BRIAN ALLEN
Miramar, FL ***** *************@*****.***
PROFILE
Experienced IT Cybersecurity Engineer with strengths in Vulnerability Assessments, Threat Detection and Mitigation, Risk Management, Information Security Monitoring, Incident Response, Data and Event Analysis, Log Management, Best Practices, NIST Compliance, and Cloud Technology. Proven ability to monitor, detect and resolve network security issues, as well as develop and implement security architecture designs, processes and procedures to ensure the security of an organization. Background encompasses a broad array of IT solutions and applications known for solving the most complex issues and finding the most efficient ways to complete a process. A highly resourceful individual with excellent decision-making skills who works well in fast- paced environments, prioritizing tasks, and delivers results under strict deadlines. Strong interpersonal and communication skills able to effectively articulate advanced technical topics and build consensus. Quickly learn and master new technologies and stay current on the latest information security threats and vulnerabilities across the globe. PROFESSIONAL EXPERIENCE
HANDSHAKE 07/2025-
A online career network primarily for college students to find jobs and internships, connecting them with a large network of employers and educational institutions. Founded in 2014, the company's platform uses intelligent matching to provide personalized job recommendations and features resources for career development, such as career fairs and skills-based learning. Handshake also uses the platform to create career trend reports for employers and universities
■ AI Research Scientist
contributed to AI research initiatives in collaboration with top AI labs
improve the performance of Large Language Models (LLMs) within specific fields and topics.
develop domain-specific prompts and evaluating LLM responses.
Helped advance the capabilities of Large Language Models (LLMs) in areas like visual storytelling and professional communication
Review, corrected, and refining AI outputs using academic expertise and citations ENHANCE IT 08/2021- 06/2023
IT consulting company specializing in company infrastructure, cybersecurity, data science, big data, and mobile apps for clients such as Microsoft, Google, J&J, Fannie Mae, Walmart, PayPal, T-Mobile, McDonalds, CVS, Nike, Dell, Capital One, and Charles Schwab.
■ Cybersecurity Engineer
Accountable for assisting Enhance IT and their clients with the identification, evaluation, and remediation of security gaps. Effectively anticipated security requirements and identified sound security controls for applications, systems, processes, and organizations. Position required significant application customization and optimization, as well as client and user training and ongoing support. Threat Detection/Mitigation
Communicated the seriousness of threats and proposed recommendations for remediation to upper management and other cybersecurity personnel. Developed Incident Response Plan (IRP) and implemented tools for each stage.
Evaluated security measures to protect against threats or hazards to data.
Provision, configure, and upgrade Linux servers as required
Engaged with external auditors and third parties in support of security activities.
Performed analyses to validate security requirements and recommended additional security measures and safeguards.
Evaluated QoS for products and delivered an exceptional level of technical assistance that benefited the company and their clients.
Provide administration, operations, and maintenance of Linux and related servers/systems
Peformed penetration testing on Kali Linux
Supported SOC efforts using MDR/EDR/SIEM platforms to detect, investigate and analyze events from CrowdStrike Falcon solutions and other security tools
Experience developing advanced workflows leveraging the CrowdStrike Falcon platform. Cybersecurity Monitoring and Testing
Monitored technical risks and provided mitigation plans that aligned with established cybersecurity controls.
Worked with industry-standard cybersecurity tools for testing, monitoring and investigation such as, Splunk, Rapid7, AlienVault Nmap, Wireshark, Metasploit, and pfSense.
Monitored systems for vulnerabilities and threats, including weak password settings and weak configuration settings.
Worked with the CISO and network security teams to set-up monitoring, access risks, and implement cybersecurity solutions.
Performed real-time monitoring, security incident handling, investigation, analysis, reporting, and escalations of security events from multiple log sources.
Knowledge of incident response frameworks and best practices, such as NIST SP 800-61, ISO 27035, Vulnerability Testing, Assessment and Management
Processed Rapid7 vulnerability scanning for critical and high severity alerts, log analysis, and results.
Conducted hands-on vulnerability assessments and penetration testing using commercial and open-source tools such as Nmap, Nessus, and Metasploit.
Performed risk assessment and ensured proper protection or corrective measures were in place for vulnerabilities identified during assessment and audit processes.
Enterprise Security Projects
Tracked project expenses to maintain projected budgets.
Presented project updates to stakeholders about strategy, adjustments, and progress.
Calculated project performance metrics to pinpoint areas for improvement.
Monitored and managed all installed systems and infrastructure. SAP 11/2021 - 11/2022
A multinational software company with $31B in annual revenue and 111,914 employees with offices in 180 countries.
■ Cybersecurity Engineer
Worked in a one-year contract position accountable for developing, implementing, and maintaining secure systems and networks for SAP. Provided technical expertise for the prevention and resolution of security incidents, as well as to identify and address any potential vulnerabilities. Effectively anticipated security requirements and identified sound security controls for applications, systems, processes, and the organization. (Cont. P2)
Brian Allen Page Two
PROFESSIONAL EXPERIENCE
SAP - (CONTINUED)
Threat Detection/Mitigation
Analyzed log data from SIEM tools such as Splunk and Wireshark to identify threats and vulnerabilities on the network to prevent cybersecurity incidents.
Performed log aggregation, data analysis, Splunk queries, dashboard design, and correlation queries.
Used Jira for creating defects and blockers and uploaded evidences in SharePoint.
Secured configurations of all server images in Converge Cloud and ensured secure KMS (Key Vault Configuration).
Created a detailed Incident Report (IR) and contributed to lessons learned and mitigations for future attacks of a similar nature.
Obtained tenable scans to generate reports to show critical and high vulnerabilities were reduced to low and acceptable count in Common Vulnerabilities Scoring Systems (CVSS) from the Common Vulnerabilities and Exposures (CVEs). Secure Systems and Networks
Ensured Microsoft Azure Key Vault audit logging was enabled accordingly.
Enforced Secure Socket Layer (SSL) policies for storage in Microsoft Azure.
Checked all storage services in Microsoft Azure for all data centers across various locations.
Ensured SAP password policies were working accurately and container registries were private for all platforms.
Enforced multifactor authentication (MFA) for all accounts in Google Cloud Platform (GCP), Microsoft Azure and Converge Cloud.
Created data centers and validated controls for SAP using cloud platforms such as Amazon Web Services (AWS), Microsoft Azure, Google Cloud Platform (GCP), and SAP Converged Cloud.
Worked on extended controls and created different data centers in various countries.
Used JAVA to hash user passwords using the recommended SHA-2 algorithm. Cybersecurity Monitoring and Testing
Deployed various resources from the team like Splunk and ELK.
Set-up and configuration of Splunk ES along with monitoring and reporting using Splunk dashboards.
Ensured secure configuration of the Cloud Content Delivery Network.
Monitored and analyzed Security Information Event Management (SIEM) events to identify trends and potential vulnerabilities. Vulnerability Testing, Assessment and Management
Remediated identified cybersecurity alerts and threats using Splunk and vulnerabilities using Tenable Nessus.
Experienced with JAVA by avoiding serialization vulnerabilities that are found in various applications. Leadership Accountabilities
Worked with 12 members in the Cybersecurity Team and tracked team tasks and progress using Excel.
Gathered evidence for the Subject Matter Experts, ran meetings, and rendered updates to team leaders.
Trained new team members and created SOPs for new members. EDUCATION AND CERTIFICATION
Bachelor of Science Degree in Information Studies and Information Security University of South Florida
Splunk Fundamentals Part1 Certification
TECHNICAL PROFICIENCIES
Threat: Threat Detection, Incident Response, Incident Response Plan (IRP), SOC Analysis, Monitoring, Mitigation, Threat Intelligence Feeds, Cyber Kill-Chain, Diamond Model, and Penetration Testing. Cybersecurity Monitoring and Testing Tools: Splunk, Metasploit, Wireshark, SNORT, Nessus, Nmap, Core Impact, Network Miner, AlienVault, Symantec Endpoint Protection (SEP), ELK, and Firewalls (pfSense). Vulnerability: Vulnerability Testing, Vulnerability Assessment, and Vulnerability Management Framework. Enterprise Security Services: Security Assessment and Testing, Security Related Awareness and Training, Risk Management Framework, Incident Response Procedures/Incident Response Plan (IR Plan), Identity and Access Management (IAM), Security Assessment and Testing, Compliance and Risk Assessment, and Cybersecurity Audit.