Summary
Overview
Work History
Education
Skills
Timeline
Generic

Chethan Kumar M

Bangalore

Summary

Dynamic Security Analyst with over 10 years of comprehensive experience in cybersecurity and incident response, driving significant improvements in organizational security posture. Expertise in proactive threat management, incident response, and security policy development enhances overall data protection. Proficient in utilizing advanced tools such as Microsoft Sentinel and Splunk to analyze threats and mitigate risks effectively. Proven track record in leading training initiatives to elevate employee awareness, resulting in substantial reductions in security vulnerabilities. Committed to continuous improvement and collaboration across teams to safeguard critical assets and maintain regulatory compliance.

Overview

11
11
years of professional experience

Work History

Security Analyst

Fujitsu consulting pvt ltd
12.2024 - Current
  • Analyzed security incidents and threats, ensuring proactive risk management.
  • Developed and implemented security policies, enhancing data protection measures.
  • Collaborated with cross-functional teams to strengthen overall security posture.
  • Leading incident response activities and conducting post-mortem analysis to prevent future security breaches.
  • Working on the fine-tuning of the use-case according to the client requirement.
  • Analyzed and investigated phishing emails to identify attack vectors, malicious payloads, and indicators of compromise (IOCs), contributing to improved email security filters.
  • Led phishing awareness training sessions and simulated phishing campaigns, resulting in 80% improvement in employee response accuracy and reduction in click-through rates.
  • Performed proactive threat hunting and email log analysis using Microsoft Sentinel and Proof point to uncover targeted campaigns and mitigate risks. Investigated (network communication, IOC hunts, post detonation artefact analysis, lateral movement etc.) using defender and recommended containment measures.
  • Conducted dynamic IOC analysis by examining suspicious files and URLs in sandbox environments; extracted IOCs and behavioral patterns to support threat intelligence and response efforts.
  • Conducted regular security audits, identifying vulnerabilities and compliance gaps.
  • Provided training and awareness programs to staff, promoting security best practices.

Technology Analyst

Infosys Limited
01.2022 - 08.2024
  • Handling the Incident Response in Sentinel portal for MSS for clients
  • Handling the Ad hoc request from the clients.
  • If any P1 or P2 incident triggers, then scheduling a call with respective user or team to know the purpose of the activity performed and resolving the incident.
  • Checking for the pending incidents and validating the resolved incident for proper closer.
  • Performed MMA to AMA migration activity in the Sentinel by creating certain rules.
  • Involved in implementation of Trend Micro Data Connector and its logs integration.
  • Involved in creating the NSG rule.
  • Involved in the creation of Playbook for creating the SNOW incident and email notification.
  • Daily checking whether SLA and Escalation matrix is following properly.
  • Performing IOC search in client environment for any suspicious activity.
  • Creating and Fine-tuning the use-cases according to the client requirement.
  • Preparing Daily, Weekly, Monthly reports for the project.
  • If any malicious activity found while doing reports, investigation is done and giving the report to the team and client on that activity.
  • Coordinating with MS team for troubleshooting any of the issues.
  • Preparing the SOP’s and Run books.
  • Performing the email analysis.
  • Checking the health status of the devices which are reporting to the sentinel and defender.
  • I was also commended for conducting a mock drill on handling malware incidents.
  • When it comes to fine-tuning the use cases where the false positive alerts got reduced to 95% and the use case which I have created is running with the efficiency of 80%.
  • Configured Azure Alerts for various Azure services using Azure monitor.
  • Managing identity and access controls, including setting up role-based access controls (RBAC) and identity federation.
  • Implementing and managing security monitoring tools to detect and respond to security incidents in the cloud environment.
  • Leading incident response activities and conducting post-mortem analysis to prevent future security breaches.
  • Experience Logging/monitoring/Detection of events and anomalies.

Application support Analyst

Infosys bpm limited
03.2015 - 01.2022
  • Created a comprehensive knowledge base of application-related issues, enabling faster resolution times for customers
  • Created a dashboard that visually represented key business metrics in real-time, allowing for quick and informed decision-making by management
  • Monitored system performance to identify and address potential issues before they impacted customers
  • Developed and implemented data quality checks that reduced errors in reports by X%

Education

BE - undefined

Kalpataru Institute of Technology
Tiptūr
03.2013

puc - undefined

Siddaganga pu college
Bengaluru
04.2007

Skills

Microsoft sentinal Expert

Splunk Expert

MDR Expert

Trendmicro Expert

Cabonblack

Qualuys Expert

Timeline

Security Analyst

Fujitsu consulting pvt ltd
12.2024 - Current

Technology Analyst

Infosys Limited
01.2022 - 08.2024

Application support Analyst

Infosys bpm limited
03.2015 - 01.2022

BE - undefined

Kalpataru Institute of Technology

puc - undefined

Siddaganga pu college
Chethan Kumar M