Summary
Overview
Work History
Education
Skills
Projects
Certification
Languages
Timeline
Generic

Eman AL-Farajat

Amman

Summary

I Experienced Security Operation Center Analyst with Four years of practical experience monitoring, detecting, analyzing, and responding to cybersecurity events at the level of the Network, Applications, and Endpoint, worked on multiple projects at different countries (including Jordan, Kuwait, Bahrain, Saudi Arabia and United Arab Emirates). Organized and dependable candidate successful at managing multiple priorities with a positive attitude. Willingness to take on added responsibilities to meet team goals.

Overview

5
5
years of professional experience
1
1
Certification

Work History

SOC Analyst L2

FutureTEC
11.2022 - Current
  • Working on multiple projects to onboard several devices including but not limited to: Firewalls, Windows and Linux servers , switches, access point, database, office365, Citrix, etc..
  • Works with company and provide professional services as parser expert, creating parsers for different security solution such as: Sophose, FireEye, ESET, Symantec, Infoblox , NAS Storage, Sun Solaris and Office365
  • Create new use cases for emerging threats
  • Fine tune rules based on customer needs
  • Conduct incident handling and resolution with customer
  • Validation of security incidents
  • Configure agents on servers to send security logs to SIEM
  • Review daily, weekly and monthly reports with the client
  • Respond to clients' requests, concerns and suggestions
  • Perform daily security analysis and scanning and assessment for information security risks and threats
  • Conduct threat hunting on SIEM and EDR platforms
  • Follow up with the recommendations to the client to contain an incident and mitigate threat
  • Perform threat intelligence analysis and investigations, search on the dark web and use other platforms such as OSINT
  • External Information gathering to identify potential security threats related to organizations that could be used by attackers by Spiderfoot, Recon, NMAP, etc.
  • Support customers end-to-end to include implementation, configuration and management of SIEM
  • Integrate SOAR and Nessus with SIEM
  • Conduct SOAR and SIEM health check.

SOC Analyst L1

FutureTEC
01.2020 - 10.2022
  • Work as part of 24x7 security operation team; real-time monitoring of security tools,dashboards, and email alerts.
  • Analyze and validate incidents received from SIEM correlated events through multiple reporting mechanisms such as email, phone calls, management escalation.
  • Daily/weekly/monthly Incident Reports creation and review it with the client.
  • Escalate validated and confirmed incidents to SOC Analyst L2
  • Advance Knowledge of security devices, anomaly detection, Firewall and Antivirus systems and their log output
  • Creating perfect dashboards, per customer requirement.
  • Monitor internal and external threats; examine logs, events, and alerts generated by multiple platforms for anomalous activity and evidence of security incidents
  • Participate in multiple projects.
  • Participate in vulnerability, penetration and application testing using multiple tools: burpsuite, nmap, sqlmap, zapproxy,etc.

Education

Bachelor's Degree - Network and Security Engineer

JORDAN UNIVERSITY OF SCIENCE AND TECHNOLOGY
08.2017

Skills

  • Able to work in a team
  • Organize multi-task
  • Capable of working independently
  • Excellent analytical Problem-solving skills
  • Programming skills
  • Email Analysis and Security
  • Network Detection Response
  • Incident Handling and documentation
  • IOC Monitoring
  • LOG Analysis
  • Application Security
  • Load Test
  • Performance Test
  • Source Code Review
  • Firewall Configuration Review
  • Vulnerability Management Assessment

Projects

  • Government Departments
  • Financial Services
  • Education Systems
  • Insurance Companies
  • Healthcare Centers
  • Oil Facilities
  • Car Companies
  • Engineering Companies

Certification

  • CCNA for Routing and Switching
  • Certified Ethical Hacker
  • Blue Team Level 1
  • CompTIA: Security+
  • Network Security Expert1
  • Network Security Expert2
  • Network Security Expert3
  • Network Security Expert5

Languages

English
Arabic

Timeline

SOC Analyst L2

FutureTEC
11.2022 - Current

SOC Analyst L1

FutureTEC
01.2020 - 10.2022

Bachelor's Degree - Network and Security Engineer

JORDAN UNIVERSITY OF SCIENCE AND TECHNOLOGY
Eman AL-Farajat