Highly skilled and dedicated professional with extensive experience in administering SIEM solutions, demonstrating expertise in integrating diverse data sources with SIEM platforms.
a )Engineered and managed SIEM platforms ( Microsoft Sentinel, Securonix) integrating data sources from cloud and on-prem environments using AMA and Log Analytics.
b) Configured detection rules, alerts, and correlation logic to enhance threat visibility and reduce false positives.
c) Developed KQL dashboards for real-time threat monitoring across Microsoft Defender, O365, Azure AD, and core network infrastructure.
SSCP Fundamentals and Access Controls