Muhammad Junaid

Cyber Security Professional | Information Security & Network Expert
Riyadh, SA.

About

Highly accomplished Cyber Security Professional with 9 years of extensive hands-on experience in Information Security and Network operations, complemented by a Master's Degree. Proven expertise in Security Operations Center (SOC) implementation, incident response, and leading complex IT system administration and cyber security control projects. Adept at leveraging advanced security technologies and project management skills to enhance organizational security postures and mitigate threats effectively.

Work

LTI Mindtree
|

Security Consultant

Jubail, Eastern Province, Saudi Arabia

Summary

Currently serving as a Security Consultant at Saudi Aramco Total Refining (SATORP), proactively monitoring and analyzing security alerts to detect and mitigate potential threats.

Highlights

Proactively monitored and analyzed security alerts and logs, identifying potential threats and breaches to enhance organizational security posture.

Investigated and assessed security incidents to determine scope, impact, and root cause, ensuring effective incident resolution.

Developed and implemented comprehensive incident response plans and procedures, effectively mitigating security incidents and improving response capabilities.

Contributed to the development of playbooks using XSOAR for various cyber-security solutions, enhancing automated detection and response capabilities.

Stayed abreast of the latest cybersecurity threats, vulnerabilities, and best practices, continuously enhancing incident response capabilities and strategies.

Saudi Business Machine (SBM)
|

SOAR Consultant

Riyadh, Riyadh Province, Saudi Arabia

Summary

Served as a SOAR Consultant at SABIC CORP., developing custom Python scripts to automate security operations and improve incident detection and response.

Highlights

Developed custom Python scripts for integrating 3rd party security products, enhancing automation capabilities for security operations.

Automated manual security analyst processes for L1, L2, and L3 tiers, significantly improving operational efficiency and response times.

Built and implemented security playbooks, automating detection and response workflows to streamline incident management.

Deployed as a SOAR consultant at SABIC CORP., contributing to advanced security orchestration initiatives and enhancing overall security posture.

Rewterz Pvt Ltd
|

Cyber Security Consultant

Karachi, Sindh, Pakistan

Summary

Assisted in the design, delivery, and configuration of diverse security solutions and services for various clients.

Highlights

Assisted in the design and delivery of comprehensive security solutions and services for a diverse client portfolio.

Recognized for deploying and configuring various types of security technologies, ensuring robust implementation and operational readiness.

Rewterz Pvt Ltd
|

Senior SOAR Engineer

Karachi, Sindh, Pakistan

Summary

Led the implementation and deployment of Next-Generation SOC environments, leveraging automation and orchestration technologies.

Highlights

Implemented and deployed Next Generation SOC environments, utilizing automation and orchestration technologies across various products.

Performed architectural design and build-out of Security Orchestration Automation and Response (SOAR) solutions as a Senior Automation Engineer.

Integrated diverse security controls (NGFW, WAF, SIEM, Vulnerability Scanners, threat intelligence tools) through Python-based scripting, enhancing overall security posture.

Rewterz Pvt Ltd
|

SOC Analyst

Karachi, Sindh, Pakistan

Summary

Served as an On-site L2 Security Analyst, responsible for daily SOC operations and vulnerability assessments.

Highlights

Conducted various cyber security tasks, including Vulnerability Assessment and Penetration Testing, identifying critical security weaknesses.

Managed daily SOC operations, encompassing Incident Management and Event Management, ensuring timely response to security alerts.

Developed and deployed Use Cases aligned with industry and company security standards, enhancing detection capabilities.

Gerry's Group
|

Network Security Engineer (NOC/SOC)

Karachi, Sindh, Pakistan

Summary

Provided technical leadership for projects and shifts, managing and troubleshooting Layer 2 and Layer 3 network infrastructure.

Highlights

Served as Technical Lead, managing technical projects and shifts to ensure smooth network operations.

Configured, managed, maintained, and troubleshot Layer 2 and Layer 3 network devices, including Cisco Routers, Switches, Firewalls, and IPS.

Maintained various VPN tunnels (GRE) with clients, ensuring secure and reliable connectivity.

Managed BGP routing with upstream providers, optimizing network performance and stability.

Contributed to the implementation of Use Cases, enhancing network monitoring and security.

Connect communications
|

Network Support Engineer

Karachi, Sindh, Pakistan

Summary

Managed and maintained Cisco switches and ensured efficient network operations, including link aggregation and Spanning Tree Protocol.

Highlights

Managed Cisco Switches on Layer 2 and Layer 3, ensuring optimal network performance and reliability.

Analyzed and managed link aggregation/bundling, enhancing network bandwidth and redundancy.

Maintained an efficient and secured Spanning Tree Protocol metro ring, preventing network loops and ensuring uptime.

Education

PAF-KIET
Karachi, Sindh, Pakistan

MBA

Project Management

Iqra University
Karachi, Sindh, Pakistan

BS

Telecommunication

Languages

English

Skills

Security Technologies & Platforms

Application Control (Carbon Black), EDR (Carbon Black), NDR (Dark-Trace), SIEM (QRadar, Splunk, ArcSight), SOAR (SIRP, Phantom, XSOAR), ReSecurity for Threat Intelligence, Symantec DLP, McAfee ATD Sandboxing, Imperva (Secure Sphere, Incapsula), Fireeye (NX, HX, EX, CMX).

Cybersecurity Operations & Analysis

SOC (Security Operations Center), Incident Response, Cyber Threat Intelligence, Proactive Defense, Cyber Threat Hunting, CyberSOC, APT Hunting, Cyber Kill Chain, Vulnerability Assessment, Penetration Testing, Incident Management, Event Management, Use Case Development.

Network Security & Infrastructure

Cisco Routers, Cisco Switches, Firewalls, IPS (Intrusion Prevention Systems), VPN (GRE), BGP (Border Gateway Protocol), Layer 2/3 Networking, Link Aggregation, Spanning Tree Protocol.

Security Concepts & Methodologies

Malware Behaviors, Ransomware Behaviors, Risk Management Life Cycle, Incident Response Management, PCI DSS.

Programming & Automation

Python Scripting, Automation, Orchestration.

Project Management & Leadership

Project Scheduling, Project Planning, Project Execution, Technical Leadership.