Ashley A. Z.

Soc Analyst @Cyblu

Houston, TX, US
MOBILE NUMBERS
+91 *********19

Signup · Get unlimited contacts

WORK HISTORY

Jul 2022 — Present

Soc Analyst @Cyblu

View department →

US

Continuously monitored and managed day-to-day activities of the SOC team.• Analyzed SIEM alerts via collected logs using Elastic Stack Kibana and identified the root cause of an event.• Analyzed endpoint based incidents using Crowdstrike Falcon to mitigate malicious activities. • Successfully investigated phishing incidents with using OSINT given as examples VirusTotal, AnyRun, MxToolBax, Shodan, URL Scan Framework resources to search for suspicious activities and remediate accordingly. • Analyzed PCAP files to find network anomalies using Wireshark tool.• Familiar with Vulnerability Assessment tools such as Tenable Nessus to perform security testing.• Knowledge of MITRE ATT & CK and Kill Chain Framework to classify attacks.• Develop and document phishing incident procedure into Playbooks.• Created a virtual lab environment via VMware with Kali Linux.• Conducted static and dynamic malware forensics analysis on downloaded malicious files.• Analyzed incident procedure to ensure compliance with NIST, SANS Risk Framework.• Experienced The Hive ticketing system when classify and triage an alert.• Differentiated false positives from intrusion attempts and triage the necessary cases to higher levels. • Analyzed decoded malicious scripts using CyberChef.

EDUCATION

1998 — 2002

Istanbul University

Bachelor's degree

2002 — 2005

Marmara University

Master's degree

ABOUT ASHLEY A. Z.

Specialized in network security and incident response. Experienced in monitoring, analyzing, and reporting potential and active threats using SIEM, EDR and Ticketing tools. Strong knowledge of security solutions such as EDR, SIEM, DLP, and Firewalls. The area where I feel the most powerful is malware analysis and phishing analysis.The area where I feel the most powerful is Malware analysis, Phishing analysis, and Vulnerability Management. The purple team definitely describes me better. Collaborative team player who is solution oriented and has positive communication. Reacting quickly and efficiently to urgent situations/requests using analytical and critical thinking skills.•Committed to information security and eager to assist businesses in securing their systems. •Had extensive SOC missions and specialized in \"Incident Response\" and \"Threat Hunting.\"•Perform Malware analysis and Phishing analysis. •Had extensive knowledge of vulnerability management and was an expert in \"Vulnerabilities\".•Analyze software to understand its inner workings and identify areas that can be exploited.•Combination of manual and automated techniques to identify potential attack vectors and security weaknesses- Technical Skills -•Security Information and Event Management (SIEM): Splunk-Enterprise Security.•Endpoint Security (EDR) & Forensics: CrowdStrike, Redline, Autopsy, Volatility•Networking: WAF, Router/Switch, Wireshark, TCPView, ProcessHacker, Intrusion Detection System / Intrusion Prevention System (IDS/IPS), SMTP, Active Directory, PowerShell, Packet Capture•Penetration Testing: Nmap, Shodan, Mimikatz, Burp Suite, •Email Security & DLP : ProofPoint•Sandboxing & OSINT: JoeSandbox, AnyRun, VirusTotal•Scripting & Ticketing System: Remedy, The Hive, •Vulnerability Analysis: Nessus, Rapid7,

This profile is compiled from publicly available professional sources. Unifers is not affiliated with or endorsed by LinkedIn. Request removal of this profile.