Profiles search
Sydney Solomon
Senior Information Security Consultant at K logix
United States
Details
Education:
Bachelor of Arts (B.A.) with High Honors in Politics and a concentration in International Studies
Oberlin College
2015 : 2018
Philosophy, Politics, Economics
University of Oxford
2017 : 2017
McGill University
2014 : 2015
Oberlin College
2015 : 2018
Philosophy, Politics, Economics
University of Oxford
2017 : 2017
McGill University
2014 : 2015
Experience:
2022 : Present
K logix
Senior Information Security Consultant
• Delivered actionable recommendations to clients to align their security program with compliance standards such as NIST Cyber Security Framework (CSF) and ISO 27001
• Enhanced organizations' cybersecurity policies and procedures (P&P) and mapped P&P to security regulations such as HIPAA and GDPR
• Led security discussions with technical and business decision-makers to identify security challenges and assess the company's security posture
• Worked with the consulting team to advance services – cut time to value of P&P engagements by expanding P&P templates; enhanced deliverables by improving data visualizations
2021 : 2022
K logix
Information Security Consultant
• Designed a consulting service for Identity and Access Management (IAM) to help clients invest in technology that strengthens their IAM programs – the service is trending with K logix customers
• Developed a python script to parse through the MITRE ATT&CK Endpoint Evaluations (JSON file) to compare the efficacy of Endpoint Detection and Response (EDR) products – designed customizable scoring system; created data visualizations using Python and Rstudio; distilled results into the K logix EDR assessment database
• Evaluated security products – wrote assessment criteria to compare Endpoint Detection and Response (EDR) capabilities; worked with the consulting team to identify solutions that match customers' needs
• Migrated the database to AWS (cloud computing platform) to improve speed, cost and accessibility
• Shadowed the pen test division – excelled at password cracking through social engineering
2019 : 2021
K logix
Cyber Security Research Analyst
• Analyzed pcap files for malware in Wireshark and identified where the malicious file originated from – followed the cyber kill chain
• Drafted a mock security program posture assessment for a company using the National Institute of Standards and Technology (NIST) framework
• Filtered data in Python in order to automate log analysis and find evidence of a potential breach
2019 : 2019
Evolve Security
Cyber Security Apprentice
• Created cold data sets to analyze global cyberattacks and the activity of threat actors such as Lazarus, FancyBear and APT 33 – constructed visual displays of data using Excel; contributions aided in upcoming negotiations
• Communicated with a high-level NATO official about NATO's role in cyber conflicts and its strategy for de-escalation
• Produced reports on topics ranging from Iran's cybersecurity strategy and hacking techniques to identifying patterns in the objectives, techniques and targets of cyber actors – analyzed 3-4 state cyber strategies per month; presented findings to senior diplomats
2018 : 2019
Ministry of Foreign Affairs of Israel
Israel Government Fellow
K logix
Senior Information Security Consultant
• Delivered actionable recommendations to clients to align their security program with compliance standards such as NIST Cyber Security Framework (CSF) and ISO 27001
• Enhanced organizations' cybersecurity policies and procedures (P&P) and mapped P&P to security regulations such as HIPAA and GDPR
• Led security discussions with technical and business decision-makers to identify security challenges and assess the company's security posture
• Worked with the consulting team to advance services – cut time to value of P&P engagements by expanding P&P templates; enhanced deliverables by improving data visualizations
2021 : 2022
K logix
Information Security Consultant
• Designed a consulting service for Identity and Access Management (IAM) to help clients invest in technology that strengthens their IAM programs – the service is trending with K logix customers
• Developed a python script to parse through the MITRE ATT&CK Endpoint Evaluations (JSON file) to compare the efficacy of Endpoint Detection and Response (EDR) products – designed customizable scoring system; created data visualizations using Python and Rstudio; distilled results into the K logix EDR assessment database
• Evaluated security products – wrote assessment criteria to compare Endpoint Detection and Response (EDR) capabilities; worked with the consulting team to identify solutions that match customers' needs
• Migrated the database to AWS (cloud computing platform) to improve speed, cost and accessibility
• Shadowed the pen test division – excelled at password cracking through social engineering
2019 : 2021
K logix
Cyber Security Research Analyst
• Analyzed pcap files for malware in Wireshark and identified where the malicious file originated from – followed the cyber kill chain
• Drafted a mock security program posture assessment for a company using the National Institute of Standards and Technology (NIST) framework
• Filtered data in Python in order to automate log analysis and find evidence of a potential breach
2019 : 2019
Evolve Security
Cyber Security Apprentice
• Created cold data sets to analyze global cyberattacks and the activity of threat actors such as Lazarus, FancyBear and APT 33 – constructed visual displays of data using Excel; contributions aided in upcoming negotiations
• Communicated with a high-level NATO official about NATO's role in cyber conflicts and its strategy for de-escalation
• Produced reports on topics ranging from Iran's cybersecurity strategy and hacking techniques to identifying patterns in the objectives, techniques and targets of cyber actors – analyzed 3-4 state cyber strategies per month; presented findings to senior diplomats
2018 : 2019
Ministry of Foreign Affairs of Israel
Israel Government Fellow
Company:
K logix
Years of Experience:
9
Spoken Language:
Hebrew
Skills
Community Outreach, Cybersecurity, Data Presentation, Data Visualization, Editing, Information Security, Leadership, Microsoft Office, NIST CSF, Organization Skills, Policy, Problem Solving, Public Policy, Public Speaking, Python, R, Research, Social Media, Teamwork, Writing