Summary
Overview
Work History
Education
Skills
Certification
Languages
Timeline
CustomerServiceRepresentative
Kumar Dharavath

Kumar Dharavath

Chennai

Summary

Experienced Cyber Security Professional with in-depth knowledge of information security assurance and interdisciplinary approaches to achieve system confidentiality, integrity, and availability. Security Enthusiast with 7+ years of working experience in SOC, SIEM, Threat Hunting, Incident Response, and Malware Analysis. Hands on experience with ArcSight and LogRhythm SIEM tool for logs monitoring and analysis, Service now ticketing tool. Dark Web Monitoring by using iZoologic tool.

Overview

8
8
years of professional experience
3
3
Certification

Work History

Assistant Manager (L2 Analyst)

Tata Communications Limited
01.2025 - 02.2025
  • Served as L2 Analyst in SOC operations for real-time monitoring, analyzing logs from various security/Industrial appliances
  • Administrating various incidents/security alerts triggered in SIEM tool
  • Performing L2 activities and working on Service Request, Log Requests
  • Performing detailed investigations on potential security threats escalated from L1 analysts, analyzing logs, network traffic, and system behavior to identify malicious activity.
  • Leading the incident response process for complex security incidents, including containment, eradication, and recovery actions, while collaborating with other teams
  • Working closely with other security teams, including L1 analysts, security engineers, and incident response teams to share information and coordinate response efforts.
  • Troubleshooting System Monitor, Connector down issues and Log Sources not reporting issues.
  • Involving troubleshooting calls with Internal team and clients and providing support from my end
  • Preparing Monthly and Weekly Security reports as per Client requirement and scheduling call with Client to discuss Monthly reports
  • Monitoring Dark Web incidents and initiating take down requests with iZoologic
  • Restoring Offline logs by using LogRhythm Second Lookup servers
  • Optimizing security tools and detection rules to reduce false positives and improve threat identification accuracy.
  • Analyzing suspicious files and malware samples to understand their functionality and potential impact on the network.
  • Creating detailed reports on security incidents, including analysis of findings, mitigation strategies, and lessons learned
  • Create and fine-tune content in SIEM, Correlation rules, Dashboards, Reports, etc

Sr. Security Engineer

Tata Communications Limited
08.2019 - 12.2024
  • Investigate Incidents using Channels/Events/Graphs/Annotations/Cases and Reports
  • Hands on experience in monitoring events and investigating incidents on a daily basis
  • Analyzing phishing/Spam mails and communication with the Comm team to block access all the malicious content to the malware is communicating
  • Followed a detailed operational process and procedures to appropriately analyze, escalate, and assist in remediation of critical information security incidents
  • Worked in 24x7 Operational support; on a rotating shift schedule (includes overnight shifts)
  • Proactively monitor the availability and the performance of the Applications and Infrastructure using key tools
  • Monitor alerts, perform level 1 troubleshooting on them and log tickets for the same for further action
  • Escalate issues as per the escalation matrix to the operation heads or senior authorities for faster and better resolution
  • Security event analysis and intrusion detection by review and analysis of events generated by various components including IDS/IPS, firewalls, EDR, XDR, Routers, DB, OS and various types of security devices
  • Work closely with business units to ensure that they know what and how to feed data into ArcSight, and to create network hierarchy, classify Log Sources within the ArcSight and LogRhythm SIEM
  • Monitoring the customer network using SIEM tool- LogRhythm, ArcSight, DNIF
  • Performing Real-Time Monitoring, Investigation, Analysis, Reporting and Escalations of Security Events from multiple log sources
  • Carrying out log monitoring and incident analysis for various devices such as Firewalls, IDS, IPS, database, web servers and so forth
  • Maintain keen understanding of evolving internet threats to ensure the security of client networks
  • Contacting the customers directly in case of high priority incidents and helping the customer in the process of mitigating the attacks
  • Determine the scope of security incident and its potential impact to Client network recommend steps to handle the security incident with all information and supporting evidence of security events
  • Making sure the tickets are resolved on time within the SLA's

Security Analyst

Vengai Software Solutions Pvt Ltd
12.2016 - 07.2019
  • Working in Security Operation Center (24x7), monitoring of SOC events, detecting and preventing the Intrusion attempts
  • Responding to various security alerts for various client and scanning for vulnerabilities
  • Monitoring real-time events using SEIM tools like ArcSight
  • Monitoring, analyzing and responding to infrastructure threats and vulnerabilities
  • Creating case for the suspicious issue and forwarding it to Onsite SOC team for further investigation
  • Creating the tickets in ticketing tool
  • Filling the Daily health checklist

Education

M.Tech -

Joginpally B.R Engineering College
05.2016

B.Tech - undefined

Mannan Institute of Science and Technology
05.2013

Skills

  • SIEM (Security Information and Event Management)
  • SOC (Security Operation Centre)
  • LogRhythm
  • ArcSight
  • ServiceNow
  • ITSM
  • iZoologic
  • Dark Web Monitoring
  • Incident Response
  • Incident Analysis
  • Information Security
  • Cyber Security
  • Malware Analysis
  • Phishing Analysis
  • Threat Hunting
  • Firewall
  • EDR
  • XDR

Certification

  • Certified Ethical Hacker (CEH), EC-Council, ECC3569207418, 11/01/23
  • LogRhythm Platform Administrator - LRPA Certification, LogRhythm University, 12/01/21
  • LogRhythm Security Analyst - LRSA Certification, LogRhythm University, 11/01/23

Languages

English
Hindi
Telugu

Timeline

Assistant Manager (L2 Analyst)

Tata Communications Limited
01.2025 - 02.2025

Sr. Security Engineer

Tata Communications Limited
08.2019 - 12.2024

Security Analyst

Vengai Software Solutions Pvt Ltd
12.2016 - 07.2019

B.Tech - undefined

Mannan Institute of Science and Technology

M.Tech -

Joginpally B.R Engineering College
Kumar Dharavath