Summary
Overview
Work History
Education
Skills
Certification
Projects
Timeline
Generic

Sripal M

Vancouver,BC

Summary

Experienced Cloud Application Security Engineer with 1.5 years of expertise in analyzing security logs from various sources. Adept at identifying and analyzing malicious activities, determining appropriate response actions, and ensuring effective incident management. Skilled in collaborating with development and operations teams to embed security controls, automate security testing, and ensure secure and compliant application delivery. Strong commitment to proactive security measures and safeguarding critical assets.

Overview

1
1
year of professional experience
1
1
Certification

Work History

Cloud Application Security Engineer

Moneris
01.2023 - Current
  • Consolidated logs from diverse sources such as CrowdStrike, AWS Observability prod account logs, Cisco Meraki IDS, Email-Gateway, Slack, and Jira etc., into Sumo Logic SIEM solution.
  • Developed and optimized queries within the SIEM to extract actionable insights from the collected logs.
  • Implemented alert mechanisms for detecting failure logins and monitoring relational database performance.
  • Established alerts for cloud-related activities, including security group changes, IAM role modifications, and configuration changes.
  • Proficient in deploying CrowdStrike CSPM (Cloud Security Posture Management) for security posture assessment and remediation, including the detection of IOCs (Indicators of Compromise) and IOAs (Indicators of Attack).
  • Utilized CrowdStrike EASM (External Attack Surface Management) to safeguard external-facing assets like APIs and prevent unauthorized access and service interruptions.
  • Managed temporary elevated access through Team Temporary Elevated Access Management for secure privilege escalation in production environments.
  • Facilitated change enablement processes, ensuring all modifications adhere to established protocols.
  • Collaborated with the security compliance team to support SOC2 Type 2 report generation by providing necessary evidence and documentation.
  • Maintained Confluence pages and authored runbooks for Kubernetes agent installation and ECS Fargate agent deployment procedures.
  • Vigilantly monitored Guard Duty logs, CloudWatch, and CloudTrail for identifying and mitigating potential threats, including IOCs (Indicators of Compromise) and IOAs (Indicators of Attack).
  • Demonstrated familiarity with OWASP Top 10 security risks and applied relevant strategies for mitigation.
  • Hands-on experience with SAST, SCA, and DAST tools within GitLab for application security testing.
  • Engaged in team management within a 24/7 SOC environment, ensuring operational efficiency and incident response readiness.
  • Leveraged support from tool providers as needed to enhance operational capabilities and resolve complex issues.
  • Managed CSPM, observability logs, and AWS Control Tower configurations logs from organizational account using StackSets and CloudFormation templates.
  • Collaborated cross-functionally to enforce security best practices for applications and systems.
  • Utilized the MITRE ATT&CK framework for threat hunting and incident response strategies, enhancing proactive security measures and incident resolution effectiveness.
  • Monitored DLP (Data Loss Prevention) tools to detect any instances of Gmail being shared outside the organization.
  • Implemented proactive measures by reaching out to employees for verification upon detection of Gmail sharing outside the organization.
  • Developed an automation system to create a Jira ticket and send alerts to designated Slack channels automatically whenever Gmail sharing outside the organization is detected, streamlining incident response and resolution processes.

Education

Master of Science - Computer Security And Forensic Administration

Fairleigh Dickinson University
Vancouver, Canada
01.2023

Skills

  • Risk Management
  • Information Security Management
  • Vulnerability Assessment
  • Data Encryption
  • Identifying Risks
  • Qualys Cloud Platform
  • Sumo Logic
  • Splunk SIEM
  • Sans 25
  • Mitre ATT&CK
  • Kali Linux
  • Endpoint Protection
  • Risk Mitigation
  • Developing Security Plans
  • Continuity Monitoring
  • Risk Analysis
  • Threat Detection
  • Vulnerability and Penetration Testing
  • Critical Thinking Skills
  • NIST Security Standards
  • Malware Analysis
  • Security Awareness
  • Cloud Security
  • Problem-solving aptitude

Certification

Certified Cloud Application Security Engineer(CompTIA Security+, AZ-500, Qualys CS, API Sec Architect, Qualys Vulnerability Management, Splunk Scheduling Reports & Alerts, Fortinet NSE-1,NSE-2, Google Cybersecurity)

Projects

Project 1: Wireshark Network Protocol Analyzer Project: (Jan 2022- Mar 2022)
• Installed and configured Wireshark to capture network traffic in real-time Analyzed network traffic from various sources and identified patterns and anomalies Troubleshot network issues and reported security threats Developed skills in network analysis, troubleshooting, and security.
• Using Wireshark, I analyzed the captured traffic, and I used various filters and protocols to identify specific types of traffic, such as HTTP, DNS, and FTP. I also examined packets for signs of security threats, such as malware, viruses, and unauthorized access.


Project 2: Nmap Port Scanning Project in Kali Linux: (Aug 2022- Nov 2022)
• Utilized Nmap tool for network reconnaissance, port scanning, and vulnerability detection. Analyzed scan results using Nmap's reporting features and generated visualizations using Zenmap.
• Conducted vulnerability assessments on various networks and systems to identify potential security risks.
• Developed custom scripts and modules to automate Nmap scanning and analysis processes. Documented findings and recommended remediation strategies to improve network security posture. Developed skills in Kali Linux, Nmap, scripting, vulnerability scanning, and network security analysis.

Timeline

Cloud Application Security Engineer

Moneris
01.2023 - Current

Master of Science - Computer Security And Forensic Administration

Fairleigh Dickinson University
Sripal M