Qradar

Dedicated Information Technology professional with history of meeting company goals utilizing consistent and organized practices. Skilled in working under pressure and adapting to new situations and challenges to best enhance the organizational brand.
· Deep drive analysis of triggered alerts using SIEM and other analysis tools.
· Depending upon organization requirement for monitoring risks, threats, vulnerabilities.
· Writing customized rules to capture and alert critical incidents, event validation and analysis.
· Acknowledging and closing false positives and raising tickets for validated incidents
· Assist IRT teams in incident information by providing supporting data and recommendations
· Follow up with incident response for remediation
· Monitoring and troubleshooting silent log sources
· Involved in Daily Reporting Activity.
· Responding to the Emails which we get from the teams.
· Participate in weekly SOC meetings to discuss about raised incidents
· Assist SOC lead in reporting
· Having a Knowledge on ISMS, ISO 27001, HIPPA , GDPR , PCI DSS
· Involved in creating phishing awareness campaign
· Threat hunting based on the hypothesis developed by SOC lead/manager
· Maintaining and improving playbooks and process
. Participate in evaluation of XDR solution
· Drafting shift handovers
· Troubleshoot hardware, software and network operating system.
· Be familiar with all hardware and software.
· Installation, Assembling, Disassembling, Hardware Implementation
· Maintain log and/or list of required repairs and maintenance.
· Microsoft Operating System installation and other software installation (Server & Clients)
· System data recovery
· System hardware& networking
· Dot matrix printers, laser and inkjet printers, scanners, and other equipment’s
· Trouble shooting of end user support.
· Backup and restoring data.
· Configuring LAN. Networking troubleshooting
· Desktop related troubleshooting (Remote support)
· Local and network printer configurations.
· Desktop management & Remote support
· Configure & troubleshoot hardware Desktop & workstation.
· Load all required software.
· Monitor security of all technology.
· Configuring Microsoft-outlook
· Configure User profiles and configure network printers.
· Install & Update Antivirus
Solid understanding of common network services and protocols
Cyberattacks and attack vectors
Security solutions like Antivirus, Firewall, IPS, WAF, Email Gateway, Honeypots
Security compliances like GDPR, PCI-DSS
Phishing and malware analysis
Project leadership
Environmental cleanup
Activity planning and scheduling
Qradar
Splunk Enterprise
Proofpoint
Palo Alto
SEP
McAfee
Phishrod
Proofpoint
CA Service Desk
Service Now