Summary
Overview
Work History
Education
Skills
Awards
Personal Information
Certification
Timeline
Generic
Hindol Das

Hindol Das

Kolkata

Summary

At PwC India, as a SIEM Administrator/Engineer, I excelled in integrating diverse data sources into SIEM, developing custom parsers, and crafting correlation rules to pinpoint security threats. My expertise in Python scripting and my proactive approach in threat hunting significantly enhanced our cybersecurity posture, demonstrating my technical acumen and analytical prowess in high-stakes environments.

Overview

1
1
Certification

Work History

SIEM Administrator / SIEM Engineer

PwC
Kolkata
08.2023 - 01.2024
  • Managed escalations from Level I Threat Analysts, providing guidance and advice on complex investigation handling.
  • Onboarded and trained new Threat Analysts, ensuring seamless integration and knowledge transfer within the Security Operations Center (SOC).
  • Improved and created security operations processes, contributing to the evolution and efficiency of operational practices.
  • Delivered timely detection and response to security events, assessing, documenting, and mitigating incidents.
  • Performed security log management and continuous monitoring to proactively detect anomalies.
  • Provided metrics-driven reporting on threat trends, intelligence analysis, and situational awareness to enhance threat response strategies.
  • Interacted regularly with clients, delivering status updates, guidance, and support through threat neutralization processes across various communication channels.
  • Actively researched recent Indicators of Compromise (IoCs), Indicators of Attack (IoAs), exploits, and vulnerabilities to stay ahead of emerging threats.
  • Has experience with integrating or onboarding new data sources into SIEM.
  • Provided technical support and troubleshooting for SIEM-related and log source not reporting-related challenges.
  • Experienced with syslog-based log forwarding using agents (Nxlog, etc.).
  • Familiar with Syslog-ng, rsyslog, etc.
  • Developed custom parsers for different log sources.
  • Developed correlation rules, use cases for SIEM alerts, to identify security threats, and implemented active lists, lookup data, and watchlists.
  • Finetuned policies, as per best security practices.
  • Developed queries for log searching and indexing in the SIEM.
  • Aware of YARA-L and Sigma rules.
  • Experienced with ingesting third-party cyber threat intelligence feeds into SIEM.
  • Conducted log analysis and investigated security incidents.
  • Also, performed log filtering activities according to best security practices.

Education

BTech -

RCC Institute of Information and Technology
Kolkata
06.2023

Higher secondary Examination - CBSE Board

Aditya Academy Secondary School
Kolkata
05.2019

Skills

  • SIEM Engineering
  • Log source onboarding
  • Troubleshooting
  • Use case creation
  • Parser creation
  • TPI feed ingestion
  • Log analysis
  • Python scripting
  • Java
  • Risk Management
  • Networking
  • Threat Hunting
  • Threat analysis investigations
  • Root Cause Analysis

Awards

STAR&R Spot Award, PwC, Received STAR&R spot award x1

Personal Information

  • Gender: He/Him
  • Nationality: Indian

Certification

  • ISO 27001 Lead Implementor

Timeline

SIEM Administrator / SIEM Engineer

PwC
08.2023 - 01.2024

BTech -

RCC Institute of Information and Technology

Higher secondary Examination - CBSE Board

Aditya Academy Secondary School
Hindol Das