
System Engineer at Druva Data Solutions with 7 years of experience in administration, system management, IT infrastructure, and cloud technologies. Expertise in server management, troubleshooting, access control, and performance monitoring, ensuring stable and secure IT operations. Currently expanding skills in Cybersecurity and SOC operations, with hands-on experience in Splunk and Microsoft Sentinel. Focused on incident detection, triage, and response, aiming to leverage technical expertise in a role that enhances capabilities in SOC and cloud security.
Performed server administration tasks, including OS patch upgrades and service health monitoring.
Configured VMware environments; resolved issues across Windows Server versions 2008 to 2019.
Administered DNS, DHCP, IP scopes; troubleshot network connectivity issues effectively.
Managed Palo Alto firewall policies to control access to websites and applications.
Maintained Trend Micro security systems for endpoint protection and threat detection.
Provided VPN management with Accops Hysecure, ensuring secure remote access.
Conducted security audits, escalating complex issues through detailed incident reports.
Installed and configured Windows systems for end-users, ensuring smooth deployment.
SIEM & Monitoring
- Splunk (SPL queries, dashboards, alerts)
- Microsoft Sentinel (KQL queries, analytics rules, playbooks)
- Log monitoring, correlation, and analysis
- Incident detection, triage, and escalation
Security Operations
- Threat analysis & basic threat hunting
- Incident response planning & support
- MITRE ATT&CK framework application
- Vulnerability assessment & remediation strategies
- Security auditing & compliance checks
- Malware analysis & endpoint protection (Trend Micro, CrowdStrike, McAfee)
- Encryption techniques & operating system security
Network & Infrastructure Security
- TCP/IP networking fundamentals
- VPN, LAN/WAN configuration & troubleshooting
- VLAN setup & monitoring
- Palo Alto firewall policy management
- Network monitoring & traffic analysis (Wireshark, Nmap)
Cloud & Virtualization Security
- AWS, GCP, and Azure cloud security administration
- Azure Active Directory & identity management
- Cloud infrastructure monitoring & policy enforcement
- VMware workstation configuration & security hardening
Tools & Automation
- PowerShell & Bash scripting for security automation
- Patch management & endpoint protection
- Security information systems & log analysis
Professional Competencies
- Incident documentation & reporting
- Cross-functional collaboration with IT/network teams
- Technical documentation & troubleshooting methodologies
- Strong problem-solving & time management skills