Muhammed  El-Ashiry, Cyber Security Engineer

Muhammed El-Ashiry

Cyber Security Engineer

Coordinates Middle East

Location
Egypt - Cairo
Education
Bachelor's degree, Electronics and Computer Engineering
Experience
3 years, 10 Months

Share My Profile

Block User


Work Experience

Total years of experience :3 years, 10 Months

Cyber Security Engineer at Coordinates Middle East
  • Egypt - Cairo
  • My current job since December 2021

- Handling Centralized tickets/alerts generated from SOAR of multiple MDR and MSS Clients’ SIEMS, EDRs and NDRs in UAE and Egypt.
- Working on the new automated and enriched model for the new and critical clients for the baseline purposes and enrichments recommendation.
- Hands-on experience on Forti-SIEM, LogRhythm and QRadar.
- Hands-on experience on MSATP, Sophos EDR, CrowdStrike EDR, FireEye EDR, Cisco AMP and Symantec EDR.
- Hands-on experience on NDR (Dark Trace) but only from alerts handling perspective by correlation with SIEMs and EDRs.
- Hands-on experience on Mail Security Gateways FireEye ETP, Office 365 portal, and Mimecast.
- Use cases creation on SIEMs and Hunting Queries creation on EDRs. (recently)

Cyber-Security Senior Analyst at Cysiv MEA
  • Egypt - Cairo
  • March 2021 to November 2021

Working on a centralized SOC model by providing SOC managed services to well-known financial sector clients in Egypt.
- Use Cases (Rules and Dashboards) and Report’s creation, implementation and fine-tuning.
- Alerts monitoring, triaging, investigation, verification, Incident Handling & Responding, following up with the corresponding teams and closing.
- Qradar SIEM Administration with Admin privilege Account
• System Configuration (Index, Network Hierarchy, License, Reference Set, Extensions and Routing Rules Management).
• User Management (Users, Roles and Security Profiles).
• Data Source (Events and Flows) management.
• Applications Management (IBM Resilient Qradar Integration, Log Source Management, Use Case Manager, Threat Intelligence Management, DNS Analyzer, etc.)
- Incident Playbooks manually Creation and Updating.
- IBM Resilient SOAR Administration with Admin Privilege Account, Incident Runbooks implementation and automation.
- Incident Management and Automation Using Qradar Side
• Incident Mapping Templates using JINJA Syntax
• Automation Escalation conditions creation
• Enable resilient users to search the Ariel databases from an incident using AQLs.
- Incident Management and Automation Using Resilient Side
• Incident types creating and mapping.
• Phases, Tasks, Functions, Workflows and Rules implementation and updating.
- Mail Analysis using Open-Source Threat Intelligence (OSINT) to detect and respond to phishing mails.

Cyber-Security Analyst at IP Protocol INC
  • Egypt - Cairo
  • July 2020 to February 2021

- Incident Monitoring, Triage, Investigation, Verification, Escalation and Closing.
- Use Cases Creation, Implementation and Fine-Tuning on the SIEM Solution.
- Vulnerability Management using Tenable Security Center and Nessus Scanners.
- Vulnerability Management, using the SCAP Terminologies (CVEs and CVSS) to verify and report related and Zero-Day vulnerabilities.
- Mail Analysis using Open-Source Threat Intelligence (OSINT) to detect and respond to phishing mails.
- SIEM Solution Clean installation, License Management, Log/Flow Sources Integration, Network Hierarchy insertion, Server Discovery, Asset Management, and EPS/FPM Tuning based on suitable Log sources’ Events.

Education

Bachelor's degree, Electronics and Computer Engineering
  • at Menofia University
  • June 2018

Faculty of Electronic Engineering, Menoufia University Bachelor of Engineering - BE, Computer Science and Engineering (CSE)Bachelor of Engineering - BE, Computer Science and Engineering (CSE) 2013 - 2018 Grade: Very Good - Top 10Grade: Very Good - Top 10 Activities and societies: Volunteer at IEEE-Menofia Student Branch (IEEE-MSB).Volunteer at Delta Academy

Specialties & Skills

Log Analysis
Network Security
Incident Management
Incident Analysis
Cyber Security
Detail-Oriented
Public Speaking
Log Analysis
lifelong learner
Microsoft Office
Well-Organized
Communication

Languages

Arabic
Native Speaker
English
Expert
French
Beginner

Memberships

Egyptian Engineering Syndicate
  • Member
  • January 2018

Training and Certifications

MCIT- Summer Training Data, VoIP, and Wireless Networks (Training)
Training Institute:
Ministry of Communication and Information Technology
Date Attended:
July 2018
ICSI-CNSS Certified Network (Certificate)
Date Attended:
June 2020
Fortinet-NSE3 Certificate (Certificate)
Date Attended:
January 2022
Valid Until:
January 2024
CISCO-CyberOps Assocai-letter of Merit (Certificate)
CISCO-CCNA Security -letter of Merit (Certificate)
ICDL (Certificate)
Cyber-Security Specialization- Colorado University (Certificate)
Cyber-Security Specialization- Maryland University (Certificate)
CompTIA- IT Strate Certificate (Certificate)
CompTIA- Network+ Certificate (Certificate)
Date Attended:
June 2019
CompTIA- A+ Certificate (Certificate)
Date Attended:
June 2019
Valid Until:
June 2022

Hobbies

  • Cyber-Security, Chess, Running, Soccer, and workout.