Muhammad Junaid
Cyber Security Professional | Information Security & Network Expert
Riyadh, SA.About
Highly accomplished Cyber Security Professional with 9 years of extensive hands-on experience in Information Security and Network operations, complemented by a Master's Degree. Proven expertise in Security Operations Center (SOC) implementation, incident response, and leading complex IT system administration and cyber security control projects. Adept at leveraging advanced security technologies and project management skills to enhance organizational security postures and mitigate threats effectively.
Work
LTI Mindtree
|Security Consultant
Jubail, Eastern Province, Saudi Arabia
→
Summary
Currently serving as a Security Consultant at Saudi Aramco Total Refining (SATORP), proactively monitoring and analyzing security alerts to detect and mitigate potential threats.
Highlights
Proactively monitored and analyzed security alerts and logs, identifying potential threats and breaches to enhance organizational security posture.
Investigated and assessed security incidents to determine scope, impact, and root cause, ensuring effective incident resolution.
Developed and implemented comprehensive incident response plans and procedures, effectively mitigating security incidents and improving response capabilities.
Contributed to the development of playbooks using XSOAR for various cyber-security solutions, enhancing automated detection and response capabilities.
Stayed abreast of the latest cybersecurity threats, vulnerabilities, and best practices, continuously enhancing incident response capabilities and strategies.
Saudi Business Machine (SBM)
|SOAR Consultant
Riyadh, Riyadh Province, Saudi Arabia
→
Summary
Served as a SOAR Consultant at SABIC CORP., developing custom Python scripts to automate security operations and improve incident detection and response.
Highlights
Developed custom Python scripts for integrating 3rd party security products, enhancing automation capabilities for security operations.
Automated manual security analyst processes for L1, L2, and L3 tiers, significantly improving operational efficiency and response times.
Built and implemented security playbooks, automating detection and response workflows to streamline incident management.
Deployed as a SOAR consultant at SABIC CORP., contributing to advanced security orchestration initiatives and enhancing overall security posture.
Rewterz Pvt Ltd
|Cyber Security Consultant
Karachi, Sindh, Pakistan
→
Summary
Assisted in the design, delivery, and configuration of diverse security solutions and services for various clients.
Highlights
Assisted in the design and delivery of comprehensive security solutions and services for a diverse client portfolio.
Recognized for deploying and configuring various types of security technologies, ensuring robust implementation and operational readiness.
Rewterz Pvt Ltd
|Senior SOAR Engineer
Karachi, Sindh, Pakistan
→
Summary
Led the implementation and deployment of Next-Generation SOC environments, leveraging automation and orchestration technologies.
Highlights
Implemented and deployed Next Generation SOC environments, utilizing automation and orchestration technologies across various products.
Performed architectural design and build-out of Security Orchestration Automation and Response (SOAR) solutions as a Senior Automation Engineer.
Integrated diverse security controls (NGFW, WAF, SIEM, Vulnerability Scanners, threat intelligence tools) through Python-based scripting, enhancing overall security posture.
Rewterz Pvt Ltd
|SOC Analyst
Karachi, Sindh, Pakistan
→
Summary
Served as an On-site L2 Security Analyst, responsible for daily SOC operations and vulnerability assessments.
Highlights
Conducted various cyber security tasks, including Vulnerability Assessment and Penetration Testing, identifying critical security weaknesses.
Managed daily SOC operations, encompassing Incident Management and Event Management, ensuring timely response to security alerts.
Developed and deployed Use Cases aligned with industry and company security standards, enhancing detection capabilities.
Gerry's Group
|Network Security Engineer (NOC/SOC)
Karachi, Sindh, Pakistan
→
Summary
Provided technical leadership for projects and shifts, managing and troubleshooting Layer 2 and Layer 3 network infrastructure.
Highlights
Served as Technical Lead, managing technical projects and shifts to ensure smooth network operations.
Configured, managed, maintained, and troubleshot Layer 2 and Layer 3 network devices, including Cisco Routers, Switches, Firewalls, and IPS.
Maintained various VPN tunnels (GRE) with clients, ensuring secure and reliable connectivity.
Managed BGP routing with upstream providers, optimizing network performance and stability.
Contributed to the implementation of Use Cases, enhancing network monitoring and security.
Connect communications
|Network Support Engineer
Karachi, Sindh, Pakistan
→
Summary
Managed and maintained Cisco switches and ensured efficient network operations, including link aggregation and Spanning Tree Protocol.
Highlights
Managed Cisco Switches on Layer 2 and Layer 3, ensuring optimal network performance and reliability.
Analyzed and managed link aggregation/bundling, enhancing network bandwidth and redundancy.
Maintained an efficient and secured Spanning Tree Protocol metro ring, preventing network loops and ensuring uptime.
Education
PAF-KIET
→
MBA
Project Management
Iqra University
→
BS
Telecommunication
Languages
English
Skills
Security Technologies & Platforms
Application Control (Carbon Black), EDR (Carbon Black), NDR (Dark-Trace), SIEM (QRadar, Splunk, ArcSight), SOAR (SIRP, Phantom, XSOAR), ReSecurity for Threat Intelligence, Symantec DLP, McAfee ATD Sandboxing, Imperva (Secure Sphere, Incapsula), Fireeye (NX, HX, EX, CMX).
Cybersecurity Operations & Analysis
SOC (Security Operations Center), Incident Response, Cyber Threat Intelligence, Proactive Defense, Cyber Threat Hunting, CyberSOC, APT Hunting, Cyber Kill Chain, Vulnerability Assessment, Penetration Testing, Incident Management, Event Management, Use Case Development.
Network Security & Infrastructure
Cisco Routers, Cisco Switches, Firewalls, IPS (Intrusion Prevention Systems), VPN (GRE), BGP (Border Gateway Protocol), Layer 2/3 Networking, Link Aggregation, Spanning Tree Protocol.
Security Concepts & Methodologies
Malware Behaviors, Ransomware Behaviors, Risk Management Life Cycle, Incident Response Management, PCI DSS.
Programming & Automation
Python Scripting, Automation, Orchestration.
Project Management & Leadership
Project Scheduling, Project Planning, Project Execution, Technical Leadership.