Summary
Overview
Work History
Education
Skills
Accomplishments
Timeline
Generic

Marvin Alfaro Vega

Summary

Cybersecurity Specialist with proficiency in online security research, planning, execution and maintenance. Skilled at training internal users on security procedures and preventive measures. Information Security Specialist with passion for aligning security architecture plans and processes with security standards and business goals. Extensive experience developing and testing security framework for cloud-based software. Versed in robust network defense strategies. Organized and dependable candidate successful at managing multiple priorities with a positive attitude. Willingness to take on added responsibilities to meet team goals. Detail-oriented team player with strong organizational skills. Ability to handle multiple projects simultaneously with a high degree of accuracy.

Overview

4
4
years of professional experience

Work History

SOC Analyst

New Line Consultants S.A.
09.2021 - Current
  • Lead and own incident response efforts/escalations, Check and interpret data from multiple security platforms.
  • Execute incident response processes and procedure, document all incident analysis and response activity in a structured ticketing system, document, test and refine incident response processes and procedures, training NOC (Network Operations Center) support staff on security monitoring and response responsibilities
  • Investigated and resolved incidents of unauthorized access to sensitive information.
  • Educated and trained users on information security policies and procedures.
  • Implemented security measures to reduce threats and damage related to cyber attacks.
  • Review access violations to any device connected to the network using extrahop, armorpoint, nessus and the endpoint manager.
  • Security procedures and developed mitigation plans.
  • Monitored computer virus reports to determine when to update virus protection systems.
  • Support information security engineering/architecture team.
  • Research and analyze security event data to find potential security incidents.
  • Maintain knowledge of current security trends and be able to clearly communicate them to the team.
  • Armorpoint and Extrahop incident management.
  • Standardize processes and procedures on internal escalations (SLA) KPI.
  • Review, quarantine/contention, analysis, action taken on attack alert.

IT/ IAM Manager.

New Line Consultants S.A.
09.2021 - 12.2022
  • Skilled at working independently and collaboratively in a team environment.
  • Self-motivated, with a strong sense of personal responsibility.
  • Proven ability to learn quickly and adapt to new situations.
  • Worked well in a team setting, providing support and guidance.
  • Organized and detail-oriented with a strong work ethic.
  • Hiring members.
  • Structure the department.
  • Standardize processes and procedures.
  • Implementation agile and scrum methodologies.
  • Monitoring internal issues with ZABBIX Managerial reporting.
  • Managing and Optimizing Inventory. Managing and internal CCTV.
  • Manage Cisco Cisco Unified Communications
  • Manager and Unified Contact Center Express.
  • Manage CITRIX Workspace.
  • Manage Fortinet tools as Forticlient/FortiAutenticator.
  • Implementation of SLA and Severity for workflow.
  • Implementation of templates for daily use for faster response.
  • Set commcells as per business needs.
  • Set Demand analysis when required.
  • First Contact for escalations and mayor incidents.
  • Define duties and schedules for the team. Payroll reporting, dept working hours.
  • Microsoft exchange server support.
  • Define and implement bussines continuity, data protection and business risk appetite.

SAP ESS Manager

Fujitsu
10.2019 - 09.2021
  • Cultivated interpersonal skills by building positive relationships with others.
  • Worked effectively in fast-paced environments.
  • Managed time efficiently in order to complete all tasks within deadlines.
  • Demonstrated respect, friendliness and willingness to help wherever needed.
  • Passionate about learning and committed to continual improvement.
  • Respond to tickets and requests within business defined service level agreements(SLA). Tier 0 and Tier 1 support for questions/incidents/service requests, redirect/re-assign problems/services/request/incidents/escalations to appropriate Tier support groups and individuals, ensures the effective fulfillment of objectives and deadlines assigned to the group.
  • Implementing and maintain ISO 27001

Education

AWS Certified Solutions Architect - AWS Cloud

AWS
Https://aws.amazon.com/

Associate of Arts - Video Editing

Ucreativa
San Jose, Costa Rica
03.2023

CYSA+ - Cyber Security

CompTIA
Https://www.comptia.org/home
10.2022

AWS Cloud Practitioner - Cloud AWS

AWS
Https://aws.amazon.com/
2022

Security+ - Cyber Security

CompTIA
Https://www.comptia.org/home
03.2021

Workshop Introduction To Exploit Development. - Cyber Security

FSecuritySolutions
San Jose, Costa Rica
2020

SECOPS Implementing Cisco Cybersecurity Operations - Cyber Security

Cisco
Https://www.cisco.com/
02.2019

Skills

  • Flaw Detection
  • Deductive Reasoning Skills
  • Documentation
  • Server Improvements
  • Preventative Maintenance
  • Security Systems Knowledge
  • Critical Thinking Skills
  • Threat Research
  • Managing Security Breaches
  • Threat Detection

Accomplishments

    -Use and Configuration of SET (Social Engineering Toolkit) for social engineering attacks on penetration testing

    -Network Analysis using Wireshark and TCPDUMP. Use of OSINT (open-source intelligence tools) such as Maltego, Nessus, Nikto, Fuzzing, Steghide, Wireshark, Hydra, The Harvester, BeEF for research and passive target recognition.

    -CVE knowledge and exploits script kiddie,

    -Malware incident management.

    -Knowledge in End Point management, Alienvault, Splunk, SolarWinds, Armor Point and Extrahop

    -Use and detection of stenography.

    Basic knowledge on assembly language, python and reverse engineering for exploits development (Egghunter, EIP y SEH).

    -Reported a huge security flaw to Costa Rica Government on May 25 2020.

Timeline

SOC Analyst

New Line Consultants S.A.
09.2021 - Current

IT/ IAM Manager.

New Line Consultants S.A.
09.2021 - 12.2022

SAP ESS Manager

Fujitsu
10.2019 - 09.2021

AWS Certified Solutions Architect - AWS Cloud

AWS

Associate of Arts - Video Editing

Ucreativa

CYSA+ - Cyber Security

CompTIA

AWS Cloud Practitioner - Cloud AWS

AWS

Security+ - Cyber Security

CompTIA

Workshop Introduction To Exploit Development. - Cyber Security

FSecuritySolutions

SECOPS Implementing Cisco Cybersecurity Operations - Cyber Security

Cisco
Marvin Alfaro Vega