Results-driven SOC Lead and Security Incident Manager with over 12 years of experience in managing Security Operations Centers and leading incident response efforts. Proven ability to oversee 24/7 SOC operations and coordinate complex security incidents effectively. Expertise in fine-tuning SIEM use cases and optimizing processes to reduce mean time to detect and respond (MTTD/MTTR). Strong skills in risk identification, reporting, and closure, with a focus on technology-driven solutions.
Monitored customer networks 24/7 in SOC to detect security breaches.
Tracked events for suspicious activity across multiple systems.
Reviewed NIDS, network firewall, SCSP, and web application firewall logs.
Responded to security alerts by analyzing incidents and escalating as necessary.
Created incident tickets in USM for critical issues; assigned to regional IT team.
Communicated with regional contacts via email, including USM incident details.
Collaborated with on-call escalation teams to resolve incidents efficiently.
Provided production support and coordinated with teams to stabilize applications.
Monitoring of Idera Session Monitoring.
Review of weekly & monthly alert reports that have to send to customer.