Cybersecurity Professional with 5.3 years of hands-on experience in Security Operations Center (SOC) environments, specializing in SIEM integration, incident response, and threat monitoring. Proficient in developing custom correlation rules, dashboards, and reports to enhance real-time threat visibility and response efficiency. Experienced in managing critical incidents (P1–P3), mentoring L1 analysts, and acting as an escalation point for complex investigations.
Demonstrated expertise in malware analysis, IOC extraction, and vulnerability assessment, with a strong understanding of network security concepts including OSI model, TCP/IP, DNS, and firewall configurations. Skilled in log analysis from routers, firewalls, IDS/IPS, and Windows servers, ensuring effective detection and mitigation of security breaches.
Proficient with tools such as ArcSight, ServiceNow, Remedy, SPSD, and Summit, as well as threat intelligence platforms like VirusTotal and AbuseIPDB. Committed to maintaining high standards of service delivery, SLA adherence, and continual process improvement within dynamic enterprise environments.
Incident Response & Investigation