Post Job Free

Resume

Sign in

Incident Response Cyber Security

Location:
Auburn Hills, MI, 48326
Salary:
80000
Posted:
April 18, 2024

Contact this candidate

Resume:

Franklin Ntong Bamu

United States Army Reserve

240-***-**** ad436u@r.postjobfree.com

www.linkedin.com/in/francklin-ntong-6b82a02b5

SUMMARY OF QUALIFICATIONS

Proven leader with 6 years of experience in leadership. Problem solver who engages team concept in finding the best solutions. Self-motivated and maintain a positive outlook no matter what the circumstance. Leads by example. Ability to perform Intrusion Detection, Vulnerability Assessment, Security Incident Response, and Risk Management in the design of Information Security requirements, and strategies needed to safeguard highly sensitive systems, data, and communications resources. Self-motivated and goal-oriented cyber security professional, with demonstrated ability to handle complex responsibilities in a demanding environment.

EXPERIENCE – CIVILIAN

Incident Response/Cyber Threat Intelligence

Data Loss Prevention/Anti-Phishing

Wireshark

Network Security Protocols/ TCP/IP

Nessus/Nmap

CrowdStrike (EDR)

Splunk

ServiceNow/Remedy

SIEM

Linux/Windows

Active Directory/Microsoft Office

Virus Total, Domain Tools, IP/URL void, IBM X-Force Exchange

US-CERT, OSINT, OWASP, MITRE Framework

FCS AMERICA, SOC Analyst Nov 2022 – Present;

Provides, assisted with the development of processes and procedures to improve incident response times, analysis of incidents, and overall, SOC functions.

Significant Accomplishments

Consistently monitoring and working on alerts generating on Splunk

Created Splunk dashboards to capture all customized logs generated by systems and applications.

Assisted in creating new use cases and performing SOC testing

Cybersecurity management and policy creation.

Reviewed and updating SOC run books as required

Performed endpoint detection and prevention using McAfee ePO

Investigated attachments and links for imbedded malware using McAfee ePO

Provided client recommendations on how to securely resolve escalated issues

Trained new employees on how to handle investigations and safely deal with phishing emails

Supported Incident Response till resolution following Standard Operation Procedures (SOP).

Prioritized and differentiating between potential intrusion attempt and false alarms.

Stayed up to date with current vulnerabilities, attacks, and countermeasures.

Competencies

Dynamic ability to communicate and relate to customers and new employees.

Adapt to changing situations and environments.

A team player with good written and verbal communication with extra motivated zeal to learn.

Ensure the Confidentiality, Integrity, and Availability of Client information resources.

ORBCOMM, UTICA NEW YORK Sep 2018 - Sep 2022;

Provide services and support to Develop and follow-up action plans to resolve reportable issues and communicating with other IT teams to address security threats and incidents accordingly.

Significant Accomplishments

Document all incidents and create a clear narrative that supports their conclusions.

Provide Tier 1 support and escalate all events to Technical Leads for review before completing event notation to ensure accuracy and completeness.

Ensure that all incidents are supported with evidence and artifacts derived from analysis.

Provide clear and actionable event notifications to customers.

Create a ticket in the SOC ticketing system for tracking and escalation purposes where a specific action is required for an event.

Perform ad-hoc analysis of events in the current SIEM and other SOC tools looking for malicious activity and other security related events that were not identified by the automated processes.

Provide an immediate response to all customer inquiries and information requests.

Perform appropriate escalations for events, notifications, and non-responsiveness from customers

Competencies

Investigate suspicious activities, contain, and prevent them.

Incident Handling and Documentation

Reduce downtime and ensure business continuity.

maintain detailed reports of incidents and security policies.

Communication and Collaboration

EDUCATION

CompTIA Security+ Certificate / EXP DATE: 02/20/2027

ID: COMP001022464459

Code: VFWT9TKZ2244QDS3

Bachelor Degree / Graduated June 2010



Contact this candidate