Salman Hussain
SOC & Incident Response Engineer at XentIT- Claim this Profile
Click to upgrade to our gold package
for the full feature experience.
Topline Score
Bio
Credentials
-
Python for Data Science
IBMFeb, 2021- Nov, 2024 -
SQL and Relational Databases 101
IBMFeb, 2021- Nov, 2024 -
AWS Certified Cloud Practitioner
Amazon Web Services (AWS)Nov, 2020- Nov, 2024 -
Trend Micro Deep Security 12 Professional
Trend MicroAug, 2020- Nov, 2024
Experience
-
XentIT
-
United States
-
IT Services and IT Consulting
-
1 - 100 Employee
-
SOC & Incident Response Engineer
-
Mar 2020 - Present
• Day-to-day management of the installed cyber security solutions in large and complex IT environments. • Provide vSOC support to XentIT clients utilizing cyber security tools, AWS, and Azure including cyber incident response and reporting based on customers’ objectives and regulatory requirements. • Monitor different Security Products and report daily and weekly high severity log detections to the team to protect against Cyberattacks in the environment. • Implementation, upgrades, configuration, and support of hardware and software of XentIT’s key focus areas including Trend Micro, Splunk, SentinelOne, Crowdstrike, O365, AWS, Duo, Okta, and other technologies. • Configure Anti-Malware, Web Reputation, Firewall, Intrusion Prevention, and Detection, Log Inspection, Application Control, File Integrity Monitoring, Data Loss Prevention, Device Control, Predictive Machine Learning, Vulnerability Protection, Endpoint Encryption. • Conducts scans using Qualys/Nessus and track vulnerabilities over time and display an overview of the remediation details. • Prevent network attacks with Intrusion Prevention and Detection, lockdown servers with application control to prevent unwanted changes to executables/files or scripts using Trend Micro Deep Security and Apex One security solutions. • Implement a firewall for content filtering and to inspect and block the traffic originating from unauthorized sources reaching the network. • Implement network-based/host-based/Cloud-based Web Application Firewall (WAF) to protect the web application from cross-site scripting, DDoS attacks, SQL Injections, File Injections. • Provide Email Protection by deploying Cyber Security Products to protect against email attacks using Gateway Email Security products. • Design and maintain production-quality Splunk dashboards. Help application teams in on-boarding Splunk and creating dashboards/alerts/reports etc. • Escalate incidents and act as a Security Incident Response Team Lead when necessary. Show less
-
-
-
GSI, Inc.
-
United States
-
IT Services and IT Consulting
-
1 - 100 Employee
-
Solutions Architect
-
Jan 2020 - Feb 2020
-
-
Education
-
Galgotias University
Master of Computer Applications - MCA, Computer Science -
Galgotias University
Bachelor of Computer Application, Computer Science -
Greenway Modern School
Intermediate, Business/Commerce, General -
Greenfield High School
High School Diploma