Ramasagar Jn. Opposite To Kalikadevi Temple, Paralakhemundi
Summary
Dedicated cybersecurity professional with three years of experience safeguarding sensitive data and mitigating cyber threats through adept alert investigation and incident response. Skilled in alert investigation, incident response and known for strong organizational and time management abilities, seeking opportunities to expand expertise and drive company growth.
Overview
4
4
years of professional experience
1
1
Certification
Work History
Cybersecurity Analyst
Optum Global Solutions (India) Private Limited
Hyderabad
08.2023 - Current
Conducted thorough analysis of escalated security incidents to identify threat actors, attack types, and impacted data/systems
Utilized threat intelligence, including updated rules and IOCs/IOAs, to accurately identify affected systems and assess the attack's scope
Ensured team compliance with Service Level Objectives (SLOs) and Service Level Agreements (SLAs)
Presented weekly and monthly performance reports to management, highlighting key findings and mitigation strategies
Fine-tuned alerting systems to reduce false positives and enhance response efficiency
Developed and Updated Standard Operating Procedures (SOPs)
Conducted rigorous testing of detection rules across various tools before deployment to development environments to reduce false positives
In the role of Review Officer and Watch Officer, I supervised queue traffic and provided guidance to analysts during investigations
Designed and implemented a DOMO Dashboard showcasing vital performance indicators for analysts, such as alert volume, testing cases, true positives, false positives, and compliance with SLOs and SLAs
This initiative aimed to optimize resource allocation by evaluating analyst efficiency.
Associate Cybersecurity Analyst
Optum Global Solutions (India) Private Limited
Hyderabad
10.2021 - 08.2023
Proficient in using Splunk for triaging email clickers and traffic to identify any suspicious IP(s) and Prisma Cloud, AWS Guard Duty for investigating cloud-based alerts
Skilled in email attachment and header analysis, as well as basic malware analysis
Experience in investigating and monitoring security incidents using Azure Sentinel, Microsoft Defender products, and Splunk
Proficient in using Helix, Cisco Ironport and Agari sensors for email security
Proficient in real-time security incident monitoring and analysis, adept at distinguishing between true and false positives
Skilled in log monitoring and analysis using various SIEM tools
Diligently monitor log volumes through health dashboards for comprehensive system oversight.
Associate Professional Software Engineer (Security Analyst)
DXC Technology
Noida
06.2020 - 10.2021
Organize and participate in audit meetings with clients
Coordinate escalations to external client support teams to ensure timely resolution of incidents
Analyze security system logs, security tools, and available data sources on a daily basis to identify attacks against the enterprise
Report any issues related to improper access patterns, trending, and event correlations, and provide suggestions for detection rules and system tuning
Perform incident response activities and ensure appropriate protection or corrective measures are taken when incidents are observed
Develop, maintain, and provide training on technical documentation and Standard Operating Procedures (SOP)
Monitor the health status of ArcSight Connector periodically and troubleshoot connectivity problems
Create new users in ARCON PAM and assign servers/endpoints based on their requirements.
Education
B. Tech (ECE) -
National Institute of Science and Technology
08.2020
Skills
Threat Detection and Incident Response
Endpoint Detection and Response
Security Monitoring and Analysis
Log Analysis and Correlation
Incident Handling and Escalation
Malware Analysis
Security Tools and Technologies (eg, Firewalls, Antivirus, Endpoint Protection)