SA

sohail aijaz

Security Analyst at eHealth (Dept. of Health) Queensland Government

Brisbane, Australia

Work Experience

  • Security Analyst

    eHealth (Dept. of Health) Queensland Government

    Jul 2020 - Present -4 yrs, 10 months

    Australia

    • Job Details:Support the delivery of cyber security operational services including security monitoring, triage, and phishing/spam email analysis using Splunk ES & Splunk Phantom (SOAR). Perform proactive investigations to search for IOCs using various logs in SIEM & threat intelligence feeds. Investigating endpoint alerts, applying policies using McAfee. Identifying attacks TTPs using MITRE ATT&CK framework. Avoid financial and reputational risk associated with data breaches by implementing an information security management system (ISMS) in alliance with ISO27001, ISO27002, ITIL and COBIT standards. Perform security risk assessments of medical devices. Report findings to asset owners and management in order to remediate vulnerabilities and remove risk or to acquire formal risk acceptance. Review & validate playbooks & rules; provide suggestions for improvements & enhancements as part of the SOAR project using Splunk Phantom. Develop security documentation to include policies and procedures for the risk assessment team.
  • Cyber Security Specialist

    Public Safety Business Agency (PSBA) Queensland Government

    Jul 2016 - Jul 2020 -4 yrs

    Australia

    • Job Details:Support the delivery of cyber security operational services including security monitoring, triage, and phishing/spam email analysis. Perform proactive investigations to search for IOCs using various logs in SIEM & threat intelligence feeds. Investigating endpoint alerts, applying policies using Sophos Enterprise Console. Analyzing and troubleshooting to assist in the containment and remediation of security incidents. Perform monitoring and analyze network traffic using (Splunk) SIEM system, prioritize and differentiate between potential intrusion attempts and false alarms. Supporting daily operational BAU activities of security products and services including firewalls, proxies, patching, certificate management, anti-virus, email security controls, intrusion detection, intrusion prevention, and identity access management. Creating and updating documentation relating to support functions, knowledge base and policies and procedures.
  • Senior Technology Officer

    Queensland Health, Australian Government

    Oct 2015 - Jul 2016 -9 months

    Australia

    • Job Details:Installing and maintaining virtual machines using VMware (vSphere). Microsoft Windows and Linux based systems administration and maintenance. Creating and managing Active Directory user accounts for various departments. Installing and maintaining Microsoft patches using Dell KACE (patch management system). Storage area network (SAN storage) monitoring and maintenance. Backup management using Commvault and Backup Exec 2010. Monitoring and maintaining all the servers using HP Ops-View tool. Providing support and incident management through HP Open View service desk tool.
  • Clinical Software Specialist / Technical Officer

    Sonic Healthcare

    Mar 2014 - Oct 2015 -1 yr, 7 months

    Australia

    • Job Details:Maintaining and administration of SQL Server databases, SQL databases backup and restore. Install and manage Microsoft patches and application software deployment through SCCM packages. Installation, maintenance and monitor medical applications.
  • Education

    • Master's Degree in Information Technology

      Central Queensland University

      Jan 2010 

    • Bachelor's Degree in Computer Sciences

      Quaid-e-Awam University of Engineering, Science and Technology

      Jan 2007 

    Skills

    • Cybersecurity
    • Management
    • Risk Assessment
    • SIEM
    • Splunk
    • Mcafee
    • Sophos
    • ISO standards
    • Documentation
    • ICT Infrastructure Planning
    View More
    Share this Profile