Post Job Free
Sign in

Cybersecurity Technical Consultant and SIEM Expert

Location:
Cantonment, FL
Posted:
October 04, 2026

Contact this candidate

Resume:

Pallavi Kalwala

Email:*************@*****.*** Contact: 850-***-****

SUMMARY

• Experienced Technical Consultant with 5+ years in Cybersecurity, Information Assurance, Identity and Access Management (IAM), SailPoint Identity, and Cloud Security (AWS). Skilled in penetration testing, vulnerability assessment (Qualys, Nessus, Nexpose), malware detection, and regulatory compliance (PCI, NIST, FISMA, HIPAA).

• Hands-on expertise with SIEM platforms (IBM QRadar, Splunk, ArcSight, LogRhythm), endpoint security (McAfee suite, Symantec), DLP, and cloud security architecture including CASB solutions.

• Proficient in network security protocols, firewall and IDS/IPS management, and secure network design using EIGRP, OSPF, MPLS, and BGP.

• Strong understanding of risk management, incident response, vulnerability management, and security policy development aligned with ISO 27001, COBIT, and NIST frameworks.

• Skilled in automation and scripting using Python, Java, PowerShell, SQL Alchemy, and managing cloud infrastructure via Terraform and AWS CloudFormation.

• Experienced in coordinating security audits, third-party assessments, remediation tracking, and ensuring compliance with industry standards and regulations.

• Collaborative professional with proven ability to bridge business and technical teams to deliver security solutions that align with organizational goals.

TECHNICAL SKILLS

• Networking: tcpdump, Wireshark, Snort, Bro, Firewalls, IDS/IPS, Access Control

• Systems Administration: Active Directory, DNS, DHCP, FTP, SSH, Virtualization (ESX)

• Vulnerability Assessment: Nessus, Qualys, Nexpose, BurpSuite, Metasploit, Nmap, Tripwire/IP360

• Endpoint Security: McAfee (ePO, VSE, HIPS, DLP), Symantec Endpoint Protection, Carbon black, CrowdStrike Falcon, Email Security Gateways

• SIEM Platforms: IBM QRadar, Splunk, ArcSight, LogRhythm, McAfee Nitro

• Cloud Security: AWS (EC2, S3), CASB (Netskope), CloudFormation, Terraform, GCPBucketBrute, GCP IAM Scanner.

• Exploitation Frameworks: Metasploit, Cobalt Strike, Empire, Brute Ratel, Havoc

• Cyber Security Frameworks: CIS Controls, MITRE ATT&CK

• Programming: Java, Python, C, C++, JavaScript, PowerShell, SQL Alchemy,Bash,Go.

• Payload Generation : Donut, Unicorn, MSFVenom

• Credential Attacks : Hashcat, John the Ripper, Hydra, CrackStation

• Protocols: TCP/IP, IPSEC, SSL/TLS, SSH, DHCP, DNS, SNMP

• Compliance & Frameworks: ISO 27001, PCI DSS, NIST, FISMA, HIPAA, COBIT, COSO

• Tools: Solarwinds, Rapid7, RSA Archer, Forcepoint, Tripwire, Tenable, Blue Coat Proxy PROFESSIONAL EXPERIENCE

Englewood Healthcare, Englewood, NJ June 2025 to Present Cyber Security Engineer/Analyst

• Established and maintained Governance, Risk, and Compliance (GRC) practices aligned with ISO 27001 and regulatory frameworks

• Executed complex attack chains, including lateral movement, privilege escalation, and persistence within Active Directory environments.

• Managed SIEM environments (QRadar, Splunk), configured McAfee endpoint security solutions, and deployed Data Loss Prevention tools.

• Conducted application penetration testing to identify vulnerabilities affecting confidentiality, integrity, and availability.

• Assessed enterprise network infrastructures for misconfigurations and vulnerabilities, with in-depth knowledge of TCP/IP protocols, DNS, FTP, and HTTP.

• Designed and implemented cloud security architectures including Amazon CloudFront, Route 53, and CASB solutions like Netskope.

• Utilized Kali Linux for performing comprehensive penetration tests on internal and external systems to uncover vulnerabilities and misconfigurations.

• Directed compliance audits and implemented governance processes for SOX, HIPAA, and PCI-DSS adherence.

• Participated in CTFs (Capture the Flag) and red team-blue team exercises using Kali Linux as the primary attack platform

• Led SOC teams for incident response, PCI DSS, and NIST compliance.

• Automated security metrics and incident reporting using Splunk dashboards and developed integration solutions for CyberArk vault with LDAP and multi-factor authentication.

• Supported vulnerability management processes using Nessus, Qualys, and other tools, including remediation tracking and risk assessments.

• Reviewed application source code for security vulnerabilities, leveraging secure development and threat modeling practices.

• Conducted forensic analysis and threat hunting using SIEM and EDR tools in large enterprise environments.

• Coordinated internal audits and external PCI DSS assessments, managing remediation and compliance documentation.

• Classified and secured organizational assets through robust data classification policies and role-based access controls

(RBAC).

• Implemented zero trust security frameworks by integrating conditional access policies and micro-segmentation strategies.

• Architected and segmented networks using firewalls, VPNs, and DMZs to limit attack surface and lateral movement.

• Provided technical leadership for firewall management, network security troubleshooting, and VMware-based system deployments.

• Leveraged threat intelligence to design custom threat actor emulation scenarios for red team engagements. Wells Fargo, India Sept 2021 to Nov 2023

Cyber Security Engineer

• Monitored network environments using DLP, Bluecoat Websense, Proofpoint, Trend Micro, and IBM QRadar SIEM tools.

• Led international data encryption projects, managing Voltage secure data encryption servers globally.

• Conducted vulnerability assessments and penetration testing using Nessus, BurpSuite, and Rapid7 tools.

• Migrated AWS infrastructure to serverless environments via Terraform and AWS CloudFormation.

• Developed cloud security architectures and proof-of-concept implementations following ISO 27001, PCI DSS, and OWASP standards.

• Designed layered security architectures for hybrid environments using defense-in-depth and zero trust principles.

• Tuned SIEM correlation rules in QRadar and Splunk to reduce false positives by 35%, enhancing detection of high- fidelity threats.

• Leveraged Kali Linux's Metasploit Framework to simulate real-world exploitation scenarios for blue team preparedness and patch verification.

• Developed and maintained custom red team tools using Python, PowerShell, and Go to automate testing and support advanced operations.

• Implemented IAM solutions including MFA, SSO, and provisioning workflows to strengthen access security.

• Used Hydra and John the Ripper on Kali to conduct controlled brute-force and password cracking tests on local systems and network services.

• Automated reconnaissance and enumeration processes using scripting in Python and Bash within Kali Linux.

• Automated vulnerability detection and remediation workflows integrating Splunk with ServiceNow and LDAP.

• Managed endpoint security with Symantec Endpoint Protection and McAfee suites.

• Supported continuous integration and delivery pipelines using Jenkins and Linux shell scripting for automation.

• Contributed to threat intelligence initiatives and security documentation to improve organizational security posture. Liberty Mutual Insurance, India Oct 2019 to Aug 2021 Cyber Security Analyst

• Monitored and analyzed firewall and system logs to identify threats and coordinate remediation efforts.

• Collaborated with engineering teams to fine-tune alert thresholds and response workflows.

• Supported vulnerability management using Tripwire, Tenable, and Nessus in compliance with NERC CIP standards.

• Provided escalation support and facilitated communication between technical teams and management.

• Implemented and maintained endpoint encryption across enterprise systems using McAfee whole disk encryption and ePO.

• Captured and analyzed network traffic using Wireshark and tcpdump within Kali Linux to investigate potential data exfiltration or suspicious lateral movement.

• Performed database vulnerability assessments using Guardium, mitigating SQL-based risks and safeguarding sensitive data.

• Performed security testing and assessments on cloud platforms, with a focus on Google Cloud Platform (GCP) environments.

• Performed vulnerability assessments using Nikto, OpenVAS, and VulnHub environments hosted in Kali Linux.

• Executed web application testing using Kali-based tools like Burp Suite, OWASP ZAP, and SQLMap to detect injection flaws, authentication bypass, and cross-site scripting (XSS) vulnerabilities.

• Emulated APT behavior and developed custom tools and scripts to simulate adversarial techniques and enhance test coverage.

• Performed continuous vulnerability scans and maintained vulnerability databases with documented exploit details. EDUCATION: Master’s degree in information technology -University of West Florida



Contact this candidate