To secure a dynamic position in a professionally challenging environment in the field of Information Security.
A competent professional with 4.5 years of experience working as a security analyst in the field of information security.
Experience in SIEM (Security Information and Event Management) technologies such as IBM QRadar, McAfee and LogRhythm, as well as basic knowledge of Splunk and Microsoft Azure Sentinel.
Understanding security technologies such as firewalls (Palo Alto, Checkpoint, Fortinet, Sophos), DLP, anti-virus, EDR, SOAR, Email security, etc.
Experience on QRadar Log Source Management.
Experience on Threat Hunting relates to the search for threats in the customer environment based on attacks.
Worked on the QRadar admin part, system configuration, user management, and data sources.
Worked on QRadar, such as creating rules and fine-tuning incidents.
I am familiar with parsing and mapping events in QRadar.
Overview
4
4
years of professional experience
1
1
Certification
Work History
Senior Security Analyst
Inspira Enterprise India Limited
Navi Mumbai, Maharashtra
11.2021 - Current
Monitored network traffic for suspicious activity using SIEM tools such as IBM QRadar, McAfee, and LogRhythm.
Created detailed reports outlining the findings of investigations into security events or incidents.
Performed incident response and root cause analysis on security incidents.
Provided ongoing support during the incident resolution process.
Creating reports in QRadar based on the requirements. Troubleshooting SIEM dashboard issues when no reports are generated or no data is available, and fine-tuning the use cases.
Regularly review and improve incident response playbooks and security measures.
Reviewing the use cases to ensure suitable triggering. If not, review all of the conditions and make any changes that are required.
Supported analysts by providing recommendations and validating incidents.
IOCs received from the client and added to the reference set.
Analyze suspicious files, emails, or URLs to determine if they pose a security risk.
Prepare and verify quarterly, monthly, and weekly reports.
Performed in the QRadar upgrading operation. And for any QRadar issues, raise an issue with TAC and join a meeting for resolution.
Mentored junior employees in departmental activities and procedures.
SOC Analyst
Sanus Software Solutions Pvt Ltd
Hyderabad, Telangana
07.2020 - 10.2021
Continuously monitor security alerts from various systems (firewalls, intrusion detection/prevention systems, SIEM tools, etc.).
Identify and respond to security incidents, such as unauthorized access, malware infections, or phishing attacks.
Identified security threats, vulnerabilities and potential malicious activities through log analysis.
Acknowledging and reporting incidents related to offenses and alarms triggered.
Utilize threat intelligence feeds and tools to stay updated on the latest cybersecurity threats and attack methods.
Following up on the raised incident from the concerned team, as per the SLA.
Handled escalated tickets and resolved them within the SLA.
Senior Security Analyst (IMPLEMENTATION) at INSPIRA ENTERPRISE INDIA LIMITEDSenior Security Analyst (IMPLEMENTATION) at INSPIRA ENTERPRISE INDIA LIMITED