I am a Cyber Security Professional with 8 years of experience. Highly focused on Cyber Threat detection and response through implementation of SIEM/SOAR technologies in line with Security frameworks.
Security professional prepared for high-stakes environments, bringing valuable experience in threat detection and mitigation. Known for strong collaboration and results-oriented approach, adept at adapting to evolving security challenges. Proficient in risk assessment and incident response, valued for reliability and flexibility.
Roles and Responsibilities:
•Leading a Team size of 12 members for Insurance Company customer.
•Handling critical, high and escalated incidents by L1&L2 Analysts.
•Performing log analysis and investigating the threats on Multiple SIEM Tools
•Analyzing the Security Alerts and performing Troubleshooting, Incident Analysis & Validation, Incident Remediation Recommendation.
•Analyzing the Phishing emails.
•Performed Peer review of incidents closed by L1&L2 Analysts.
•Working on Threat Advisories and sharing with Customers
•Created SOPs for Multiple Customers
•Initiate 1-1 calls with team members regarding the improvement of incident analysis.
•Training newly hired soc analysts on SOC policies and procedures.
•Creating automated playbooks to reduces manual efforts.
•Reviewing and present weekly reports to client.
•Provided improvement plans to the customer for SOC.
•Exporting reports from Qradar and SOAR as per the requirement.
•Malware Analysis on Multiple Threat Intelligence sites: MX Toolbox, Virus Total, UrlScan, IBM, IP Void, Abuse IP DB
•Working on use case fine tuning to reduce the False Positive alerts.