MUHAMMED ALI
Cybersecurity-focused IT Security Support Engineer with hands-on experience in Microsoft 365 security, Microsoft Entra ID, FortiGate firewalls, endpoint protection, phishing investigation, identity and access management, and security operations. Based in Dubai, UAE and immediately available for SOC Analyst, Cybersecurity Analyst, Security Operations Analyst, and Junior Security Engineer opportunities.
Professional Profile
Professional Profile
Cybersecurity-focused IT Security Support Engineer with hands-on experience securing Microsoft 365 environments, managing Microsoft Entra ID, administering FortiGate firewalls, investigating phishing incidents, monitoring endpoint protection, enforcing access controls, and supporting enterprise users. My current role combines IT support with substantial cybersecurity responsibilities, and I am actively pursuing a dedicated SOC or cybersecurity operations position.
Currently pursuing the Microsoft SC-200 (Security Operations Analyst) certification. Actively seeking dedicated SOC Analyst, Cybersecurity Analyst, Security Operations Analyst, and Junior Security Engineer opportunities in the UAE.
Key Achievements
- Supported security operations for 200+ users
- Delivered cybersecurity awareness training to 100+ employees across multiple client organizations
- Managed FortiGate firewalls
- Administered Microsoft 365 & Entra ID
- Implemented MFA and Conditional Access
- Conducted vulnerability assessments and penetration testing
- Managed endpoint protection using Acronis Cyber Protect Cloud
Security Projects
Real-World Assessment
- Conducted comprehensive vulnerability assessments on live internal web applications to identify operational flaws.
- Identified critical OWASP Top 10 security vulnerabilities including misconfigurations, broken access controls, and sensitive data exposures.
- Delivered detailed remediation reports with prioritized recommendations to stakeholders to secure codebases.
Infrastructure Audit
- Performed detailed internal network scanning and network traffic analysis to inspect core routing nodes.
- Utilized monitoring tools to isolate active open ports, deprecated and weak protocols, and security misconfigurations.
- Recommended and formulated security hardening roadmaps, emphasizing firewall rule optimization and network segmentation.
Smart Desk with Robotic Assistance for Students
- Developed AI-powered posture detection and emotion recognition modules using Python and OpenCV to support student well-being.
- Implemented prototype logic for parent monitoring and robotic assistance modules, extending the system toward assistive automation.
Case Studies
In-depth write-ups of real security investigations — walking through the alert, the analysis, and the response. Client and organizational details have been generalized to protect confidentiality.
When Zero Detections Didn't Mean Safe
Investigating a Microsoft 365 Credential Harvesting Attack — A suspicious email with a PDF attachment had clean VirusTotal reputation, but sandboxed VM analysis revealed a convincing M365 credential harvesting clone.
The Reputation Was Wrong
Investigating a False Positive Domain Detection on VirusTotal — 3 out of 91 vendors flagged a domain. Structured historical DNS and IP analysis indicated that the detections were most likely linked to legacy shared-hosting reputation.
Profile Navigator
Use the read-only commands below to explore portfolio information. This interface is a navigation feature; it does not execute system or security commands.
Professional Experience
IT Security Support Engineer
Provide L1/L2 IT support to 200+ users across multiple client environments through managed IT support contracts, while also supporting security administration and investigations. Security responsibilities include Microsoft 365 and Entra ID security, FortiGate administration, endpoint protection, access controls, alert review, and phishing response. Triage an average of 15+ IT and security incidents daily.
FortiGate Firewall Administration
Managed, configured, and optimized FortiGate enterprise firewalls (40F, 80F, and 100F series). Configured firewall policies, IPS, antivirus, web filtering, application control, SSL inspection, and IPsec VPNs.
M365 & Entra ID Security Management
Administered Microsoft 365, Entra ID (formerly Azure AD), and Microsoft 365 Defender settings for 200+ active seats. Enforced Multi-Factor Authentication (MFA), Conditional Access policies, managed role assignments (RBAC), and conducted mailbox auditing and phishing quarantine remediation.
Endpoint Security Enforcement
Deployed, monitored, and managed endpoint protection systems across all company devices using Acronis Cyber Protect Cloud. Investigated malware detections and endpoint security alerts, configured patch management schedules, and implemented backup & disaster recovery profiles.
L1/L2 Technical Support
Provided L1/L2 technical support for Microsoft 365 services, including Outlook configuration, email delivery issues, Office applications, user authentication, and access-related troubleshooting.
Cybersecurity Awareness Training
Created material and conducted training sessions for over 100 employees across multiple client organizations, improving employee awareness of phishing, social engineering, and secure data handling practices.
Cybersecurity Journey
From self-directed learning to a certified, employed security professional — five years of consistent, hands-on progress.
Started Self-Directed Learning
Began exploring cybersecurity independently, learning what ethical hacking is, how the field works, and how to structure a self-study path.
Structured Ethical Hacking Study
Completed an Ethical Hacking course on Udemy to build a practical, structured understanding of how attacks and defenses actually work.
CPT Certification & First Internships
Earned the Certified Penetration Tester (CPT) from RedTeam Hacker Academy, building tooling proficiency in Nmap, Metasploit, and Burp Suite, along with privilege escalation techniques. Completed a penetration testing internship with CFSS and a cybersecurity internship with Corizo, and earned an EC-Council Ethical Hacking Essentials (Associate-level) certification.
CEH Certification & First Security Role
Earned the Certified Ethical Hacker (CEH) from EC-Council in July 2025, following an internship with Infotact Solutions. In September, joined Sahhim Trading and Technology as an IT Security Support Engineer.
Preparing for Microsoft SC-200
Currently preparing for the Microsoft SC-200 (Security Operations Analyst) certification, while actively seeking a dedicated SOC or cybersecurity operations role.
Technical Skills
Security Operations
Security Solutions
Microsoft Technologies
Networking
Security & Network Tools
Endpoint & Backup Security
Education
B.Tech in Computer Science and Engineering
Acquired solid foundational knowledge in computing architectures, data structures, network communications, operating systems engineering, and cryptography principles.
Certifications
Industry-validated credentials in offensive security, IT fundamentals, and active pursuit of SOC analyst certification.
CEH
Certified Ethical Hacker · EC-Council
Credential covering ethical hacking methodology, reconnaissance, scanning, system security, web security, malware concepts, and cryptography.
CPT
Certified Penetration Tester · RedTeam Hacker Academy
Training and assessment in penetration-testing methodology, vulnerability validation, exploitation fundamentals, and reporting.
Google IT Support
Google IT Support Professional Certificate (v.3) · Google
IT support credential covering troubleshooting, operating systems, networking, system administration, directory services, and security fundamentals.
Microsoft SC-200
Security Operations Analyst · Microsoft
Exam preparation focused on Microsoft Sentinel, Defender XDR, incident triage, threat hunting, and KQL.
Languages
English
Malayalam
Hindi
Tamil
Get in Touch
Reach out directly using any of the channels below — I typically respond within 24 hours.