At Eviden - Client Nomura Holdings, I spearheaded a team of 20, driving operations and enhancing security protocols. My expertise in EDR solutions and insider threat identification via Exabeam showcases my blend of technical acumen and leadership. Achievements include significant process improvements and a proactive stance on incident management, underscoring my ability to lead and innovate in high-stakes environments.
Overview
8
8
years of professional experience
1
1
Certification
Work History
Senior Expert Analyst
Eviden - Client Nomura Holdings
Mumbai
01.2021 - Current
Leading a team of 20 people, as well as leading operations and other tasks.
Hands on Experience in handling EDR Solution CrowdStrike Proactively investigating security events to identify artifacts of a cyber-attack.
User behavior analytics monitoring using Exabeam to identify insider threats.
Involved in use case evaluation, deployment, tuning, and modifications.
Responsible for ensuring compliance to SLA, process adherence and process improvisation to achieve operational objectives.
Monitoring, investigating, and kicking off the incident management process for all the alerts that were sent to the SOC Team, and evaluating all the rules being triggered in the environment.
Hands on Experience in monitoring through ProofPoint Threat Explorer and determining the Suspicious Emails received over the Organization and initiating Incident investigation and taking remediations for handling Phishing related Alerts
triggered over the environment.
Develop, implement, and execute standard operating procedures for different processes, SIEM administration and incident management.
Engaged in carrying out a tabletop exercise for the team and building scenarios for the exercise.
Security Analyst
Secureview System Private Limited
Mumbai
10.2018 - 12.2020
Worked with multiple customers in MSSP SOC as well as captive SOC.
SIEM monitoring.
Issue resolution with end user following Incident response process and with various teams.
Investigate the issue share the inputs and escalate to L2 analyst if issue found
critical.
Proactively searching for suspicious activities, running offline searches.
Malware file analysis.
Creating / reviewing reports on weekly, monthly, quarterly basis.
Creating SOP, playbooks, use case documents.
Attending weekly monitoring calls and sharing operational and administration status.
Share knowledge base to team by conducting sessions and sharing technical
documents.
Track and update incidents and requests based on client’s updates and analysis
results.
Creating & updating knowledge base & other documents for future references,
conducting sessions within team for knowledge & information transferCreating
trouble ticket, giving regular follow-ups.
Interaction with other technical and incident management teams.
Monitoring suspicious user activity such as escalation privileges of PIM account,
,bypassing PIM, Login from unauthorized source Country using SIEM and if required gathering evidences using Video on demand feature of PIM tool.
Researching the suspicious activities in the network, finding the origin of attack,
deciding the threat level, and isolating if needed with crowdstrike EDR.
Dekstop Engineer
Kalyani Infomix Private Limited
Mumbai
06.2017 - 09.2018
Working on ticket (SD tickets) using Symphony ticketing tool.
Resolving tickets under SLA’s.
Identifying issue in system related to Server, Network, Lan level etc. Installation of various types of software and applications (McAfee, MS Office, Adobe). Updating the AV for non-compliance system.
Installation of various types of software’s and application’s.( McAfee, MS Office, Adobe)
Updating the AV for non Compliance System. Troubleshooting of hardware and software issues.
Troubleshooting of hardware and software issues. Working experience with thin clients from HP and Dell models. Working experience with the Citrix application.
Working experience with the Citrix application.
Handling incident calls and having knowledge of SLA priority P1, P2, P3, and P4.
Resolving tickets under TAT with proper updates and resolutions.
Education
Commerce
St. Peters English High School
Mumbai
04-2016
Skills
Process enhancement
Multiple priorities management
Team collaboration and leadership
Issue identification
Documentation and reporting
Incident reporting
Process improvements
Affiliations
Playng Cricket / Snooker
Driving
Trekking
Cooking
Accomplishments
Based on performance, I have been awarded certificate of appreciation from clients.
I have been promoted as a service lead basis recommendation from my client.
Certification
Completed Certified Hardware and Network Engineering (MNA) course from Jetking, Borivali, Mumbai (2016-17).
Completed Certified Ethical Hacking (CEH) Course from Pristine info solution, Marol Mumbai (2018).
Attended training on Phishing email analysis.
Attended training on User Entity Behavior and Analytics (UEBA).
Attended training on Incident Response.
Languages
Gujarati
First Language
English
Elementary (A2)
A2
Hindi
Elementary (A2)
A2
Marathi
Beginner (A1)
A1
Timeline
Senior Expert Analyst
Eviden - Client Nomura Holdings
01.2021 - Current
Security Analyst
Secureview System Private Limited
10.2018 - 12.2020
Dekstop Engineer
Kalyani Infomix Private Limited
06.2017 - 09.2018
Commerce
St. Peters English High School
Similar Profiles
Jayesh SutharJayesh Suthar
Financial Analyst at Coforge Solutions Pvt Ltd, Client - Nomura Services India Pvt LtdFinancial Analyst at Coforge Solutions Pvt Ltd, Client - Nomura Services India Pvt Ltd