To be associated with progressive organization that gives me scope to apply my educational and professional skills and provides me with advancement opportunity and knowledge empowerment.
Overview
5
5
years of professional experience
2
2
Certifications
3
3
Languages
Work History
Senior Associate - Tech Support
TECH MAHINDRA LIMITED
05.2022 - 06.2024
Working as team member within team of Cloud Engineers, Developers, DBA, Operation, Delivery Head and Service operation
Participate in the Incident Response (IR) process and support when analysis confirms actionable incidents
Creating processes to avoid MI threats and outages
Escalating Major Incidents, Engaging appropriate technical bridges, Sending out MI updates and documenting proper resolution
Monitoring, Configuring and reporting alerts such Splunk, Channels, Hansen, Elk, API - Gateway, AWS (PROD EC2 & RDS)
Continuously monitor security alerts and events from tools such as Cisco AMP, Splunk, Duo, CASB, CrowdStrike, and ExtraHop
Experienced in handling internal projects concurrently and make sure about the completion of work within the defined scope
Perform initial triage to assess the severity and impact of security incidents
Incident Response: Respond promptly to security incidents following predefined procedures
Led the response and resolution of security incidents by analyzing alerts, containing threats, and conducting root-cause analysis
Coordinated with legal, compliance, IT teams, and third-party vendors to ensure timely and effective incident response
Log Analysis: Analyze logs and alerts from systems and devices to identify potential security threats
Endpoint Security: Use Cisco AMP and CrowdStrike to monitor and protect endpoints from malware and other threats
Produced detailed incident reports, providing actionable insights to senior leadership and relevant stakeholders
Participated in post-incident reviews to identify weaknesses in security controls and recommended improvements
Conducted threat hunting and proactively monitored emerging security threats and vulnerabilities from threat intelligence feeds
Developed and refined incident response playbooks and Standard Operating Procedures (SOPs)
Delivered training and awareness sessions on security-related topics to SOC team members and other departments
Ensured compliance with regulatory standards by aligning incident response processes with legal and compliance requirements
Generating automated report for Delivery Head and management team
Develop operational and executive reports, alerts, visualizations, and optimize searches to support SOC operations
Analyzed security events using SIEM tools to identify potential threats and vulnerabilities
Collaborated with cross-functional teams to investigate and resolve security incidents
Monitored network and system activity for signs of compromise and escalated high-priority incidents to senior analysts
Assisted in the development and optimization of security detection rules and automated response processes
Supported compliance audits and ensured all security controls met regulatory standards
Perform proactive monitoring and response of known and emerging threats against the network
Be responsible for the Incident Response mechanism of the SOC team
Monitoring application dashboards such as site scope, Graffana, salcus, cloud watch, Splunk and ELK dashboards
Analyze backend originators and error code of Splunk errors and engage the appropriate support team
Being part of Change activities, Release and Migration activities also performing crucial monitoring and analysis during technical downtimes
Creating daily SLA, Incident and productivity tracking reports
Work cross-organization to integrate and operate all monitor and logging
Participation in the evaluation of new technologies (HW and software) in respect to SOC
Conduct proactive threat hunting activities using tools like Splunk, CrowdStrike, and ExtraHop
Analyze threat intelligence to identify and mitigate potential risks
Endpoint and Network Security
Utilize Cisco AMP and CrowdStrike for advanced endpoint protection and threat analysis
Monitor and analyze network traffic using ExtraHop to detect anomalies and potential intrusions
Log Management and SIEM Optimization
Perform detailed log analysis and event correlation using Splunk
Strong knowledge of MS Office tools such excel, powerpoint etc
Using excel formulations such as V lookup's, pivot tables, Average etc to create incident reports such as Breach and complaint incidents, productivity calculators, Change previews, Active and closed SLA reports etc
Incident analysis, response, remediation, Classification and prioritization of incidents
Training new analysts and supporting in monitoring in order to maintain all systems under threshold
Manage all Security Incidents on a day-to-day basis.
ASSOCIATE - Tech Support
WNS GLOBAL SERVICES PVT LTD
04.2021 - 05.2022
Assist customers in the installation and integration service to the current environment
Track and monitor support cases to ensure timely resolution and follow-up
Identify, document, and find solutions for customer issues and product problems
Escalate critical customer situations to the appropriate level of management and engineering expertise
Solving critical issues for windows server, Active directory, Office 365, SQL database, Mongo Db
Contribute to documentation and knowledge-base article library Answers, evaluates, and prioritizes service requests received via help desk, telephone and in-person from users across the Enterprise
Ensure timely resolution of user issues by assigning an appropriate priority and resolution
Performs diagnostics to collect information to determine source of error
Resolves printing issues and network connectivity issue
Troubleshoots Mac hardware and software issues and identifies and resolves hardware and software application problem
Contacts software and hardware vendors via voice or online systems to research issues and determine and implement recommended solution
Analyses and corrects issues using documented procedures and available tools as well as personal knowledge and skills and recommended solution
Technical Support Analyst (Charles Schwab Bank)
Mphasis limited
11.2019 - 11.2020
Interacting with clients/users and assisting them with various application issues
Serve as front line contact for user by technical support over call, chat & web submission
Troubleshooting on various banking operations applications such as Street-smart Edge, Thompson one, Schwab Mobile
Attaining daily, weekly and monthly targets specified by the process
Regular attendee of cybersecurity conferences such as DEFCON and Black Hat.
Actively participating in ongoing training and certifications to stay up-to-date with the latest cyber threats and security trends.
Personal Information
Place of Birth: Pune
Date of Birth: 10/11/01
Gender: Male
Nationality: Indian
Marital Status: Unmarried
Disclaimer
I hereby declare that each and every information depicted in the above document is true and correct into the best of my knowledge, and can be supported by documentary evidence whenever required, further I have never been convicted by any court of law, and have no such proceedings pending.