Summary
Overview
Work History
Education
Skills
Languages
Certification
Timeline
Generic

Raju Kumar

SOC Manager
Noida,UP

Summary

Highly skilled and detail-oriented Security Professional with over 8 years of experience in SPLUNK SIEM, specializing in security information and event management. Proficient in deploying and managing various security solutions including Data Loss Prevention (DLP), Endpoint Detection and Response (EDR), Web Application Firewall (WAF), and advanced log analysis. Adept at utilizing threat intelligence for proactive threat hunting and mitigating potential risks. Demonstrated ability to enhance security posture through continuous monitoring, incident response, and implementation of best practices. Proven track record of safeguarding critical systems and ensuring compliance with industry standards.

Overview

9
9
years of professional experience
2
2
Certifications

Work History

SOC Manger

Grant Thornton Bharat Llp
05.2023 - Current
  • Maintained open lines of communication with stakeholders, providing regular updates on the status of cybersecurity initiatives and incidents..
  • Spearheaded efforts to achieve industry-standard certifications such as ISO 27001 or NIST Cybersecurity Framework compliance.
  • Oversaw daily security operations with a focus on proactive threat identification and mitigation.
  • Splunk Administration: Installation, configuration, and maintenance of Splunk Enterprise and Splunk Cloud.
  • Integration: Expertise in integrating Splunk with various data sources, applications, and security tools.
  • SIEM: Development and optimization of SIEM use cases, correlation searches, and alerts.
  • SOAR Automation

Senior Security Analyst

Tech Mahindra
06.2022 - 05.2023
  • Designed and implemented Splunk SIEM solutions to enhance the security monitoring capabilities of the organization.
  • Integrated various data sources, including firewalls, IDS/IPS, endpoint protection systems, and cloud platforms, into Splunk.
  • Developed and optimized correlation searches, dashboards, and alerts to detect and respond to security incidents effectively.
  • Collaborated with IT and security teams to define and implement use cases tailored to the organization’s security needs.
  • Conducted regular health checks, performance tuning, and upgrades to ensure the stability and efficiency of Splunk deployments.
  • Provided training and support to team members on Splunk best practices and advanced functionalities.
  • Conduct root cause analysis on security incidents and provide recommendations for remediation.
  • Develop and maintain incident response playbooks and procedures.
  • Collaborate with cross-functional teams to ensure comprehensive incident handling and resolution.
  • Participate in threat hunting activities and identify indicators of compromise (IOCs).
  • Perform regular vulnerability assessments and follow up on remediation efforts.

Senior Security Analyst

INSPIRA ENTERPRISE INDIA LTD
10.2021 - 06.2022
  • Managed the installation, configuration, and day-to-day administration of Splunk Enterprise.
  • Integrated Splunk with various third-party tools and internal systems for comprehensive log management and analysis.
  • Created and maintained complex searches, dashboards, and reports for different business units.
  • Automated repetitive tasks and enhanced system performance through custom scripts and configurations.
  • Conducted security assessments and audits to ensure compliance with internal policies and external regulations.
  • Utilized Splunk for real-time monitoring and analysis of security events.
  • Developed and implemented use cases for detecting advanced persistent threats (APTs), malware, and other security incidents.
  • Worked with stakeholders to understand their security requirements and translated them into actionable Splunk configurations.

Senior Analyst

Dhani Loan and Finance Services
07.2021 - 10.2021
  • Enhanced team productivity by streamlining workflow processes and implementing time-saving strategies.
  • Mentored junior analysts, fostering professional development while enhancing overall team performance.
  • Collaborated with cross-functional teams to identify areas of improvement, leading to increased operational effectiveness.
  • Provided expert advice for senior management, contributing to informed decision-making and strategic planning.
  • Assisted in the investigation of security incidents by providing detailed logs and analytics.
  • Participated in security awareness training programs and contributed to improving the overall security culture of the organization

Soc Analyst

Ntt India Pvt Ltd
07.2020 - 07.2021
  • Maintained accurate documentation of all SOC activities, facilitating knowledge sharing across the organization.
  • Reduced false alarms by fine-tuning intrusion detection system configurations based on historical analysis of incidents.
  • Enhanced network security by monitoring systems for potential threats and vulnerabilities.
  • Implemented automated tools for continuous monitoring of system logs, reducing manual efforts by the team.
  • Integration: Expertise in integrating Splunk with various data sources, applications, and security tools.
  • SIEM (Splunk): Development and optimization of SIEM use cases, correlation searches, and alerts.
  • Data Analysis: Advanced skills in data indexing, searching, and visualizati

Security Engineer

Technogrid IT Systems Private Ltd
07.2015 - 04.2020
  • Implemented and managed Splunk for enterprise-wide security monitoring.
  • Developed custom alerts and dashboards in Splunk to enhance threat detection capabilities.
  • Configured and maintained F5 WAF to protect web applications from various threats.
  • Deployed DLP solutions and created policies to safeguard sensitive data.
  • Implemented EDR solutions to monitor and protect endpoints from advanced threats.
  • Conducted regular vulnerability assessments and collaborated with IT teams to remediate identified risks.
  • Proficient in setting up, configuring, and managing Splunk for real-time monitoring.
  • Expertise in creating and customizing dashboards, reports, and alerts.
  • Strong ability to analyze logs and detect anomalies
  • Extensive experience in configuring and managing F5 WAF.
    Skilled in creating and maintaining security policies to protect web applications from common threats such as SQL injection, XSS, and DDoS attacks.
  • Proficient in deploying and managing DLP solutions.
  • Experienced in creating policies to prevent data breaches and unauthorized data exfiltration.
  • Ability to monitor and enforce compliance with regulatory requirements.
  • Expertise in implementing and managing EDR solutions to detect and respond to threats on endpoints.
    Skilled in performing threat hunting and forensic analysis.
    Proficient in creating incident response plans and conducting post-incident analysis.
  • Experienced in conducting regular vulnerability assessments to identify and mitigate security risks.
  • Proficient in using tools such as Nessus, Qualys, and OpenVAS for vulnerability scanning.
  • Skilled in analyzing scan results and prioritizing remediation efforts.

Education

Bachelor of Science - Engineering

Dr. A. P. J. Abdul Kalam Technical University, Luc
Meerut
04.2001 -

Skills

Splunk Administration:

undefined

Languages

English
Advanced (C1)
Hindi
Advanced (C1)

Certification

CEH v10

Timeline

Splunk admin

07-2024

SOC Manger

Grant Thornton Bharat Llp
05.2023 - Current

Senior Security Analyst

Tech Mahindra
06.2022 - 05.2023

Senior Security Analyst

INSPIRA ENTERPRISE INDIA LTD
10.2021 - 06.2022

Senior Analyst

Dhani Loan and Finance Services
07.2021 - 10.2021

Soc Analyst

Ntt India Pvt Ltd
07.2020 - 07.2021

CEH v10

04-2020

Security Engineer

Technogrid IT Systems Private Ltd
07.2015 - 04.2020

Bachelor of Science - Engineering

Dr. A. P. J. Abdul Kalam Technical University, Luc
04.2001 -
Raju KumarSOC Manager