Profiles search
Joshua Campbell
SOAR Engineer, Information Security and Risk at Cardinal Health
Bowling Green, OH, United States
Details
Experience:
Job Responsibilities Include :
Implementing and supporting security platforms related to : Security Orchestration Automation & Response (SOAR), Security Information Event Management (SIEM), and User & Entity Behavior Analytics (UEBA)
Continuous optimization, tuning and monitoring of platforms
Integration of platforms into SIEM, SOAR and/or API’s
Working closely with Security Incident Response, Purple, Threat Intel teams
Troubleshooting issues affecting internal customers
Building of Linux servers, dockers, containers, automation in GCP
Executing small/medium projects to deploy security platforms into the business to maximize value and enhance security posture
Onboarding of new security platforms into an operational model from the Security Architecture team
Participation in POC/RFP by testing solutions or building test environments
Managing Open Source C++, SaaS and on-premise platforms
2022 : Present
Cardinal Health
SOAR Engineer - Information Security and Risk
- Managed abuse inbox, investigating and responding to phishing emails
- Managed Pulse Secure VPN appliance and account access
- Managed Palo Alto firewalls
- Monitored Splunk and Microsoft O365/ATP dashboards for alerts and suspicious activity
- Responded to and remediated compromised accounts
- Implemented and ran the internal phishing training using GoPhish and KnowBe4
- Reviewed software purchase requests to ensure proper security measures are supported and there are no compliance concerns
- Ran quarterly PCI vulnerability scans using OpenVAS and Nessus
- Assisted campus and city police in gathering cyber forensic evidence from devices and network logs
- Assisted in image and server hardening
- Filled a key role in the investigation of a data breach that occurred at a local college that we provided services to including reviewing logs, identifying the initial exploit used to gain access, and reporting it to the vendor
- Worked with 3rd party vendors for PCI compliance audits and assessments, and worked to remediate issues as they were found
- Participated in IT project planning to ensure security concerns were considered from the beginning
- Worked service tickets to completion in support of the systems and responsibilities of the security team
2019 : 2022
Bowling Green State University
Information Security Analyst
- Troubleshoot and resolve incident and request tickets
- Develop, test and support custom internal manufacturing applications
- Maintain and integrate manufacturing data between custom applications, vendor MES systems and SAP
- Regular shifts on after hours on-call rotation to provide timely 24-hour support for multiple plants in the US and abroad
- Design and document functional and technical specifications for enhancements and new projects
- Travel on-site to US and international plants to support application deployments
- Work with multiple internal teams to coordinate server, operation system and security patch deployments
2018 : 2019
Cooper Tire & Rubber Company
BIS Systems Developer II
- Founded the Information Security team
- Researched Business Continuity options, presented the minimum and recommended solutions to management and wrote the Business Continuity Plan
- Wrote the Vulnerability Assessment Plan and perform regular Vulnerability Assessments, remediating as required by our Vulnerability Assessment Plan
- Monitor the Palo Alto PA-500 firewall and daily reports and perform incident response as possible incidents occur
- Ensure compliance with client audits and requirements contained in the client agreements
- Design, develop and support ETL processes to meet clients’ data import, export and reporting needs primarily in Microsoft SQL Server and TSQL
- Engage personally with clients, over the phone and on site, to gather business and technical requirements
- Led each phase of the Software Development Life Cycle to design, to develop and deliver an automation engine and documentation for a client which significantly boosted their business capabilities
- Perform installations, upgrades and support of FICO Debt Manager 9 server software and databases
- Work efficiently to meet deadlines and requirements for multiple projects and clients simultaneously
- Provide emergency response in the event of production issues during and after regular hours
- Quickly come up to speed on new technologies as new lines of business require
2016 : 2018
Emprise Technologies
Software Developer II
Availability based deployment to combat wildfires in the United States.
2015 : 2016
Bureau of Land Management
Firefighter Type 2
Implementing and supporting security platforms related to : Security Orchestration Automation & Response (SOAR), Security Information Event Management (SIEM), and User & Entity Behavior Analytics (UEBA)
Continuous optimization, tuning and monitoring of platforms
Integration of platforms into SIEM, SOAR and/or API’s
Working closely with Security Incident Response, Purple, Threat Intel teams
Troubleshooting issues affecting internal customers
Building of Linux servers, dockers, containers, automation in GCP
Executing small/medium projects to deploy security platforms into the business to maximize value and enhance security posture
Onboarding of new security platforms into an operational model from the Security Architecture team
Participation in POC/RFP by testing solutions or building test environments
Managing Open Source C++, SaaS and on-premise platforms
2022 : Present
Cardinal Health
SOAR Engineer - Information Security and Risk
- Managed abuse inbox, investigating and responding to phishing emails
- Managed Pulse Secure VPN appliance and account access
- Managed Palo Alto firewalls
- Monitored Splunk and Microsoft O365/ATP dashboards for alerts and suspicious activity
- Responded to and remediated compromised accounts
- Implemented and ran the internal phishing training using GoPhish and KnowBe4
- Reviewed software purchase requests to ensure proper security measures are supported and there are no compliance concerns
- Ran quarterly PCI vulnerability scans using OpenVAS and Nessus
- Assisted campus and city police in gathering cyber forensic evidence from devices and network logs
- Assisted in image and server hardening
- Filled a key role in the investigation of a data breach that occurred at a local college that we provided services to including reviewing logs, identifying the initial exploit used to gain access, and reporting it to the vendor
- Worked with 3rd party vendors for PCI compliance audits and assessments, and worked to remediate issues as they were found
- Participated in IT project planning to ensure security concerns were considered from the beginning
- Worked service tickets to completion in support of the systems and responsibilities of the security team
2019 : 2022
Bowling Green State University
Information Security Analyst
- Troubleshoot and resolve incident and request tickets
- Develop, test and support custom internal manufacturing applications
- Maintain and integrate manufacturing data between custom applications, vendor MES systems and SAP
- Regular shifts on after hours on-call rotation to provide timely 24-hour support for multiple plants in the US and abroad
- Design and document functional and technical specifications for enhancements and new projects
- Travel on-site to US and international plants to support application deployments
- Work with multiple internal teams to coordinate server, operation system and security patch deployments
2018 : 2019
Cooper Tire & Rubber Company
BIS Systems Developer II
- Founded the Information Security team
- Researched Business Continuity options, presented the minimum and recommended solutions to management and wrote the Business Continuity Plan
- Wrote the Vulnerability Assessment Plan and perform regular Vulnerability Assessments, remediating as required by our Vulnerability Assessment Plan
- Monitor the Palo Alto PA-500 firewall and daily reports and perform incident response as possible incidents occur
- Ensure compliance with client audits and requirements contained in the client agreements
- Design, develop and support ETL processes to meet clients’ data import, export and reporting needs primarily in Microsoft SQL Server and TSQL
- Engage personally with clients, over the phone and on site, to gather business and technical requirements
- Led each phase of the Software Development Life Cycle to design, to develop and deliver an automation engine and documentation for a client which significantly boosted their business capabilities
- Perform installations, upgrades and support of FICO Debt Manager 9 server software and databases
- Work efficiently to meet deadlines and requirements for multiple projects and clients simultaneously
- Provide emergency response in the event of production issues during and after regular hours
- Quickly come up to speed on new technologies as new lines of business require
2016 : 2018
Emprise Technologies
Software Developer II
Availability based deployment to combat wildfires in the United States.
2015 : 2016
Bureau of Land Management
Firefighter Type 2
Company:
Cardinal Health
Spoken Language:
English, German