S

Subanggi Kambley

About

Detail

Fort Worth, Texas, United States

Timeline


work
Job
school
Education

Résumé


Jobs verified_user 0% verified
  • GM Financial
    Sr. Cyber Security Engineer
    GM Financial
    Jun 2024 - Current (2 years 1 month)
    As a Sr. Cyber Security Engineer, I established and strengthened an enterprise-wide GRC (Governance, Risk & Compliance) practice, ensuring full adherence to ISO 27001, PCI DSS, NIST, and regulatory requirements while enhancing the organizational risk culture through COSO framework implementation. I designed, deployed, and managed advanced SOC operations utilizing Splunk, IBM QRadar, ArcSight, and McAfee Nitro SIEM for 24x7 real-time monitoring, log correlation, threat detection, and incident response across hybrid cloud and on-premises environments. Additionally, I led vulnerability management and penetration testing programs using Qualys, Nessus, and Tenable; performed regular internal/external scans, analyzed results, removed false positi
  • P
    Cyber Security Engineer
    PURE Insurance
    Dec 2022 - May 2024 (1 year 6 months)
    • Directed vulnerability assessment and penetration testing initiatives using Nessus, Qualys, Tripwire, Tenable, and IP360; identified critical gaps in network, applications, and cloud infrastructure while mitigating risks to confidentiality, integrity, and availability (CIA triad). • Led cloud security engineering efforts, converting legacy AWS infrastructure to serverless architectures using Terraform and AWS Cloud Formation while implementing IAM, encryption, and key management best practices. • Managed enterprise SIEM platforms (Splunk, ArcSight, Security Center) for 24x7 SOC monitoring, alert triage, incident response, and threat intelligence in compliance with NERC CIP, NIST, FISMA, and ISO 27001. • Specialized in Data Loss Prevention
  • Molina Healthcare
    CYBER SECURITY ENGINEER
    Molina Healthcare
    Jan 2021 - Nov 2022 (1 year 11 months)
    • Implemented Continuous Integration/Continuous Delivery (CI/CD) pipelines with Jenkins and Linux shell scripts; performed capacity planning, performance monitoring, and advanced problem resolution for cloud infrastructure. • Utilized OWASP, SANS, PCI DSS, SSAE16, and Forcepoint frameworks to strengthen application security and ensure compliance across multi-model consulting engagements. • Managed Symantec Endpoint Protection 12.1 deployment, configuration, and daily operations while supporting web UI development in JavaScript (jQuery, Angular2, AJAX) for internal security tools. • Utilized Nessus/Tenable, Nmap, OWASP ZAP, and Web Inspect to perform comprehensive port, device, software, and web application scans while securing systems per N
  • Grange Insurance
    Security Analyst
    Grange Insurance
    Apr 2019 - Dec 2020 (1 year 9 months)
    Responsible for detection and response to security events and incidents within global fortune 500 client networks; utilizing ArcSight, Splunk, Tipping Point, Virus Total, IPVOID, FireEye, Wireshark, etc. to gather, analyze, and present forensic evidence of cyber malware and intrusions. Review System and firewall logs based on individual preset client policies, rules, and standards; also review all host activity for specified timeframe. Work directly with ESM engineers and Account Information Security Officers to adjust alert criteria. Coordinated escalations to Forensic Analyst Team with recommendations for remediation Acted as liaison and interacted with leadership, account management teams, and engineers to further define the risk and rem
  • DIME COMMUNITY BANK
    Security Analyst
    DIME COMMUNITY BANK
    Jun 2017 - Mar 2019 (1 year 10 months)
    Responsible for installation and maintenance of new network connection for the customers. Configured all the required devices and equipment for remote vendors at various sites and plants. In-depth expertise in the implementation of analysis, optimization, troubleshooting and documentation of LAN/WAN networking systems. Manage enterprise security systems, identifying key security risks, reporting risks to management with recommendations for corrective action utilizing NIST frameworks. Design and Implementation of Bluecoat Proxy Infrastructure. Upgrading Radware Appwall WAF (Web application firewall) and fixing hot fixes and patches. Supported nationwide LAN infrastructure consisting of Cisco 4510 and catalyst 6513. Worked with cisco routers
Education verified_user 0% verified
  • Western Governors University
    MS Cybersecurity and Information Assurance
    Western Governors University
    Dec 2020 - Dec 2023 (3 years 1 month)
    Certificate: CompTIA Security+