
Visweswaran S
Senior Cybersecurity Analyst
Habilidades

Conheça meus serviços


Portfólio
Experiência profissional
Senior Cybersecurity Analyst
Confidential • Período integral
Feb 2026 - Present • 8 mos
• Designed and implemented Microsoft Entra ID SSO integration with Google Workspace, enabling centralized authentication, Conditional Access, and device-based controls for Windows and macOS. • Managed Microsoft Intune enrollment, compliance policies, configuration profiles, and remediation workflows across corporate and BYOD endpoints. • Administer CrowdStrike Falcon EDR, performing threat investigation, endpoint containment, malware analysis, remediation, and coordination with Falcon Complete. • Investigate malware, suspicious PowerShell activity, compromised credentials, phishing, anomalous authentication, and endpoint threats across the incident-response lifecycle. • Developed PowerShell-based Intune detection and remediation scripts for compliance validation, browser configuration, local-account management, and security enforcement. • Implemented centralized monitoring with Wazuh SIEM, integrating Google Workspace audit logs and detection use cases for suspicious authentication and unmanaged devices. • Manage Varonis data-security alerts and Google Workspace governance, reviewing external file sharing and coordinating remediation with data owners. • Led Bitwarden implementation for centralized password management, reducing credential exposure through Google Docs and Sheets. • Manage Abnormal Security and PowerDMARC operations, including phishing investigations, simulations, and SPF, DKIM, DMARC, DNS, and SendGrid troubleshooting. • Conduct security assessments of VPNs, SaaS authentication, endpoint controls, and cloud services, providing risk-based remediation recommendations. • Coordinate cybersecurity initiatives and incident remediation across IT, HR, Finance, business teams, vendors, and MSSPs. • Manage AvePoint Google Workspace backup and data-protection operations supporting recovery and business continuity.
Senior Security Analyst
Jypra Group • Período integral
Nov 2023 - Jan 2026 • 2 yrs 2 mos
• Monitored and responded to security threats using SentinelOne EDR, investigating alerts and executing remediation actions to reduce organizational risk. • Led client incident-response activities across detection, analysis, containment, eradication, recovery, and reporting. • Conducted vulnerability assessments and patch management, reducing client vulnerabilities by 30% through regular remediation and monthly updates. • Implemented system-hardening controls aligned with CIS benchmarks, achieving up to 90% compliance and reducing client attack surfaces. • Performed AWS and Azure cloud-security assessments using Qualys TotalCloud and Prowler, delivering findings, risk analysis, and remediation recommendations. • Coordinated backup and data-protection operations using N-able to improve recovery readiness and reduce data-loss risk. • Led client onboarding to an email-security platform, implementing and tuning customized DLP policies, exclusions, and controls based on business requirements. • Onboarded clients to Sendmarc DMARC, managing implementation and achieving full DMARC compliance to strengthen email authentication. • Delivered security-awareness programs and phishing simulations using USecure, improving client security posture and user awareness. • Developed and enforced Microsoft Intune policies for application deployment, SentinelOne and Qualys agent rollout, endpoint hardening, password/PIN controls, and device configuration. • Produced monthly security and IT reports for clients covering incidents, vulnerabilities, remediation actions, security improvements, and overall risk posture.
Security Analyst
Necurity Solutions Network Security Pvt Ltd • Período integral
Jan 2023 - Sep 2023 • 8 mos
• Conducted system, network, and application vulnerability assessments using tools like Nmap, Angry IP Scanner, CrackMapExec, and Metasploit to identify exploitable weaknesses in test environments. • Delivered both onsite and remote security consulting services, including intranet and internet security assessments and penetration testing engagements. • Prepared and delivered detailed technical reports outlining identified vulnerabilities, their potential impact, and prioritized mitigation strategies. • Recommended and supported remediation efforts involving configuration changes, process adjustments, and software or hardware upgrades. • Monitored real-time security events using SIEM platforms such as AlienVault OSSIM and Wazuh, ensuring active visibility into security incidents. • Investigated SIEM alerts to determine whether events were true or false positives and initiated appropriate responses or mitigations. • Maintained and updated asset inventories, ensuring complete visibility of endpoint and network devices integrated with the SIEM. • Compiled and distributed monthly security reports to clients, summarizing activities, vulnerabilities addressed, and key security recommendations.