With over two years of experience in Cyber Security, specializing in Security Operations, I have hands-on experience with security management tools like SIEM (Arcsight), DLP (Forcepoint), and endpoint security (Crowdstrike). I am skilled in threat hunting, malware analysis, and incident response. I possess strong analytical and problem-solving abilities and have experience collaborating with cross-functional IT teams. I am a quick learner, readily adapting to new technologies and environments.
- Performed log analysis and incident handling. Monitored endpoint applications for potential threats and vulnerabilities. Documented and addressed cyber incidents and SOC incidents.
- Monitor alerts and respond to incidents using SIEM tools like Splunk and QRadar. Keep an eye on security alerts and logs for potential threats. Detect and pinpoint suspicious activities. Conduct initial assessments and triage of security incidents. Provide assistance in responding to and managing security incidents. Oversee and handle security logs. Record and report on security incidents.
Qradar, Crowdstrike, Firewall, Proofpoint, Forcepoint, Cortex Palo Alto, VirusTotal, Abuse IPdb, WhereGoes, Urlscan.io, ServiceNow