SA
sohail aijaz
Security Analyst at eHealth (Dept. of Health) Queensland Government
Brisbane, AustraliaWork Experience
eHealth (Dept. of Health) Queensland Government
Jul 2020 - Present -4 yrs, 10 months
Australia
- Job Details:Support the delivery of cyber security operational services including security monitoring, triage, and phishing/spam email analysis using Splunk ES & Splunk Phantom (SOAR). Perform proactive investigations to search for IOCs using various logs in SIEM & threat intelligence feeds. Investigating endpoint alerts, applying policies using McAfee. Identifying attacks TTPs using MITRE ATT&CK framework. Avoid financial and reputational risk associated with data breaches by implementing an information security management system (ISMS) in alliance with ISO27001, ISO27002, ITIL and COBIT standards. Perform security risk assessments of medical devices. Report findings to asset owners and management in order to remediate vulnerabilities and remove risk or to acquire formal risk acceptance. Review & validate playbooks & rules; provide suggestions for improvements & enhancements as part of the SOAR project using Splunk Phantom. Develop security documentation to include policies and procedures for the risk assessment team.
Public Safety Business Agency (PSBA) Queensland Government
Jul 2016 - Jul 2020 -4 yrs
Australia
- Job Details:Support the delivery of cyber security operational services including security monitoring, triage, and phishing/spam email analysis. Perform proactive investigations to search for IOCs using various logs in SIEM & threat intelligence feeds. Investigating endpoint alerts, applying policies using Sophos Enterprise Console. Analyzing and troubleshooting to assist in the containment and remediation of security incidents. Perform monitoring and analyze network traffic using (Splunk) SIEM system, prioritize and differentiate between potential intrusion attempts and false alarms. Supporting daily operational BAU activities of security products and services including firewalls, proxies, patching, certificate management, anti-virus, email security controls, intrusion detection, intrusion prevention, and identity access management. Creating and updating documentation relating to support functions, knowledge base and policies and procedures.
Queensland Health, Australian Government
Oct 2015 - Jul 2016 -9 months
Australia
- Job Details:Installing and maintaining virtual machines using VMware (vSphere). Microsoft Windows and Linux based systems administration and maintenance. Creating and managing Active Directory user accounts for various departments. Installing and maintaining Microsoft patches using Dell KACE (patch management system). Storage area network (SAN storage) monitoring and maintenance. Backup management using Commvault and Backup Exec 2010. Monitoring and maintaining all the servers using HP Ops-View tool. Providing support and incident management through HP Open View service desk tool.
Clinical Software Specialist / Technical Officer
Sonic Healthcare
Mar 2014 - Oct 2015 -1 yr, 7 months
Australia
- Job Details:Maintaining and administration of SQL Server databases, SQL databases backup and restore. Install and manage Microsoft patches and application software deployment through SCCM packages. Installation, maintenance and monitor medical applications.
Education
Master's Degree in Information Technology
Central Queensland UniversityJan 2010
Bachelor's Degree in Computer Sciences
Quaid-e-Awam University of Engineering, Science and TechnologyJan 2007