Mehmet Duzgun, Sec+
New Jersey 201-***-**** ********@*****.*** /in/mehmetduzgun
CompTIA Security+ certified, highly qualified Cyber Security Analyst with 2+ years of experience in information security. Specialized in performing malware analysis in sandboxes and investigating indicators of compromise, phishing analysis, incident response using various security tools such as FireEye, Q-Radar, Wireshark, Splunk. Currently working on CEH certification and enthusiastic about cybersecurity. SKILLS
• IT Security: FireEye HX (EDR), Redline, IBM QRadar, Splunk (SIEM), Log Analysis, Phishing Analysis, Virus-Total, Any-Run, The Hive, MX Toolbox
• Networking: Cisco Network Security, Packet Analysis (Wireshark, Tcpdump), TCP/IP, IDS/IPS
• Vulnerability: Nessus, Qualys, Shodan, Nmap, Kali Linux, Metasploitable
• Systems: Windows, Unix/Linux, IOS, Virtual Box, VMware
• Language: English, Turkish. Excellent written and verbal communication skills KNOWLEDGE
• Malware Analysis, Endpoint Detection & Response, Phishing Analysis, Incident response, DLP
• Information Security, Network Security, Security Operations Center best practices
• Penetration testing, Vulnerability scanning, OWASP TOP10 Web attacks
• Knowledge of security policies, regulations
PROFESSIONAL EXPERIENCE
• CyberNow Labs, SOC Analyst July2019- Present
Led investigations on end point devices via FireEye HX (Endpoint Detection & Response Solution)
Handled the offenses generated by IBM QRadar such as firewall denies, authentication failures, connection to a known malware site, traffic from an untrusted network, and potential data loss
Monitored networks by using IBM QRadar (SIEM Security Information and Event Management) to detect abnormal activity
Created, modified, and updated (SIEM-Security Information and Event Management) rules
Performed phishing email campaign and led analysis by checking reputation, e-mail header, domain, and IP address, by using open-source intelligence (OSINT) tools or websites
Identified and prioritized vulnerabilities in computer systems, network infrastructure, and applications
Analyzed security system logs and reviewed the indicators of compromise (IOCs)
Created tickets for escalation to IR/Engineering when necessary using The Hive (Ticketing System)
Reported vulnerabilities for the fix by use of analysis
Acquired and analyzed triages when necessary to gain insight on the incidents and consequently requested containment for malicious machines and servers
Collaborated with different teams to follow up on user requests
Worked independently with a minimum required supervision to perform all necessary job duties
Identified security issues for remediation and investigated events and incidents
Leveraged understanding of risk management frameworks and NIST security standards
Prepared briefings and detail-oriented reports of analysis methodology and results
• ILearn School, NJ, Teacher of Mathematics, August 2010 – 2019
Supervised installation, configuration and maintenance of multiple smartboard software, hardware and network structure of several end users.
Monitored system performance and troubleshooting issues
Participated in evaluation, investigation and testing of new technologies with other teams to enhance Information Security infrastructure
Developed and administers mathematics curriculum consistent with school district goals and objectives
Coordinated with other professional staff members, especially within grade level, and participates in faculty meetings and committees
Created reports based on activity, trends, and provide associated commentary CERTIFICATIONS AND TRAINING
Cybersecurity Training
Cybersecurity Analyst Hands-on Training
CompTIA Security +
CEH (In Progress)
IBM QRadar SIEM Foundation Badge
Nessus
Qualys
Splunk 7.x Fundamentals Part 1
Learn to Program: The Fundamentals (Python)
NJ Teacher of Mathematics, K-12
EDUCATION
Master of Science Wilkes University
Educational Development and Strategies
Bachelor’s in Mathematics Karadeniz Technical University Faculty of Letters & Science