To work for an organization which provides me the opportunity to improve my skills and knowledge to growth along with the organization objective.
Overview
9
9
years of professional experience
1
1
Certification
Work History
Associate Delivery Manager
Bajaj FinServ
12.2020 - Current
Palo Alto Prisma cloud remediation automation
Application log integration with QRadar and use case creation
Azure/AWS/Oracle onboarding in Prisma CSPM
Azure Entra ID application creation and SSO configuration
Azure Entra ID application registration
Microsoft Sentinel onboarding and managing
Qradar SIEM to Microsoft Sentinel Migration
Microsoft Defender onboarding on Servers and Managing via Intune
Migration from Symantec to Microsoft Defender
Policy Migration and policy management of Microsoft Defender via console and Intune
Security check Sign-off for new resources creation of Azure and AWS
RFS (Request File Sharing) management
Azure SAML management and troubleshooting
Nessus management
Cloud security checks for Azure and AWS.
Persistent Systems Private Limited
12.2018 - 12.2020
First six months was working on QRadar, opensource tools implementation (OpenVAS, AlienVault OSSIM)
Additionally, was working on an Opensource tool research and implementation of Apache Metron using AWS instances and autoscaling
Handled SOC team as a lead and distributed work ShiftWise (24/7)
Next six months got selected for a new cloud project and currently working on AWS security and integrated security tools as follows: Tenable (Nessus), Alert Logic, TrendMicro DSM, AWS security review
Currently also pursuing for AWS Security Specialty certification.
SOC Analyst
Transfast PVT LTD
11.2015 - 11.2018
Monitoring various security tools and take actions if any incidents are raised
Documenting newly deployed tools
Making VAPT Test using open-source tools and make reports on it
Writing automated scripts for generating logs from SIEM tools
Setup CNAM SIEM tool to collect various types of logs (webserver, database, firewall) and correlate them
Writing various scripts to generate automated reports on daily basis
Deployment of SIEM in our organization
Configuring end user’s client with various security policies like PCI DSS, Data theft to secure company’s end user client machine confidential data
Setup web filtering application to monitor company web traffic for malicious URL types and take appropriate action on it
Configuring different types of policies for safe and secure browsing content
Implementation of Darktrace using hardware device and virtual using OVA for various location
Setup CNAM SIEM tool to collect various types of logs (webserver, database, firewall) and correlate them
Writing various scripts to generate automated reports on daily basis
Deployment of SIEM in our organization.
Education
Master Of Science in Computer Application -
Symbiosis Institute of Computer Studies and Research