Summary
Overview
Work History
Education
Skills
Certification
Languages
Professional Expertise
Personal Information
Timeline
Generic
Abdul Rahman Zubair Mohammed

Abdul Rahman Zubair Mohammed

Summary

A qualified and experienced professional with around 9 years' experience in IT security industry with proven Technical expertise in the latest trends and techniques of the field in terms of technology and management, with an inborn quantitative aptitude. Extensively worked on McAfee products such as ePolicy Orchestrator, VSE, DLP, data encryption, DLP discover, updating DAT, extra DAT and McAfee Endpoint Security. Extensively worked on Windows family of Servers-Windows 2008/2003/2000, Windows 7, Windows Vista, Windows XP. Exceptional client handling and problem resolution abilities as well as superior customer service orientation and ability to work as part of a team & ability to manage sensitive customer situations.

Seeking exigent senior career options in IT Security - Monitoring/Configuration/Administration Creative and innovative prospect determined to bring ideas to life through cutting-edge technology and design techniques. Team player with strong problem-solving skills to contribute effectively to projects and teams. Considers unique and unconventional solutions to deliver exceptional results.

Overview

15
15
years of professional experience
1
1
Certification

Work History

Sr SOC Engineer

YASREF
12.2017 - Current
  • Responsible for working in a 24x7 IT Security operation center environment with RSA Security analytics (SIEM) tool
  • Provide analysis and trending of security log data from a large of security devices
  • Define rule and policy in RSA SA, McAfee DLP as per organization compliance
  • Perform Email Forensics and Malware analysis
  • Perform detailed investigation on Quarantine, suspicious and phishing emails and take the procedure action according to company requirement
  • Deep drill down in RSA SIEM through Meta values
  • Coordinate with RSA security analyst on open source activities
  • Provide Incident Management (IM) support when analyst confirms actionable incidents
  • Open tickets in RSA Archer and closing incident with appropriate justification and evidences
  • Investigate, document, and report on information security issues and emerging trends
  • Protect system by defining access privileges, control structure and resources
  • Recognize problems by identifying abnormalities, reporting
  • Professional experience in a system administration role supporting multiple platforms and applications
  • Ability to communicate and highlight security issues
  • Ability to read and use the results of malicious code, reverse engineer malware and anti-virus software
  • Provide threat and vulnerability analysis as well as security advisory services
  • As per organization compliance requirement enforce security policies to protect the infrastructure.

Jr Security Engineer

PetroRabigh
12.2014 - 11.2017
  • Ensure software is patched and able to protect from threats
  • Review the IT Infrastructure, policy violations, and security applications for security events and unauthorized actions and reports the number of incidents/violations identified, action taken, and closed
  • Generates and escalates periodic and requested reports ensuring accuracy and timely delivery
  • Implementation and monitor security measure for protection of computer system, network and information
  • Monitor network activity to identify issues early and communicate them to IT teams
  • Identified and evaluated potential threats and vulnerabilities
  • Design training manuals to increase security awareness throughout company
  • Monitor live systems to discover real-time threats
  • Strong hands-on experience with anti-virus software, intrusion detection, firewalls and content filtering
  • Provide end-to-end expert guidance on how to manage edge device connectivity, Network Access Control, network port/protocol security, firewalls, IPS/IDS, malware detection and prevention, and Web Filtering
  • Design and configure perimeter security (firewall, IPS/IDS, VPN, web filtering, malware/botnet protection) for data centers, POPs, remote sites, and cloud connectivity ensuring a high degree of performance and service availability for our clients
  • Develop the strategic vision and agenda for network security, both perimeter and internal, and communicate to IT Leadership ensuring alignment and support
  • Strong understanding of endpoint security solutions to include File Integrity Monitoring, Data Loss Prevention and Data Encryption
  • Review of the Active Directory logs, Firewall Logs, VPN logs and alert Team Lead on security events
  • Protect system by defining access privileges, control structure and resources
  • Recognize problems by identifying abnormalities, reporting
  • Professional experience in a system administration role supporting multiple platforms and applications
  • Ability to communicate and highlight security issues
  • Ability to read and use the results of malicious code, reverse engineer malware and anti-virus software
  • Demonstrated effectiveness of security controls
  • Installing / uninstalling VSE for users and updating VSE
  • Updating Agents for users and Updating Agent
  • Downloading extra DAT and applying the DAT
  • Creating policy for ePO
  • Creating compliance reports
  • Seeking help from McAfee Technical Support regarding ePO server issues
  • Analyzing IT Security exception form related tickets from end users
  • Monitoring the daily SOC reports and daily shift handover reports
  • Preparing for SIEM projects.

Network Engineer

E.J Tech
12.2011 - 09.2014
  • Configuration of Cisco ASA 5510 for new internet link in HQ
  • Configuration & Troubleshooting of Cisco 2911, 3800 & 6500, 4507RE switches for Distribution/Access layer distribution
  • Configuration of HSRP on core switches 6500
  • Implementation of Cisco Aironet Access Point for wireless connectivity on different floors
  • Coordination with ISP for link termination, configuration & implementation
  • Documentation of entire network, Asset/Inventory management, Report & preparation of Network Diagram with ISO standard in MS Visio
  • Monitoring the entire network using monitoring tool OP-Manager & What sup-Gold
  • Configuration of Cisco Router 1700, 1800 series, Cisco Switches 1900 series
  • Responsibilities included Assembling PC's, Peripheral installations, OS and other support software installations like
  • Installing & Configuring Win 2000/XP/2000 server/20003 server
  • Installing software Office 2000/03/07, Acrobat reader
  • Managing clients & Performs Internet downloads / upgrades & Installation
  • Installing/Configuring Web Cameras, Scanners, Sound cards, Ethernet Cards
  • Installing, Configuring & Troubleshooting Windows Family/ XP/ NT, 2000, 2003, Software Installation, Peripheral Installation and Troubleshooting
  • Troubleshooting of Network issues, Server issues, PC's & Laptops issues.

Network Engineer

Saudi Electricity Company
05.2009 - 10.2011
  • Configuration of Cisco Router 1700, 1800 and Switches 2950
  • Implementation and troubleshooting of network connectivity at all the locations and provide network connectivity as and when new location comes in to the network
  • Installing & Configuring Win 2000/XP/2000 server/20003 server
  • Installation and updating of Antivirus Patches, Weekly backup of logs
  • Creating Active Directory User Accounts, providing access as per different policies
  • Active Directory management, Password Management, Antivirus Installation Client & Server Patch installations
  • Installing, Configuring & Troubleshooting Windows Family/ XP/ NT, 2000, 2003, LINUX, installation
  • Software Installation, Peripheral Installation and Troubleshooting.

Education

Bachelor of Science - Computer Science And Information Technology

JNTU
Hyderabad
05.2009

Skills

  • McAfee ePO
  • DLP
  • SIEM and DAT
  • McAfee SIEM
  • McAfee DLP
  • McAfee NSM
  • Endpoint Security
  • EPolicy Orchestrator: systems, applications, networks, data, and compliance solutions
  • McAfee ENS: The Enterprise edition consists of a client application for networked computers, and a server application, which the system installs updates and configures settings for all client programs
  • DLP: Safeguards intellectual property and ensures compliance by protecting sensitive data wherever it lives-on premises, or at the endpoints
  • McAfee updating DAT: Updating DAT and applying extra DAT
  • SIEM: continuous visibility into threats and risk, actionable analysis to guide triage and speed investigations, and orchestration of security remediation (McAfee and RSA)
  • Monitoring Tools: McAfee IPS, NSM
  • Operating Systems: Windows 2008/2003/2000 (Desktop/Server), Windows 7, Vista, XP, Active Directory
  • Antivirus: Symantec Enterprise Edition, McAfee Enterprise Edition

Certification

  • CompTia Security +
  • CISSP Training
  • Certified Training Courses in McAfee TIE and ePO
  • CCNP - Cisco Certified Network Professional (SWITCHING, ROUTING)
  • CCNA - Cisco Certified Network Associate

Languages

English
Arabic
Urdu

Professional Expertise

  • Security Operation Engineer at YASREF Yanbu KSA. IT Security Operations, Responsible for working in a 24x7 IT Security operation center environment with RSA Security analytics (SIEM) tool., Provide analysis and trending of security log data from a large of security devices., Define rule and policy in RSA SA, McAfee DLP as per organization compliance., Perform Email Forensics and Malware analysis., Perform detailed investigation on Quarantine, suspicious and phishing emails and take the procedure action according to company requirement., Deep drill down in RSA SIEM through Meta values., Coordinate with RSA security analyst on open source activities., Provide Incident Management (IM) support when analyst confirms actionable incidents., Open tickets in RSA Archer and closing incident with appropriate justification and evidences., Investigate, document, and report on information security issues and emerging trends, Protect system by defining access privileges, control structure and resources, Recognize problems by identifying abnormalities, reporting, Professional experience in a system administration role supporting multiple platforms and applications., Ability to communicate and highlight security issues., Ability to read and use the results of malicious code, reverse engineer malware and anti-virus software., Provide threat and vulnerability analysis as well as security advisory services., As per organization compliance requirement enforce security policies to protect the infrastructure.
  • Jr SOC Analyst at PetroRabigh, IT Security Operations, Ensure software is patched and able to protect from threats., Review the IT Infrastructure, policy violations, and security applications for security events and unauthorized actions and reports the number of incidents/violations identified, action taken, and closed., Generates and escalates periodic and requested reports ensuring accuracy and timely delivery., Implementation and monitor security measure for protection of computer system, network and information, Monitor network activity to identify issues early and communicate them to IT teams, Identified and evaluated potential threats and vulnerabilities., Design training manuals to increase security awareness throughout company., Monitor live systems to discover real-time threats., Strong hands-on experience with anti-virus software, intrusion detection, firewalls and content filtering., Provide end-to-end expert guidance on how to manage edge device connectivity, Network Access Control, network port/protocol security, firewalls, IPS/IDS, malware detection and prevention, and Web Filtering., Design and configure perimeter security (firewall, IPS/IDS, VPN, web filtering, malware/botnet protection) for data centers, POPs, remote sites, and cloud connectivity ensuring a high degree of performance and service availability for our clients, Develop the strategic vision and agenda for network security, both perimeter and internal, and communicate to IT Leadership ensuring alignment and support, Strong understanding of endpoint security solutions to include File Integrity Monitoring, Data Loss Prevention and Data Encryption., Review of the Active Directory logs, Firewall Logs, VPN logs and alert Team Lead on security events., Protect system by defining access privileges, control structure and resources, Recognize problems by identifying abnormalities, reporting, Professional experience in a system administration role supporting multiple platforms and applications., Ability to communicate and highlight security issues., Ability to read and use the results of malicious code, reverse engineer malware and anti-virus software., Demonstrated effectiveness of security controls., Installing / uninstalling VSE for users and updating VSE., Updating Agents for users and Updating Agent., Downloading extra DAT and applying the DAT., Creating policy for ePO., Creating compliance reports., Seeking help from McAfee Technical Support regarding ePO server issues., Analyzing IT Security exception form related tickets from end users., Monitoring the daily SOC reports and daily shift handover reports., Preparing for SIEM projects.
  • Network Engineer at E.J Tech, Riyadh Specialist Network, Implementation & Configuration of entire Network & Security in MOH, Configuration of Cisco ASA 5510 for new internet link in HQ., Configuration & Troubleshooting of Cisco 2911, 3800 & 6500, 4507RE switches for Distribution/Access layer distribution. Configuration of HSRP on core switches 6500. Implementation of Cisco Aironet Access Point for wireless connectivity on different floors., Coordination with ISP for link termination, configuration & implementation., Documentation of entire network, Asset/Inventory management, Report & preparation of Network Diagram with ISO standard in MS Visio., Monitoring the entire network using monitoring tool OP-Manager & What sup-Gold., Configuration of Cisco Router 1700, 1800 series, Cisco Switches 1900 series., Responsibilities included Assembling PC's, Peripheral installations, OS and other support software installations like., Installing & Configuring Win 2000/XP/2000 server/20003 server., Installing software Office 2000/03/07, Acrobat reader., Managing clients & Performs Internet downloads / upgrades & Installation., Installing/Configuring Web Cameras, Scanners, Sound cards, Ethernet Cards., Installing, Configuring & Troubleshooting Windows Family/XP/NT, 2000, 2003, Software Installation, Peripheral Installation and Troubleshooting., Troubleshooting of Network issues, Server issues, PC's & Laptops issues.
  • Jr Network Engineer at Saudi Electricity Company, Riyadh, Saudi Arabia, Specialist Network, Implementation & Configuration of entire Network & Security in SECO, Configuration of Cisco Router 1700, 1800 and Switches 2950., Implementation and troubleshooting of network connectivity at all the locations and provide network connectivity as and when new location comes in to the network., Installing & Configuring Win 2000/XP/2000 server/20003 server., Installation and updating of Antivirus Patches, Weekly backup of logs, Creating Active Directory User Accounts, providing access as per different policies. Active Directory management, Password Management, Antivirus Installation Client & Server Patch installations., Installing, Configuring & Troubleshooting Windows Family/XP/NT, 2000, 2003, LINUX, installation. Software Installation, Peripheral Installation and Troubleshooting., Installing, Configuring & Troubleshooting Windows Family/XP/NT, 2000, 2003, LINUX,, Software Installation, Peripheral Installation and Troubleshooting.

Personal Information

  • Iqama Status: Transferable
  • Nationality: Indian
  • Marital Status: Married

Timeline

Sr SOC Engineer

YASREF
12.2017 - Current

Jr Security Engineer

PetroRabigh
12.2014 - 11.2017

Network Engineer

E.J Tech
12.2011 - 09.2014

Network Engineer

Saudi Electricity Company
05.2009 - 10.2011

Bachelor of Science - Computer Science And Information Technology

JNTU
Abdul Rahman Zubair Mohammed