
yahya siddiqui
@yahyasiddiqui
Network Security Engineer at Biogen who operationalized Zero Trust architecture and led a ColorTokens XShield micro-segmentation initiative.
What I'm looking for
At Biogen, I designed and operated Zero Trust architecture through Zscaler ZIA/ZPA, reducing reliance on implicit trust across the global environment. I also led the ColorTokens XShield micro-segmentation initiative across critical OT/IT segments.
I own incident response investigations from triage through post-incident review and serve as the team’s technical escalation point. I also mentor junior analysts on runbooks, on-call procedures, and tabletop exercises.
Earlier at Biogen, I monitored SIEM platforms and supported threat detection, risk assessments, control audits, and vendor security reviews. As a Business Analyst, I translated technical security risks into remediation roadmaps and business cases.
My experience also includes maintaining IT and security risk registers, assessing third-party vendors, and supporting audits. I hold ZCCA-PA and ZCCA-ZDX certifications and have worked with NIST CSF and ISO 27001 frameworks.
Experience
Work history, roles, and key accomplishments
Designed and operated enterprise Zero Trust architecture using Zscaler ZIA/ZPA, reducing implicit trust. Led ColorTokens XShield micro-segmentation initiative and owned incident response investigations.
Monitored SIEM platforms and performed real-time threat correlation to detect and mitigate advanced persistent threats. Supported risk assessments and compliance audits across SOX, HIPAA, and ISO 27001.
Translated technical security risk findings into actionable remediation roadmaps and business cases for executives. Drove process automation initiatives to improve compliance dashboard data quality.
Delivered advanced hardware and software diagnostics while maintaining high customer satisfaction. Led cybersecurity awareness workshops and mentored new specialists.
Maintained enterprise risk registers and conducted quarterly assessments across dozens of controls. Designed standardized third-party vendor risk questionnaires and supported audit cycles.
Performed endpoint security configuration audits and vulnerability scans, producing detailed remediation reports for IT operations.
Analyzed indicators of compromise, OSINT feeds, and adversary TTPs to support client threat intelligence reports.
Education
Degrees, certifications, and relevant coursework
University of Massachusetts Boston
Bachelor of Science, Computer Science
Bachelor of Science in Computer Science from the University of Massachusetts Boston, completed in December 2020.
Tech stack
Software and tools used professionally
Availability
Location
Authorized to work in
Salary expectations
Social media
Interested in hiring yahya?
You can contact yahya and 90k+ other talented remote workers on Himalayas.
Message yahyaGet matched with your dream remote job
Sign up now and join over 250,000+ remote workers who receive personalized job alerts, curated job matches, and more for free!
