Summary
Overview
Work History
Education
Skills
Websites
Certification
Languages
Disclaimer
Timeline
Generic

Abish B J

Chennai

Summary

Cybersecurity Analyst with 7.5 years of total experience, including 6 years in Information and Cloud Security, and 1.7 years in Network Operations. Specialized in SIEM platforms such as IBM QRadar, Splunk, and Microsoft Sentinel, with hands-on expertise in incident response, threat detection, and phishing investigations. Proficient in host-based firewall management, cloud security tools, and security automation using Ansible. Demonstrates strong collaboration skills, and a proactive approach to securing hybrid environments across enterprise infrastructures.

Overview

8
8
years of professional experience
1
1
Certification

Work History

Senior Cyber Security Specialist

Tata Consultancy Services (TCS)
Chennai
06.2024 - Current
  • Admin-level access and management of Akamai, Guardicore, network segmentation in cloud environments, VMs, and on-premises servers.
  • Deployed, configured, and maintained CrowdStrike Falcon agents across Windows, Linux, and macOS endpoints in a large-scale enterprise environment.
  • Conducted incident response using CrowdStrike Falcon’s tools to contain compromised hosts, isolate endpoints, and remove malicious artifacts.
  • Monitored and responded to endpoint security alerts generated by CrowdStrike, including real-time threat detection, IOC (Indicators of Compromise) alerts, and behavioral anomalies.
  • Creating and refining rules on the Host Firewall (Akamai Guardicore); defining policy labels, and allowing legitimate traffic into the organization.
  • Hands-on experience with SIEM tools, including IBM QRadar, Splunk, and Azure Sentinel.
  • Log analysis in Splunk and onboarding various logs for real-time monitoring.
  • Managing user-related incidents via Skyhigh Proxy and EPO.
  • Led the triage, investigation, and resolution of P1 and P2 security incidents as a senior analyst, ensuring rapid containment and minimal business impact.
  • Handling incidents triggered by Tagies XDR alerts, Proofpoint, and phishing emails.
  • Performed root cause analysis (RCA) and created post-incident reports for executive stakeholders.
  • Managing Ansible for automation to install security agents in Windows and Linux servers.
  • Collaborating with multiple teams for incident response, threat intelligence, and improving security posture.
  • Created and managed change requests (CRQs) for security-related implementations and incident remediation via ServiceNow in accordance with ITIL best practices.
  • Reviewed, assessed, and executed security change activities, including firewall policy updates, endpoint protection deployments, and SIEM rule changes.

SOC Analyst / Information Security Analyst

CGI
Chennai
01.2019 - 05.2024
  • Monitored and analyzed security events from IDPS, SIEM, Checkpoint, and F5 WAF systems.
  • Applied MITRE ATT&CK framework, Cyber Kill Chain, and IR methodology for threat response.
  • Investigated potential incidents and vulnerabilities using QRadar, Splunk ES, and Microsoft Sentinel.
  • Conducted malware analysis and threat detection.
  • Led phishing email investigations and guided users on next steps.

Network Operations Center (NOC) Analyst

CGI / CMS IT Services
Chennai
05.2017 - 01.2019
  • Performed regular server and network health checks, troubleshooting, and performance tuning.
  • Conducted RCA follow-ups and managed firewall shutdowns and configurations.
  • Analyzed QoS mismatches and optimized bandwidth performance.
  • Monitored packet flow and anomalies using Wireshark.

Education

Bachelor of Computer Applications (BCA) -

Noorul Islam College of Arts and Science
Kanyakumari

Skills

  • SIEM Tools: IBM QRadar, Splunk ES, Microsoft Sentinel, Azure Security Center
  • Endpoint Security: CrowdStrike, Microsoft Defender, SentinelOne
  • Network & Cloud Security: Akamai Guardicore, Skyhigh Proxy, Checkpoint, F5 WAF, AWS, Azure
  • Threat Hunting & IR: MITRE ATT&CK, Cyber Kill Chain, Malware Analysis
  • Automation: Ansible, Linux Security Hardening
  • Email & Phishing Security: Proofpoint, Phishing Email Analysis
  • Packet Analysis: Wireshark
  • Incident response , Network segmentation
  • Azure Cloud security

Certification

  • Microsoft Certified Professional (MCP) – ID: MS0618322694 – June 2018
  • SC-900: Security, compliance, and identity - Azure - ID: I346-8583 - July 2022
  • Certified Ethical Hacker (CEH) – ID: ECC391265748 – January 2023

Languages

English, Tamil, Malayalam

Disclaimer

I hereby declare that the information provided above is true to the best of my knowledge. Signature: Abish B J

Timeline

Senior Cyber Security Specialist

Tata Consultancy Services (TCS)
06.2024 - Current

SOC Analyst / Information Security Analyst

CGI
01.2019 - 05.2024

Network Operations Center (NOC) Analyst

CGI / CMS IT Services
05.2017 - 01.2019

Bachelor of Computer Applications (BCA) -

Noorul Islam College of Arts and Science
Abish B J