Summary
Overview
Work History
Education
Skills
Certification
Languages
Timeline
Generic

N. Kishore Kumar Reddy

Bengaluru

Summary

With nearly 6.9+ years of experience, including 4+ years as a SOC Analyst specializing in information security, I have developed a strong proficiency in analyzing complex systems, identifying vulnerabilities, and implementing robust security measures to combat cyber threats. Seeking a challenging cybersecurity role to leverage my skills and experience for making a significant impact. Eager to contribute to a dynamic team environment and enhance my incident detection, analysis, and resolution abilities. Dedicated Technical Consultant adept at cultivating long-term partnerships with lucrative clients. Knowledgeable in server hardware and components configurations. Successful career history comprising more than [Number] years.

Overview

8
8
years of professional experience
1
1
Certification

Work History

Technical Consultant

Ernst & Young
08.2023 - Current
  • Extensive experience of supporting and configuring Endpoint detection and response (EDR) tools. Extensive experience of supporting and configuring Security information and event management (SIEM) tools.
  • Implementation of next-generation Intrusion Prevention solutions based on Palo Alto technologies Extensive experience of supporting and configuring Endpoint detection and response (EDR) tools.
  • Proficient in network security protocols and technologies, including firewalls, intrusion detection/prevention systems (IDS/IPS), VPNs, and SIEM solutions.
  • Extensive experience in conducting security assessments, vulnerability scanning, and penetration testing.
  • Deep understanding of cryptographic protocols and encryption algorithms.
  • Skilled in incident response and digital forensics, including evidence gathering, analysis, and reporting.
  • Monitor network traffic for suspicious activities and investigate security incidents to determine the root cause and implement appropriate remediation actions.
  • Collaborate with cross-functional teams to design and deploy secure IT solutions and infrastructure.
  • Familiarity with cloud security principles and architectures (AWS, Azure, Google Cloud).
  • Familiarity with cloud security principles and architectures (AWS, Azure, Google Cloud). Monitored and analysed security events using SIEM tools to identify potential threats and vulnerabilities.
  • Conducted regular security assessments and penetration tests to evaluate the effectiveness of existing security measures.
  • Monitored security logs and alerts to detect and investigate potential security breaches. Conduct regular vulnerability assessments and penetration tests to identify and mitigate potential security risks.
  • Working on AWS Guard Duty Incidents
  • Working on Crowdstrike EDR Alerts
  • Working on EXtrahop Alerts for
  • Continuous failed connection through RDP to servers
  • Worked on Active Directory
  • Working on DNS Txt Alerts
  • Working on CertStram Alerts , consisting of blocking malicious domains
  • Working on MFA(Multi Factor Authentication) and Account Take Over (ATO) Incidents
  • Working on Credential Stuffing
  • Working on ProofPoint for Phishing, SPAM emails

Tools: Crowdstrike, Splunk, Devo, DivvyCloud, Palo Allto, Cortex SOAR, Proofpoint Trap,

ProofPoint TAP, ProofPoint MTA, BlueCat, Airwatch, JamF, JoeSandbox, Active Directory,Office 365,Service Now

Customer Service Representative

IBM India Pvt Ltd
12.2020 - 04.2023
  • Analyzed network traffic and system logs to detect malicious activities.
  • Investigated and resolved incidents of unauthorized access to sensitive information.
  • Educated and trained users on information security policies and procedures.
  • Hands-on experience on QRadar Integration from all Towers ( Windows and Linux and Network devices).
  • Manage day-to-day operations of QRadar system, including patching, tuning, and monitoring.
  • Creating and fine-tuning correlation rules, alerts, and use cases within the SIEM to detect and respond to security incidents effectively.
  • Developed automated reports to facilitate better insights into EPS (Events Per Second) and error log data from diverse source devices. Additionally, generated reports to identify the top contributing logs to the SIEM and the most frequent offenses detected.
  • To collect, normalize, and aggregate log source data from various sources, such as firewalls, IDS/IPS, endpoints, servers, applications, etc., into the SIEM platform.

SOC Consultant

SONYO MANAGEMENT CONSULTANTS PVT LTD
12.2019 - 05.2020
  • Working on Arc Sight SIEM Tool for Providing the SOC (Security Operation Centre) Operations.
  • Monitor real-time security events on Arc sight console and Event Analysis and Investigating.
  • Working on incidents, reviewing the alerts, and doing a detailed analysis of alerts.
  • Investigate incidents using Active Channels/Dashboards/Events/Graphs/Annotations and reports.
  • Regular health checks monitoring, log analysis, and reporting.
  • Creating and submitting daily, weekly, and monthly reports without errors using query viewers.
  • Providing 24*7 support and coordinating with required team to resolve the issues.

Transaction Analyst

CONDUENT BUSINESS SERVICES INDIA LLP
08.2016 - 06.2019
  • Researched billing and invoice problems and resolved issues in compliance with established standards.
  • Analyzed trends and monitored customer behaviors to serve as predictors for future marketplace actions.
  • Identified system errors and applied established company policies and procedures to resolve issues.
  • Invoiced customers for purchases of goods and services to adhere to accounting standards and generate revenues.

Education

X -

Z.P.High School

XII -

Sri Chaitanya Junior College

Bachelor of Computer Applications -

Rabindranath Tagore University

Skills

  • Qradar SIEM
  • Arc sight
  • DEVO SIEM
  • Splunk SIEM
  • MS SENTINEL SIEM
  • Cortex XSOAR
  • Proofpoint TRAP,TAP,MTA
  • Crowdstrike EDR
  • Palo Alto Firewall

Certification

  • Certified in IBM Qradar Level 100 and 200
  • Certified in Think Like Hacker
  • MITRE ATT&CK Defender (MAD) ATT&CK Cyber Threat Intelligence Certification Training.
  • Splunk Fundamentals

Languages

English
Bilingual or Proficient (C2)
Telugu
Bilingual or Proficient (C2)
Hindi
Intermediate (B1)

Timeline

Technical Consultant

Ernst & Young
08.2023 - Current

Customer Service Representative

IBM India Pvt Ltd
12.2020 - 04.2023

SOC Consultant

SONYO MANAGEMENT CONSULTANTS PVT LTD
12.2019 - 05.2020

Transaction Analyst

CONDUENT BUSINESS SERVICES INDIA LLP
08.2016 - 06.2019

XII -

Sri Chaitanya Junior College

X -

Z.P.High School

Bachelor of Computer Applications -

Rabindranath Tagore University
N. Kishore Kumar Reddy