group policy through Change control
Manage Microsoft Windows Active directory for user administration and group policies for UBS project
Part of service desk team to solve the L1 and L2 issues in a timely manner
Provided induction for the new starters within the team of 20 members.
Education
BACHELOR OF ENGINEERING -
Anna University
undefined
M.SC. IN INTERNATIONAL MANAGEMENT AND GLOBAL BUSINESS - undefined
University of Limerick
10.2017
Skills
Microsoft Endpoint Manager
Microsoft Identity and Access Management
IBM QRadar, AWS Security Hub (SIEM)
Vulnerability Management
Office 365 Administration
Palo Alto Firewalls
Network Access Control
Remediation Planning
Zero Trust Architecture Mindset
BYOD Program Implementation
Cloud security
Timeline
SECURITY ENGINEER
Fire Financial Services
06.2024 - Current
SECURITY SPECIALIST
Turas Mobility services LTD (M50 eFlow)
05.2020 - 05.2024
IT ENGINEER
H&MV Engineering
12.2017 - 05.2020
SENIOR SYSTEMS ENGINEER
Cognizant Technology Solutions
06.2014 - 08.2016
undefined
M.SC. IN INTERNATIONAL MANAGEMENT AND GLOBAL BUSINESS - undefined
University of Limerick
BACHELOR OF ENGINEERING -
Anna University
Similar Profiles
Derek KonoskyDerek Konosky
Acting Base Fire Chief at CFB Suffield Fire Services, G3 Fire ServicesActing Base Fire Chief at CFB Suffield Fire Services, G3 Fire Services
Vice President/Product Director at Voya Financial/ING/Aetna Financial ServicesVice President/Product Director at Voya Financial/ING/Aetna Financial Services