Summary
Overview
Work History
Education
Skills
Websites
Accomplishments
Certification
Languages
Timeline
Generic
Víctor Fernando Zapata Aguirre

Víctor Fernando Zapata Aguirre

Apodaca

Summary

Dedicated IT Cybersecurity professional with a passion for security and a strong commitment to protecting organizations from emerging threats. A self-motivated learner who thrives on mastering new tools and methodologies, I continuously seek to enhance my skills and stay ahead of the latest cybersecurity trends. Known for my proactive approach, I excel in developing robust security processes, managing diverse teams, and driving improvements that fortify organizational defenses.

Overview

12
12
years of professional experience
1
1
Certification

Work History

IT Security Supervisor

Steelcase
03.2024 - Current

SOC Management Lead

  • Team Leadership & Alert Management: Lead a team of 5 engineers responsible for triaging and managing all incoming alerts from diverse security products, including EDR, IPS, Email, and MSSP solutions.
  • Incident Response Process Development: Design and implement a clear and effective Incident Response process, ensuring all participants understand their roles and responsibilities.
  • Mergers & Acquisitions Integration: Manage the integration of security operations for mergers and acquisitions, ensuring continuous monitoring and protection of newly acquired systems.
  • Phishing Campaign Development: Collaborate in designing and executing phishing simulations to enhance user awareness and strengthen the organization's cybersecurity posture.
  • Tool Improvement & Optimization: Plan and execute enhancements to all managed security tools, driving continuous improvement in SOC performance and effectiveness.
  • Vulnerability Reporting: Oversee the identification and reporting of vulnerabilities to relevant teams, ensuring risks are communicated and addressed appropriately.


Red Team (Pentest) Management Lead

  • Internal Pentesting Process Development: Collaborate with the Red Team to establish and formalize an internal penetration testing process aimed at assessing and fortifying the organization's security posture.
  • Stakeholder Reporting & Risk Communication: Deliver detailed pentesting results to stakeholders, clearly communicating identified risks and recommending mitigation strategies.

IT Security Analyst Sr.

Steelcase
07.2020 - 03.2024

AV/EDR:

  • Apex One.
  • Vision One.
  • Cloud One Workload Security.
  • Cloud Conformity.


Email Security:

  • Fortimail.
  • O365.
  • Darktrace Antigena Email.
  • SPF, DKIM, DMARC (Dmarcian).


Intrusion Prevention/Detection:

  • Darktrace.


Firewalls:

  • Fortigate.
  • Fortimanager.


WAF:

  • Fortiweb.


Vulnerability Management:

  • Qualys.


SOC:

  • Creating Playbooks.
  • Incident Response Management.
  • Threat Intelligence .
  • Alert Investigation and triage.


Infrastructure Engineer

Steelcase inc.
04.2018 - 09.2020
  • High impact incident coordinator
  • Monitoring (Network devices: Firewalls, Switches, Access Points) with Solarwinds
  • Monitoring SAP jobs and follow the process to restart or complete failed jobs
  • Manage and monitor backups and restores using Netbackup from Symantec
  • Follow ITIL methodology to follow matrix escalation process
  • Managing service now as ticket system
  • Managing Vmware.(Windows Server, Linux, Unix servers).

IT Analyst

Inflection Point Systems
08.2016 - 04.2018
  • Provide technical support to all company (150 employees), to ensure all the employees operations never stop for technical issues, support for all network environment, telephone switch, virtual machines, PC’s, printers, servers and Google platforms
  • Deploy different solutions using Google tools: Training management tool, Create a system to make work orders from HR to Marketing, Develop a Google Site for contingency drill, Generate Purchase Order Workflow, Trained all operations staff on Google tools, Deploy Cisco Access Points, Manage all Jira incidents, Participate on ISO 27001 project, Create network vulnerabilities report, Manage Racks, Firewalls rules and policies, Manage SIEM tools.

Tech Support Engineer

Infoanalitica (Google Partner)
06.2012 - 06.2013
  • Technical support to the Google Apps platform, attention to the platform administrators, ISO 20000-management methodology for incidents and service request, platform implementation, DNS management, handling helpdesk tools and prioritizing incidents
  • Management and customer service, ensure customer satisfaction, generating new content and communications from the Google Apps platform.

Education

System Administrator Engineer -

UANL

Skills

  • HTML

  • Python

  • Powershell

  • Windows

  • Ubuntu

  • Debian

  • OSX(Mac)

  • IOS

  • Android

  • Linux

  • Kali Linux

  • Linux servers

  • Active Directory

  • IIS

  • Windows Server

SQL

  • Word

  • Power Point

  • Excel

  • Outlook

  • Power Apps

  • Firewall Management (Fortigate)

  • Fortiweb

  • Fortianalyzer

  • Fortimail

  • Darktrace

  • Apex One

  • Vision One

  • Cloud One Workload Security

  • Cloud Conformity

  • Qualys

  • O365

  • Knowbe4

  • Exabeam

  • Infoblox

  • Project Management

  • Agile

Accomplishments

I had the opportunity to speak at a cybersecurity conference hosted by one of my key vendors, where I shared insights and experiences on managing emerging threats in today's dynamic threat landscape.

Certification

GIAC Security Essentials Certification (GSEC)

Languages

Spanish
Bilingual or Proficient (C2)
English
Advanced (C1)
Portuguese
Beginner (A1)

Timeline

IT Security Supervisor

Steelcase
03.2024 - Current

IT Security Analyst Sr.

Steelcase
07.2020 - 03.2024

Infrastructure Engineer

Steelcase inc.
04.2018 - 09.2020

IT Analyst

Inflection Point Systems
08.2016 - 04.2018

Tech Support Engineer

Infoanalitica (Google Partner)
06.2012 - 06.2013

System Administrator Engineer -

UANL
Víctor Fernando Zapata Aguirre