Summary
Overview
Work History
Education
Skills
Certification
Tools Used for Threat and Incident Analysis
Timeline
Generic

Subhasis Nanda

Associate Manager Cyber Security Delivery
Seishincho,13

Summary

With over 13 years of extensive experience in cyber security operations and project management, skills have been honed in safeguarding critical information systems and leading complex projects to successful completion. Throughout the career, have maintained a proven track record of working effectively with cross-functional teams, ensuring compliance with industry standards, and delivering innovative solutions. Possess a deep understanding of relevant frameworks in cyber security, SOC IT infrastructure, and have hands-on experience in managing and preventing security threats and incident management. Strategic approach and dedication to continuous improvement have consistently enhanced security posture and project outcomes.

Overview

13
13
years of professional experience
16
16
years of post-secondary education
4
4
Certifications

Work History

Security Delivery Associate Manager/Principal Engineer

Accenture Japan
Tokyo, Tokyo
5 2020 - Current
  • Single point of contact for Customers’ inquiry on Information and Cyber Security services provided by company.
  • Perform Proof of Concept (POC) and evaluation against selected criteria, develop proposed high-level design diagrams, identify resourcing requirements.
  • Expertise in evaluating business/customer expectations, requirements, & interactions from a security perspective.
  • Collaborate with other cyber security teams to ensure seamless integration and operation of monitoring systems.
  • Develop and maintain documentation for system architecture, configurations, and operational procedures.
  • Perform Risk identification, assessments and evaluation to minimize threat exposure due to identified vulnerabilities of my clients.
  • Perform monthly audits and service reviews on monitored security products and top security incidents seen to provide suggestions/recommendations to customer to enhance their security posture.
  • Create operational metrics to evaluate SLA, MTTD/MTTR, KPI and track progress of various processes and initiatives.
  • Act as trusted security technical advisor and primary operational contact for escalation during emergency events and day to day operations.
  • Coordinate with Development team to ensure system design, installation and testing adhere to operational standards.
  • Experience handling escalated cases from Security Operation Center (SOC).Manage and oversee daily operations of security team
  • Create and evaluate RCA – Root cause analysis.
  • Experience in Tabletop Exercises, alerting, create triage best practices and associated documentation for wider audience.
  • Knowledge of frameworks such as MITRE ATT&CK and common cyber security attack TTPs.
  • Subject Matter Expert and understanding in designing, implementing, and maintaining SIEM and SOAR systems, Endpoint Detection Response systems and Cloud Infrastructure.
  • Understanding of industry compliance and security standards such as PCI DSS, ISO 27001 and GDPR.

Senior Security Engineer/Technical Project Management

Symantec Corporation
Chennai
01.2017 - 05.2020
  • Review and analyze SIEM security events from security logs to identify anomalous activity.
  • Categorizing and prioritizing the incidents based on severity of the issue and escalating the same to client.
  • Preparation of daily reports with respect to various information security incidents.
  • Analyzing and assessing the detected vulnerabilities and guiding the respective teams to take required steps for security patch.
  • Preparation of Security report for clients.
  • Preparing documentation for major upgrade/migration activities.
  • Working on day to day tickets and service cases raised for various issues as a part of queue.
  • Management of security devices to send needed security traffic to the SOC required for incident generation.
  • Perform audits on the security devices and work with customer to enhance their security posture
  • Carrying out root cause analysis for various issues/incidents and preparing an associated RCA report as a part of problem management procedure.
  • Creating Knowledge base for issues as a part of knowledge management procedure.
  • Subject Matter Expert in SIEM Architecture, and Incident generation with validation.

Security Engineer

Symantec Corporation
05.2014 - 01.2017
  • Configuration, Validation and incident generation accuracy of Next Generation FW, WAF, IDS/IPS, Endpoints, Advanced Threat Protection, EDRC/MEDR and Web Proxy for the large enterprise customers.
  • Resolving faults/alarms/Incidents identified by the SOC tools to ensure devices are operating healthy and events are generated with all the required fields so that the incident can be analyzed accurately.

Associate Security Engineer

Magna Infotech/Symantec Corporation
06.2012 - 05.2014

L2 Technical Support Engineer

Sitronics Telecom/MTS
05.2011 - 06.2012

Education

B.E (ETCE) - Electronics And Telecommunications

Sathyabama University
Chennai
06.2007 - 05.2011

12th -

Zinc Smelter Senior Secondry School
Vishakapatnam
04.2005 - 04.2007

10th -

Ruchika High School
Bhubaneswar
01.1995 - 04.2005

Skills

SIEM

SOAR

Incident Handler

Threat Intelligence

Risk Assessment

Vulnerability Management

Cyber Security Operations

Endpoint Detection and Response

Enterprise Infrastructure Security

Cloud Security

Certification

GIAC Cyber Threat Intelligence (GCTI)

Tools Used for Threat and Incident Analysis


  • Google Chronicle SIEM and SOAR
  • Azure Sentinel
  • Symantec Log Collection Platform SIEM
  • Microsoft Defender Endpoint
  • Endgame EDR Solution
  • AWS
  • Azure
  • Metasploit
  • Virus Total
  • Mandiant Advantage
  • MITRE ATT&CK Framework
  • WIRESHARK, POWERSHELL
  • VOLATILITY
  • MISP Threat Sharing
  • IRIS Domain Tool
  • Real Time Threat Analytics (RITA)
  • Nmap, Masscan
  • Regshot and Procmon

Timeline

Senior Security Engineer/Technical Project Management

Symantec Corporation
01.2017 - 05.2020

Security Engineer

Symantec Corporation
05.2014 - 01.2017

Associate Security Engineer

Magna Infotech/Symantec Corporation
06.2012 - 05.2014

L2 Technical Support Engineer

Sitronics Telecom/MTS
05.2011 - 06.2012

B.E (ETCE) - Electronics And Telecommunications

Sathyabama University
06.2007 - 05.2011

12th -

Zinc Smelter Senior Secondry School
04.2005 - 04.2007

10th -

Ruchika High School
01.1995 - 04.2005

Security Delivery Associate Manager/Principal Engineer

Accenture Japan
5 2020 - Current
Subhasis NandaAssociate Manager Cyber Security Delivery