
Dynamic Cybersecurity professional with hands-on experience at the Directorate General of GST Intelligence, excelling in digital forensics and incident response. Proficient in SIEM tools like Splunk and QRadar, I leverage strong analytical skills to enhance threat detection and response strategies, ensuring robust data protection and compliance.
Security Information and Event Management (SIEM) - Worked with Splunk and QRadar for log analysis, alert monitoring, dashboard creation, and incident investigation Used SIEM tools to identify suspicious activities and support threat detection workflows
Threat Hunting - Performed threat investigations using Cybereason and RevealX by analyzing alerts, suspicious inbox activity, endpoint telemetry, and anomalous network traffic patterns
Endpoint Security Monitoring - Hands-on exposure to EDR/XDR platforms including Cybereason and Trend Micro for endpoint visibility, alert triage, malware investigation, and incident response support
Data Protection and SOAR - Exposure to Guardium Data Protection and Resilient SOAR for understanding security orchestration, response workflows, and data protection mechanisms
Frameworks and Defense Mapping - Worked with MITRE ATT&CK Navigator and D3FEND concepts for threat-informed defense, attack mapping, and understanding adversary TTPs