Summary
Overview
Work History
Education
Skills
Certification
Timeline
Generic

MANISH KUMAR

SOAR Specialist
Yamuna Nagar

Summary

Skilled Information Security Professional with expertise in security automation, incident response, data analytics and a wide range of vulnerabilities and threats. Well-versed in direct and remote analysis with strong critical thinking communication and people skills. Able to thrive in fast-paced and challenging environments where accuracy and efficiency matter.

Overview

7
7
years of professional experience
6
6
years of post-secondary education
5
5
Certificates

Work History

SOAR Specialist

Cyberproof
Noida
06.2023 - Current

Technology/Tools Used: Azure Sentinel, Cortex XSOAR

  • Mentored automation team to surpass goals in alignment with SOAR as a service business standards.
  • Gathered information from prospective customers to identify automation needs.
  • Developed process to create automated playbooks according to the customer Incident Response process.
  • Written custom integrations to connect customer custom security stack with SOAR for automated response.
  • Developed strategic and tactical plans to structure new SOAR initiatives, growing automation share over 50%.
  • Proposed new automations and integrations with SOAR, reducing manual efforts and error impact over 40%.
  • Analyzed and guided the automation team for resolution of issues related to playbooks and Integration in SOAR.

SOAR Engineer

Securonix Limited
Pune
03.2022 - 05.2023

Technology/Tools Used: Securonix SOAR and SNYPR

  • Designed and developed playbooks for Securonix SOAR to release as Out of the Box(OOTB) content to customers.
  • Integrated third party security tools with SOAR using APIs.
  • Presented the demo of the Securonix SOAR for achievement of autonomous SOC to the prospective customers.
  • Gather the requirements and prepare a plan to work on the custom automation requirements from customers.
  • Worked closely to debug the integration issues with the required teams.
  • Written manual python scripts to be used in the various playbook steps.

Senior Associate Consultant

Infosys Limited
Chandigarh
09.2020 - 03.2022

Technology/Tools Used: Cortex XSOAR, FortiSOAR

  • Designed and implemented new playbooks to automate the incident response process using the SOAR platform.
  • Integrated SIEM with SOAR to fetch the alerts/events generated by SIEM.
  • Integrated the client security stack with SOAR platform using the available integrations.
  • Developed custom integrations for SOAR according to the customer requirements.
  • Debugged the playbook and integration issues.
  • Created dashboards and reports in SOAR.
  • Developed manual python scripts in SOAR to be used in the various playbook steps.
  • Handle the administration activities like user provisioning, health checks of SOAR platform.
  • Debug the platform issues and involve the SOAR support whenever required.

Senior Engineer

Thoughtfocus
Gurugram
08.2018 - 07.2020

Technology/Tools Used: Splunk SOAR

  • Defined SOC problems, collected data, established facts and drew conclusions to justify the automation need.
  • Developed new playbooks to automate incident response process for the alerts in SOAR Platform.
  • Developed a tool SOAR Querier to generate a detailed report of the incidents handled by providing options for daily/weekly/monthly report
  • Applied big data techniques to get the details of already blocked malicious URLs on proxies while analyzing the alerts.
  • Debug issues with playbooks and integrations.
  • Created automation scripts in Bash,Powershell and C# to automate the simulation for testing the effectiveness of the rules defined in Splunk SIEM.
  • Test the automation scripts in the virtual environment using Verodin for creation of test incidents.

Assistant System Engineer

TATA Consultancy Services(TCS)
Gurugram
11.2016 - 08.2018

INCIDENT RESPONSE

  • Analyzed and respond to daily security incidents and alerts generated by emails and other security tools (FireEye Email, FireEye Web, Wildfire, Elevated account lockout, Cylance and Carbon Black)
  • Analyzed security incidents and presented a weekly report to the higher management
  • Provided detailed analysis of the incidents that targeted the higher management
  • Work closely with relevant teams to ensure the highest possible level of service is provided with in Security compliance, incident response and remediation

MALWARE ANALYSIS

  • Did malware analysis of a malicious file caught during incidents using Lastline and FireEye MAS.
  • Tracked the traces of malware into the network using Carbon Black.
  • Blocked the malware hash on the network using Cylance
  • Create a watchlist for the malware hash on the network using Carbon Black

Education

Master of Engineering - Information Security

Thapar University
Patiala, Punjab
08.2014 - 07.2016

Bachelor of Technology - Computer Science And Engineering

JMIT
Radaur
08.2009 - 07.2013

Skills

    Cortex XSOAR

undefined

Certification

Certified Information System Security Professional(CISSP)

Timeline

SOAR Specialist

Cyberproof
06.2023 - Current

SOAR Engineer

Securonix Limited
03.2022 - 05.2023

Senior Associate Consultant

Infosys Limited
09.2020 - 03.2022

Senior Engineer

Thoughtfocus
08.2018 - 07.2020

Assistant System Engineer

TATA Consultancy Services(TCS)
11.2016 - 08.2018

Master of Engineering - Information Security

Thapar University
08.2014 - 07.2016

Bachelor of Technology - Computer Science And Engineering

JMIT
08.2009 - 07.2013
MANISH KUMARSOAR Specialist