Ali Salempanah

Ali Salempanah

Network Administrator

Followers of Ali Salempanah2000 followers
location of Ali SalempanahBerlin, Berlin, Germany

Connect with Ali Salempanah to Send Message

Connect

Connect with Ali Salempanah to Send Message

Connect
  • Timeline

  • About me

    Security Engineer @ Billie | Threat Detection & Incident Response

  • Education

    • Payame Noor University (Distance Education)

      2012 - 2015
      Bachelor of Engineering - BE Computer Hardware Engineering
  • Experience

    • مهندسی شبکه افزار سایان

      Feb 2016 - Apr 2019
      Network Administrator

      Responsible for maintaining computer networks of our customers and solving any problems that may occur with them.Typical responsibilities of my job include: • Installing and configuring computer networks and systems • Identifying and solving any problems that arise with computer networks and systems • Consulting with clients to specify system requirements and design solutions • Maintaining existing software and hardware and upgrading any that have become obsolete • Monitoring computer networks and systems to identify how performance can count be improved • Working with IT support personnel and providing network administration and support • Analyze security systems and seek improvements on a continuous basis • Report possible threats or software issues • Research weaknesses and find ways to counter them Show less

    • Shahid Chamran University of Ahvaz (Jundi Shapur)

      Oct 2016 - Apr 2017
      Penetration Tester

      RESPONSIBILITY STATEMENTS :• Research solutions to challenging cyber security problems• Model attacker goals, behaviors, and attacks• Work with people in a diverse set of fields to develop novel solutions to current cyber analysis limitations• Work independently on research and development related tasks• Prepare technical reports and documentation• Research best ways to secure company-wide IT infrastructure

    • Mehrabad International Airport

      Apr 2019 - Jan 2021
      SOC Specialist

      responsible for detecting and assessing cybersecurity events and incidents across the APK Group MSSP environment. I am working among a team of skilled technicians to address complex or difficult problems as needed within a 24x7 Security Operations Center (SOC) environment. I responsible for following processes and procedures as identified by the IRT (Incident Response Team) and the SOC Leadership to ensure the continuous improvement to monitoring, detection, and mitigation capabilities. RESPONSIBILITY STATEMENTS : • Monitor security incident and event management (SIEM) and logging environments for security events and alerts to potential (or active) threats, intrusions, or compromises • Assist with triage of service requests from customers and internal teams • Escalate cybersecurity events according to Lowe’s Incident Response Plan • Assist with containment of threats and remediation of the environment during or after an incident • Document event information for further investigation • Collaborate with technical teams to identify, resolve, and mitigate events Show less

    • Asan Pardakht

      Jan 2021 - now

      responsible for detecting and assessing cybersecurity events and incidents across the SOC environment. I responsible for following processes and procedures as identified by the IRT (Incident Response Team) and the SOC Leadership to ensure the continuous improvement to monitoring, detection, and mitigation capabilities. RESPONSIBILITY STATEMENTS : • Monitor security incident and event management (SIEM) and logging environments for security events and alerts to potential (or active) threats, intrusions, or compromises • Assist with triage of service requests from customers and internal teams • Escalate cybersecurity events according to Lowe’s Incident Response Plan • Assist with containment of threats and remediation of the environment during or after an incident • Document event information for further investigation • Collaborate with technical teams to identify, resolve, and mitigate events• Continuously monitoring the alert queue for multiple-sized clients, from small business to large government agencies using multiple tools, such as IDS, SIEM and custom-built network monitoring tools; • Conducting initial triage of alerts to identify potential, false positives, policy violations, intrusion attempts and compromises • Consolidating data from alert triage to provide context necessary to initiate Tier-III work; and• Escalating triaged alerts for deeper analysis and review. Show less

      • Cyber Security Analyst Tier2

        Jan 2022 - now
      • Cyber Security Analyst Tier 2

        Jan 2021 - now
    • Tadbir Pardaz IT Group Ltd.

      Jan 2022 - Apr 2024
      Cyber Security Analyst
    • Billie

      Apr 2024 - now
      Security Engineer - Threat Detection & Incident Response
  • Licenses & Certifications

    • Threat Hunting Professional

      ELearnSecurity
    • MCITP

      Tehran Institute of Technology
    • Wireless Hacking

      EC-Council
    • CCNA R&S

      Tehran Institute of Technology
    • Network+

      Tehran Institute of Technology
    • Intro to Fin6 Emulation Plans

      AttackIQ
      May 2021
      View certificate certificate
    • Advanced Penetration Testing

      EC-Council
    • CEH

      EC-Council
    • Security +

      Tehran Institute of Technology
    • Foundations of Operationalizing MITRE ATT&CK

      AttackIQ
      May 2021
      View certificate certificate