To attain a challenging and responsible position in the field of Information Technology with opportunities to grow by performing my duties to the best of my abilities. To be a part of a highly professional and competitive team dedicated to the implementation, operation, and maintenance of mission-critical infrastructure.
· Monitoring the customer network using SIEM tools: IBM QRadar, Microfocus ArcSight, Splunk.
· Work closely with business units to ensure that they know what and how to feed data into QRadar and to create network hierarchy, classify Log Sources within the QRadar SIEM.
· Performing Real-Time Monitoring, Investigation, Analysis, Reporting and Escalations of Security Events from Multiple log sources.
· Maintain keen understanding of evolving internet threats to ensure the security of client networks.
· Escalating the security incidents based on the client's SLA and providing meaningful information related to security incidents by doing in-depth analysis of event payload, providing recommendations regarding security incidents mitigation which in turn makes the customer business safe and secure
· Contacting the customers directly in case of high priority incidents and helping the customer in the process of mitigating the attacks.
· Co-ordinate extensively with networking teams to maintain and establish communication to remote QRadar Collectors/Processors.
· Troubleshooting SIEM dashboard issues when there are no reports getting generated or no data available.
· Determine the scope of security incident and its potential impact to Client network; recommend steps to handle the security incident with all information and supporting evidence of security events.
English, Telugu
Reading Books, Sports and Physical Activities, Travelling.