Summary
Overview
Work History
Education
Skills
Languages
Certification
Websites
Accomplishments
Timeline
Generic

Saibal Das

Kolkata

Summary

Results-driven Cyber Security Team Lead with over 9 years of experience, specializing in SIEM engineering, security operations, and threat detection. Proven expertise in leading cross-functional teams, managing end-to-end SIEM infrastructure, and building effective security monitoring strategies across cloud and on-premise environments. Adept at architecting scalable SIEM solutions, developing advanced correlation rules, and aligning detection capabilities with business risk and compliance needs. Strong communicator with a track record of driving continuous improvement, reducing incident response times, and fostering collaboration between SOC, IT, and compliance teams.

Overview

10
10
years of professional experience
1
1
Certification

Work History

Security Delivery Team Lead

Accenture Solutions Pvt Ltd
Kolkata
02.2022 - Current
  • Managed multiple clients as a Splunk Admin, handling data onboarding, environment setup, and performance optimization.
  • Led a team of cybersecurity analysts and engineers responsible for SIEM operations, monitoring, and incident response.
  • Oversaw the end-to-end lifecycle of security incidents, ensuring timely detection, investigation, and remediation.
  • Developed team schedules, KPIs, and training plans to ensure continuous improvement and knowledge growth.
  • Acted as the primary point of contact between the security operations team and upper management for reporting and strategy alignment.
  • Mentored junior analysts and SIEM engineers for Splunk, improving incident triage accuracy, and reducing mean time to respond (MTTR).
  • Designed and implemented log ingestion pipelines, parsers, correlation rules, dashboards, and custom alerts.
  • Integrated new log sources (e.g., firewalls, EDR, cloud platforms, databases) with Splunk to enhance visibility across hybrid environments.
  • Conducted tuning of correlation rules and alerts to reduce false positives, and improve threat detection accuracy.
  • Managed real-time security monitoring and incident handling processes, ensuring adherence to SLAs.
  • Collaborated with SOC analysts and threat hunters to enhance detection capabilities and develop threat use cases.
  • Participated in threat modeling and risk assessments to improve SIEM (Splunk Enterprise, Azure Sentinel) coverage for critical assets.
  • Supported compliance and audit requirements (e.g., NIST, SOC 2, GDPR) through effective logging and monitoring controls.
  • Delivered security awareness training and SIEM onboarding workshops for technical and non-technical stakeholders.
  • Conducted post-incident reviews and implemented lessons learned into updated detection and response strategies.
  • Authored more than 25 critical SOPs and client-specific runbooks, and performed more than 75 incident QA reviews monthly to enhance service quality and consistency.
  • Participated in 10 or more client calls per month as a Technical Lead, gathering requirements, and recommending optimizations for more than 30 existing use cases.
  • Published an automation solution on Accenture’s global innovation portal, improving daily health checks, and reducing manual effort by 40%.
  • Successfully transitioned more than four greenfield projects, receiving client recognition for operational efficiency, and proactive issue resolution.

IT Analyst

TATA Consultancy Services Pvt Ltd
Kolkata
08.2015 - 02.2022
  • Build the Splunk architecture in various projects using Splunk clusters, heavy forwarders, universal forwarders, search heads, and Splunk apps.
  • Have experience ingesting data in the Splunk tool from various resources, including tools and files (XML, JSON, CSV, log files, SQL databases, API calls, HEC tokens, and Splunk intermediate, TA Apps).
  • Built 10+ advanced Splunk ES dashboards, and onboarded logs from 30+ Windows/Linux servers using forwarders, TA apps, and API token configurations.
  • Created 50+ custom use cases mapped to the MITRE ATT&CK framework, enhancing the detection of suspicious activities based on log availability and data sources.
  • Monitored over 300 Splunk ES alerts monthly across more than five clients, customizing dashboards, reports, and alerts to streamline incident response as an L2 analyst.
  • Investigated over 200 security incidents monthly, and led 24/7 shift operations, mentoring more than 7 L1 analysts on incident handling and response best practices.
  • Delivered weekly and monthly SOC reports with 100% accuracy, and timely submission to leadership and stakeholders.

Education

Bachelor of Science - Bachelor of Computer Application

Future Institute of Engineering And Management
Kolkata
06-2015

Skills

  • SIEM administration
  • SIEM integration
  • Log ingestion
  • Incident response
  • Security monitoring
  • Client communication
  • Team leadership
  • Technical documentation
  • Communication

Languages

Bengali
First Language
English
Advanced (C1)
C1
Hindi
Intermediate (B1)
B1

Certification

  • Splunk Core Certified Power User

Accomplishments

  • TCS – on-the-spot awards
  • Accenture ACE Award
  • The GEM (Go-That-Extra) Mile Award from the client

Timeline

Security Delivery Team Lead

Accenture Solutions Pvt Ltd
02.2022 - Current

IT Analyst

TATA Consultancy Services Pvt Ltd
08.2015 - 02.2022

Bachelor of Science - Bachelor of Computer Application

Future Institute of Engineering And Management
Saibal Das