Summary
Overview
Work History
Education
Skills
Websites
Certification
Languages
Tools
Timeline
Generic

Nandigama Vishnu Chaitanya

Hyderabad

Summary

Dynamic IT Security professional with extensive experience at Deloitte USI, excelling in incident response and security operations. Proven track record in optimizing alert systems, reducing false positives, and enhancing security posture through effective SOP development. Skilled in threat analysis and adept at guiding teams, ensuring robust incident management and resolution.

Overview

8
8
years of professional experience
1
1
Certification

Work History

Solution Delivery Lead

Deloitte USI
Hyderabad
03.2024 - Current
  • Assessed security events to identify intrusions and malicious activities across various devices, endpoints, applications, and networks.
  • Take ownership of escalated incidents, ensuring timely and effective resolution.
  • Conduct thorough investigations to identify the root cause of incidents, documenting findings, and recommendations.
  • Provide guidance and support to T1/T2 analysts during incident investigations, sharing best practices, and methodologies.
  • Review security alerts handled by shift analysts, and provide improvement recommendations.
  • Conducted in-depth assessments of alert triggers to identify opportunities for tuning and optimization, effectively reducing the occurrence of false-positive alerts.
  • Continuously monitored the performance of alerts post-tuning, to evaluate the effectiveness of adjustments, and ensure ongoing improvement.
  • Design and implement new rules to address specific use cases.
  • Test and validate new rules for accuracy and effectiveness.
  • Developed and instituted SOPs to improve security operations.
  • Reviewed and updated SOPs for alignment with evolving security measures.
  • Generate and review weekly and monthly SIEM reports, highlighting attack vectors and trends.

Security Analyst

NTT Managed Services
Hyderabad
03.2021 - 03.2024
  • Utilize SIEM, EDR, and other security tools to identify anomalous activities that could indicate cybersecurity incidents.
  • Follow Standard Operating Procedures (SOPs) to investigate alerts and suspicious activities based on predefined threat scenarios.
  • Correlate and analyze network and host-based security logs to determine appropriate actions and escalation procedures.
  • Analyze phishing and spam emails, verify email headers, and investigate suspicious messages using Proofpoint and O365.
  • Handling user risky alerts and user sign in alerts using Azure AD.
  • Conduct weekly threat analyses to identify false positives, and fine-tune detection rules.
  • Manage and configure SIEM rules to ensure accurate threat detection.
  • Periodically update and review SOPs to enhance security operations.
  • Create and manage Antivirus (AV) and Endpoint Detection and Response (EDR) exclusions as per client requirements.
  • Conduct vulnerability scanning on an ad hoc basis.

IT Security Analyst

Yash Technologies
Hyderabad
07.2019 - 03.2021
  • Engaged in configuring the SOC with Firewalls and network devices.
  • Identified unusual network traffic by observing proxy activity.
  • Performed daily checks on antivirus logs to detect any suspicious activity not remediated.
  • Created and analyzed threat cases in Sophos EDR based on recent cyber-attacks IOC's.
  • Conduct periodic vulnerability assessments on critical servers.
  • Presents results along with proposed recommendations.

Associate Information Security

Convergys India Pvt.Ltd
Hyderabad
08.2017 - 04.2019
  • Continuously monitor security alerts and notifications from various security tools and systems to identify potential security incidents.
  • Perform initial triage of security incidents, assessing the severity and potential impact, and determining the appropriate response actions.
  • Escalate identified security incidents to Level 2 (L2) analysts or incident response teams when further investigation or action is required.
  • Executed routine health assessments of security monitoring tools, ensuring optimal functionality.
  • Assist in generating reports on security incidents, trends, and metrics to provide insights into the organization's security posture.

Education

BTECH - Electronics&Communication Engineering

Gurunanak Institution Technical Campus - Jawaharlal Nehru Technological University Hyderabad
Hyderabad
05.2016

Skills

  • Incident response
  • Security operations
  • Email security
  • Log analysis
  • Incident investigation
  • Threat hunting
  • Use case creation
  • Security monitoring
  • SOP development
  • Threat analysis
  • Incident management
  • Root cause analysis
  • Vulnerability assessment
  • Standard operating procedures

Certification

  • SC-200: Microsoft Security Operations Analyst
  • SC-900: Microsoft Security, Compliance, and Identity Fundamentals
  • Certified Ethical Hacker (CEH)

Languages

  • English, Full Professional Proficiency
  • Telugu, Native or Bilingual Proficiency
  • Hindi, Bilingual Proficiency

Tools

SIEM: QRadar

EDR: CrowdStrike Falcon, Carbon Black, Microsoft Defender  

Email gateway: Proofpoint, O365, IronPort  

Ticketing tool: ServiceNow, Jira

Web Gateway: Cisco Umbrella (OpenDNS), Zscaler

Vulnerability scanner: Nessus Security Center (Tenable)

Anti-Virus: Symantec Endpoint Protection Manager

Timeline

Solution Delivery Lead

Deloitte USI
03.2024 - Current

Security Analyst

NTT Managed Services
03.2021 - 03.2024

IT Security Analyst

Yash Technologies
07.2019 - 03.2021

Associate Information Security

Convergys India Pvt.Ltd
08.2017 - 04.2019

BTECH - Electronics&Communication Engineering

Gurunanak Institution Technical Campus - Jawaharlal Nehru Technological University Hyderabad
Nandigama Vishnu Chaitanya