Summary
Overview
Work History
Education
Skills
Websites
Certification
Technical Tools And Platforms
Languages
Timeline
Generic

Hemant Kumar

Bangalore

Summary

Dynamic and accomplished cybersecurity professional with over 7 years of experience in Managed Security Services, Cybersecurity Incident Response, Threat Intelligence, Threat Hunting, Security Operations Center (SOC), and Endpoint Security. Proven ability to lead incident response teams, perform advanced threat investigations, and implement proactive defense strategies across enterprise environments. Demonstrates deep expertise in SIEM, SOAR, EDR, XDR and email security. Known for strong problem-solving, team leadership, and execution of threat mitigation tactics aligned with the MITRE ATT&CK framework.

Overview

8
8
years of professional experience
1
1
Certification

Work History

Cyber Defense Engineer

7-Eleven Global Solution Center
04.2023 - Current
  • Lead Incident Response and escalation handling as part of the Cyber Threat Investigation team.
  • Operate as Team Lead and primary responder in Advanced Threat Protection (ATP) operations- Threat Hunting and Reporting, expert analysis on human adversary intrusions and advanced attacks.
  • Identifying and developing new ideas to enhance our detection capability- Use cases, Rules, Patterns and Mitigations.
  • Contribute, suggest, review and validate new use cases and playbooks created by self or Cyber Defense Engineers.
  • Configure and manage Email Security, DLP and tools like Microsoft Defender for O365 and Abnormal.
  • Built and lead a Threat Intelligence team to gather OSINT and internal threat data for hunting operations and reporting.
  • Use MITRE ATT&CK heat maps to guide posture improvement and threat coverage.
  • Evaluate vendor and partner ecosystems as part of Partner Security Program.
  • Documenting and following detailed processes, SOPs and procedures to analyze, respond to and/or escalate cyber security incidents.

Cyber Security Engineer / Architect (IR Analyst)

Honeywell International Inc.
08.2020 - 04.2023
  • Performed cyber threat engineering with focus on TTPs and intrusion detection.
  • Executed incident response, Threat hunts, and malware analysis using tools like Defender ATP, Azure, XSOAR, and Lastline.
  • Handled phishing, DDoS, malware, and insider threat scenarios.
  • Conducted proactive hunts for malicious behavior across enterprise networks.
  • Built incident response playbooks and enhanced alert tuning strategies.
  • Tackled zero-day and virus outbreak scenarios with McAfee and other security tools.
  • Addressed and resolved DLP incidents using Microsoft Information Protection (MIP).

Cyber Security Associate Consultant

Capgemini India Pvt. Ltd.
10.2017 - 08.2020
  • Active part of Endpoint Security Team.
  • Investigated real-time threats using IBM QRadar, analyzing logs from firewalls, IDS/IPS, WAFs, OS (Windows/UNIX), and databases.
  • Managed Nessus vulnerability scans, reported findings, and supported patching/remediation efforts.
  • Administered Symantec Endpoint Protection, F-Secure, and Microsoft BitLocker (MBAM) across large environments.
  • Delivered monthly access management reports, including incident/request analysis and SLA metrics.
  • Gained working knowledge of Microsoft ATP Suite (O365 ATP, ATA, Azure ATP, CAS).
  • Familiar with ITIL process improvements for better service delivery.

Education

BE - ECE

NMIT
01.2017

Intermediate - undefined

DAV Public School
01.2013

10th Board - undefined

VCS
01.2010

Skills

  • Cyber Incident Response
  • Threat Hunting
  • Threat Intelligence
  • SIEM
  • EDR
  • XDR
  • SOAR Tools
  • Email Security
  • MITRE ATT&CK Mapping
  • Use Case Development
  • Endpoint Protection
  • Data Loss Protection
  • Security Leadership
  • Team Management

Certification

  • Cyber Incident Response and Digital Forensic- LinkedIN
  • Cyber Threat Intelligence ArcX.
  • Fortinet network security

Technical Tools And Platforms

IBM QRadar, Splunk, Devo, Cortex XSOAR, Cortex XDR, Obsidian, Recorded Future, Lastline, MIP, OSINT, Microsoft Defender ATP, F-Secure, Symantec, McAfee, Microsoft Defender for O365, Abnormal, Nessus, Tenable.IO, Azure Security Center, O365 ATP, AWS, PowerShell

Languages

English
Bilingual or Proficient (C2)
Hindi
Bilingual or Proficient (C2)

Timeline

Cyber Defense Engineer

7-Eleven Global Solution Center
04.2023 - Current

Cyber Security Engineer / Architect (IR Analyst)

Honeywell International Inc.
08.2020 - 04.2023

Cyber Security Associate Consultant

Capgemini India Pvt. Ltd.
10.2017 - 08.2020

Intermediate - undefined

DAV Public School

10th Board - undefined

VCS

BE - ECE

NMIT
Hemant Kumar