Summary
Overview
Work History
Education
Skills
Affiliations
Accomplishments
Certification
Languages
Timeline
Generic

Parth Joshi

Mumbai

Summary

At Eviden - Client Nomura Holdings, I spearheaded a team of 20, driving operations and enhancing security protocols. My expertise in EDR solutions and insider threat identification via Exabeam showcases my blend of technical acumen and leadership. Achievements include significant process improvements and a proactive stance on incident management, underscoring my ability to lead and innovate in high-stakes environments.

Overview

8
8
years of professional experience
1
1
Certification

Work History

Senior Expert Analyst

Eviden - Client Nomura Holdings
Mumbai
01.2021 - Current
  • Leading a team of 20 people, as well as leading operations and other tasks.
  • Hands on Experience in handling EDR Solution CrowdStrike Proactively investigating security events to identify artifacts of a cyber-attack.
  • User behavior analytics monitoring using Exabeam to identify insider threats.
  • Involved in use case evaluation, deployment, tuning, and modifications.
  • Responsible for ensuring compliance to SLA, process adherence and process improvisation to achieve operational objectives.
  • Monitoring, investigating, and kicking off the incident management process for all the alerts that were sent to the SOC Team, and evaluating all the rules being triggered in the environment.
  • Hands on Experience in monitoring through ProofPoint Threat Explorer and determining the Suspicious Emails received over the Organization and initiating Incident investigation and taking remediations for handling Phishing related Alerts
    triggered over the environment.
  • Develop, implement, and execute standard operating procedures for different processes, SIEM administration and incident management.
  • Engaged in carrying out a tabletop exercise for the team and building scenarios for the exercise.

Security Analyst

Secureview System Private Limited
Mumbai
10.2018 - 12.2020
  • Worked with multiple customers in MSSP SOC as well as captive SOC.
  • SIEM monitoring.
  • Issue resolution with end user following Incident response process and with various teams.
  • Investigate the issue share the inputs and escalate to L2 analyst if issue found
    critical.
  • Proactively searching for suspicious activities, running offline searches.
  • Malware file analysis.
  • Creating / reviewing reports on weekly, monthly, quarterly basis.
  • Creating SOP, playbooks, use case documents.
  • Attending weekly monitoring calls and sharing operational and administration status.
  • Share knowledge base to team by conducting sessions and sharing technical
    documents.
  • Track and update incidents and requests based on client’s updates and analysis
    results.
  • Creating & updating knowledge base & other documents for future references,
    conducting sessions within team for knowledge & information transferCreating
    trouble ticket, giving regular follow-ups.
  • Interaction with other technical and incident management teams.
  • Monitoring suspicious user activity such as escalation privileges of PIM account,
    ,bypassing PIM, Login from unauthorized source Country using SIEM and if required gathering evidences using Video on demand feature of PIM tool.
  • Researching the suspicious activities in the network, finding the origin of attack,
    deciding the threat level, and isolating if needed with crowdstrike EDR.

Dekstop Engineer

Kalyani Infomix Private Limited
Mumbai
06.2017 - 09.2018
  • Working on ticket (SD tickets) using Symphony ticketing tool.
  • Resolving tickets under SLA’s.
  • Identifying issue in system related to Server, Network, Lan level etc. Installation of various types of software and applications (McAfee, MS Office, Adobe). Updating the AV for non-compliance system.
  • Installation of various types of software’s and application’s.( McAfee, MS Office, Adobe)
  • Updating the AV for non Compliance System. Troubleshooting of hardware and software issues.
  • Troubleshooting of hardware and software issues. Working experience with thin clients from HP and Dell models. Working experience with the Citrix application.
  • Working experience with the Citrix application.
  • Handling incident calls and having knowledge of SLA priority P1, P2, P3, and P4.
  • Resolving tickets under TAT with proper updates and resolutions.

Education

Commerce

St. Peters English High School
Mumbai
04-2016

Skills

  • Process enhancement
  • Multiple priorities management
  • Team collaboration and leadership
  • Issue identification
  • Documentation and reporting
  • Incident reporting
  • Process improvements

Affiliations

  • Playng Cricket / Snooker
  • Driving
  • Trekking
  • Cooking

Accomplishments

  • Based on performance, I have been awarded certificate of appreciation from clients.
  • I have been promoted as a service lead basis recommendation from my client.

Certification

  • Completed Certified Hardware and Network Engineering (MNA) course from Jetking, Borivali, Mumbai (2016-17).
  • Completed Certified Ethical Hacking (CEH) Course from Pristine info solution, Marol Mumbai (2018).
  • Attended training on Phishing email analysis.
  • Attended training on User Entity Behavior and Analytics (UEBA).
  • Attended training on Incident Response.

Languages

Gujarati
First Language
English
Elementary (A2)
A2
Hindi
Elementary (A2)
A2
Marathi
Beginner (A1)
A1

Timeline

Senior Expert Analyst

Eviden - Client Nomura Holdings
01.2021 - Current

Security Analyst

Secureview System Private Limited
10.2018 - 12.2020

Dekstop Engineer

Kalyani Infomix Private Limited
06.2017 - 09.2018

Commerce

St. Peters English High School
Parth Joshi