Post Job Free

Resume

Sign in

Security Analyst SIEM Engineer Security Engineer Splunk

Location:
Elkridge, MD
Posted:
January 15, 2024

Contact this candidate

Resume:

Srinivasa Rao Tumarada

Email: ad2sfd@r.postjobfree.com

Phone: 443-***-****

Summary: Hardworking and Proactive Professional with more than 15 years of experience focused on implementation and product support for SOC, Security software and SIEM solutions, CISSP, Splunk Power User, Splunk Enterprise Admin Certified, with experience in working on AWS and Azure Environments.

Key Skills:

• SIEM Implementations and Security use cases, Technical Support.

• Plan and Implement SIEM Solution by mapping Compliance guidelines like NIST, PCI, SOX, HIPAA and MITRE Framework.

• Deploy SIEM Solutions on-prem, AWS, Azure Environments.

• Writing PowerShell/Python/bash Scripts/SQL and Elasticsearch queries for Data source integrations, retrieval and processing of log data for correlation use cases and alerts, Testing and deploying the scripts.

• Lead security operations center team for Security incident analysis and troubleshooting.

• Work with Sales team and Technical Account managers during pre-sales process and post-sales process.

• Use cases SIEM solutions and write scripts to integrate data sources, simulate test and production issues.

• Configuring, Parsing and Analyzing log sources like Cloud Logs, Firewalls, switches, Web servers and Windows event logs.

• Vulnerability scanning, Audit assistance for customers in reporting and mapping IT security controls for NIST 800-53, 800-171(CMMC), PCI DSS, SOX, HIPAA, ISO 27001 and various other compliance standards.

Executive Summary:

• Over 15 years' experience in Customer Facing and Product Technical support, Lead SIEM Implementation, security incident troubleshooting, compliance Reporting.

• Implementation and product technical support for security software and SIEM solutions.

• Specialized in Security Incident and event management doing mid and large size implementations and working with incident response teams at SOC (security operations center).

• Analyze and work with Engineering for customer use cases and product enhancements.

• Worked in heterogeneous environments including AWS, Azure, Active Directory, Linux Oct-2018-Dec 2023:

Name of Company: Eventtracker Security LLC, Subsidiary of Netsurion USA, Columbia-MD-USA Position Title: Lead Eventtracker Security Architect

• Plan and Implement Eventtracker SIEM Solution using environments such as Azure and AWS to successfully complete 50 projects, Used scripting tools like PowerShell, Python, SQL, Elasticsearch DSL queries for use cases.

• Support Incident management by monitoring critical escalations and use cases to ensure timely resolutions for Eventtracker customers including enterprise and MSSP.

• Work with Security Operations center in Onboarding and Incident management.

• Deploying Vulnerability scanners like Saint, OpenVAS and scheduling scans, review the alerts and reports and make recommendations.

July-2017-June 2018

Name of Company: Eventtracker Security LLC, Columbia-MD USA Position Title: Support Engineer

Planned and implemented large customer implementations for Eventtracker SIEM products and handled critical escalations.

June-2012-2017

Name of Company: Prism Microsystems Inc, Columbia-MD-USA-21045 Position Title: Staff Engineer

• Pre- and Post-Sales engineer, Implement and support Evemttacker SIEM for Mid and Large companies,

• Provide technical assistance to Auditors and IT security team in correlation and reporting.

• Analysis of Windows and Network Systems Logs for compliance and forensic purposes, using PowerShell, python and SQL, reporting tools of Eventtracker SIEM

• Configuration assessments with OpenSCap tools.

Dec 2006-May-2012:

Name of Company: Prism Networks Pvt Ltd, Bangalore India. Position Title: Team Manager

• Lead and manage support team in India to support customers across the Globe through Voice, Email and web meetings.

• Manage and assist team members in resolution of support cases by assisting them in replication and providing input. Lead the team with handling escalations.

• Supported SIEM products include EventTracker, Event Log Central, Status Tracker, What Changed and Trap Tracker. These products use SQL Server as the backend for configuration data.

• Principle Support activities include.

• Installation and configuration of base products and agents.

• Log collection and review for troubleshooting purposes.

• Analysis and identification of the root cause of the problem.

• Internal Testing and replication of Customer’s problems.

• Timely escalation of issues to the Engineering team and following-up and working with the engineering team on the same.

• Providing fixes (issued by Engineering) to customers and ensuring the problem is resolved. Dec 1999-June 2006

Name of Company: Microworld Software Services Pvt LTD, Mumbai India Position Title: Head Technical Support North India. Lead a team of support engineers for end point security software deployment and escalation engineer for customers, work along with sales team for pre-sales POC deployments. Education & Credentials:

• Engineering diploma, Electronics & Communication Engineering

• Education equivalency to Bachelor of Information Science is done by Baruch College New York in combination of my continuous education and later experience in Information Technology.

• CISSP

• Splunk Certified Power User

• Splunk Certified Enterprise admin.

• Completed the Front-End JavaScript developer certification from FreeCodeCamp.

• Completed several courses from Microsoft's virtual academy.

• Completed the AWS Security Specialty 2020 Certificate course on Udemy.

• Completed the course Kubernetes Monitoring with Datadog from Datadog.



Contact this candidate