Summary
Overview
Work History
Education
Skills
Certification
Tools
Personal Information
Languages
Hobbies
Timeline
Generic

Sai Krishna Vegivada

Andhra Pradesh

Summary

To attain a challenging and responsible position in the field of Information Technology with opportunities to grow by performing my duties to the best of my abilities. To be a part of a highly professional and competitive team dedicated to the implementation, operation, and maintenance of mission-critical infrastructure.

Overview

5
5
years of professional experience
1
1
Certification

Work History

Cyber Security Engineer/Architect

Honeywell International Inc.
Bangalore
05.2022 - Current
  • A dynamic professional with over 5.2 years of experience in Managed Security Services, Cyber Security Incident Response Team (CIRT), Threat Hunting, Security Operations Centre (SOC), Endpoint security
  • Perform cyber security threat engineering activities with specific focus on countermeasure Tactics, Techniques and Procedures (TTPs)
  • Providing intrusion analysis in response to emerging threats and targeted attacks
  • Analyzing information and alerts across large scale enterprise to identify intrusion and effectively respond to it and eradicate security threats from the environments
  • Supporting the triage of potentially malicious events to determine severity and criticality of the event
  • Utilize digital forensic tools like Microsoft Defender, Azure, Cortex XSOAR, Splunk, Lastline and other cloud analysis tools to execute digital investigation and perform incident response activities to identify indicators of compromise
  • Perform hunting for malicious activities across the network and digital assets
  • Collaborate with technical and threat intelligence analysts to provide indications and warning along with alert tuning and resolution guide
  • Understanding of security alerts that includes malware/phishing, denial of services, unauthorized access, etc
  • Proactively 'hunt' for potential malicious activity and incidents across multiple sources using advanced threat network and host-based tools
  • Creating playbooks for different threat related incidents
  • Experience with industry leading tool including JIRA and ServiceNow
  • Handling operation incidents and providing solutions for them as per the request.

Security Analyst

Tech mahindra
Bangalore
06.2019 - 04.2022

· Monitoring the customer network using SIEM tools: IBM QRadar, Microfocus ArcSight, Splunk.

· Work closely with business units to ensure that they know what and how to feed data into QRadar and to create network hierarchy, classify Log Sources within the QRadar SIEM.

· Performing Real-Time Monitoring, Investigation, Analysis, Reporting and Escalations of Security Events from Multiple log sources.

· Maintain keen understanding of evolving internet threats to ensure the security of client networks.

· Escalating the security incidents based on the client's SLA and providing meaningful information related to security incidents by doing in-depth analysis of event payload, providing recommendations regarding security incidents mitigation which in turn makes the customer business safe and secure

· Contacting the customers directly in case of high priority incidents and helping the customer in the process of mitigating the attacks.

· Co-ordinate extensively with networking teams to maintain and establish communication to remote QRadar Collectors/Processors.

· Troubleshooting SIEM dashboard issues when there are no reports getting generated or no data available.

· Determine the scope of security incident and its potential impact to Client network; recommend steps to handle the security incident with all information and supporting evidence of security events.

  • · Creation of reports and dashboards and rules fine tuning.

Education

BE - EEE

GIET College of Engineering
Rajahmundry
03-2016

Intermediate -

Narayana Junior College
Rajahmundry
03-2012

10th Board -

Sri Talent Vidhya Niketan
03-2010

Skills

  • Managed Security Services
  • Cyber Security Incident Response Team (CIRT)
  • Threat Hunting
  • Security Operations Centre (SOC)
  • Endpoint security
  • Intrusion analysis
  • Digital forensic tools
  • Incident response activities
  • Malware/phishing detection
  • Advanced threat network and host-based tools
  • JIRA, ServiceNow
  • Operation incident handling
  • Databases
  • Microsoft Bit locker Administration and Monitoring (MBAM)
  • Microsoft Advanced Threat Protection - O365 ATP, Azure ATP
  • Communication and interpersonal skills

Certification

  • Microsoft training on O365 ATP, MDATP, Azure ATP.
  • Udemy training on Networking + Wireshark basics.
  • Udemy training on Computer forensics fundamentals.

Tools

  • XSOAR (Palo Alto)
  • Splunk
  • MDATP
  • Confluence
  • SNOW
  • JIRA
  • Malware/ Threat Analysis
  • MDATP Threat Analysis
  • Email Analysis
  • IP Analysis
  • Symantec Antivirus
  • Proxy Analysis
  • MBAM
  • Azure

Personal Information

  • Father's Name: Srinivasa Rao
  • Mother's Name: Vijaya
  • Date of Birth: 02/02/94

Languages

English, Telugu

Hobbies

Reading Books, Sports and Physical Activities, Travelling.

Timeline

Cyber Security Engineer/Architect

Honeywell International Inc.
05.2022 - Current

Security Analyst

Tech mahindra
06.2019 - 04.2022

BE - EEE

GIET College of Engineering

Intermediate -

Narayana Junior College

10th Board -

Sri Talent Vidhya Niketan
  • Microsoft training on O365 ATP, MDATP, Azure ATP.
  • Udemy training on Networking + Wireshark basics.
  • Udemy training on Computer forensics fundamentals.
Sai Krishna Vegivada