
Results-driven Cybersecurity SOC Analyst with 4 years of experience at Deloitte in threat detection, incident response, and security operations. Proficient in SIEM platforms (Splunk, Microsoft Sentinel, QRadar) and CrowdStrike Falcon for EDR, with hands-on expertise in IoA detection, threat graph analysis, and APT neutralization. Skilled in SOAR automation, cloud security monitoring (AWS, Azure), vulnerability management, and proactive threat hunting. Strong command of MITRE ATT&CK, NIST, and CIS frameworks with a consistent track record of reducing MTTD and MTTR across enterprise environments.
∙ Spearheaded the establishment of Deloitte’s SOC practice for a major Fortune-500 hospitality client, defining workflows, escalation procedures, and operational playbooks from the ground up to ensure seamless 24/7 security coverage.
∙ Led shift operations as a Shift Lead, managing daily SOC activities, overseeing analysts performance, handling critical escalations, and ensuring strict SLA compliance across all incident response tiers.
∙ Monitored, analyzed, and responded to security events across enterprise environments using Splunk SIEM, correlating logs, detecting anomalies, and reducing mean time to detect (MTTD) and respond (MTTR) to security incidents.
∙ Conducted proactive threat hunting using log analysis, behavioral analytics, and MITRE ATT&CK TTPs to identify advanced, hidden, and persistent threats evading standard detection controls.
∙ Managed endpoint security operations using Microsoft Defender, investigating alerts, remediating infections, and enforcing endpoint compliance policies across client infrastructure.
∙ Drove a significant reduction in false positives through continuous alert fine-tuning and SIEM rule optimization, improving detection fidelity and reducing analyst alert fatigue across the SOC team.
∙ Delivered technical weekly and monthly operational reports tracking alert trends, incident volumes, SOC performance KPIs, and SLA adherence for client stakeholders and senior leadership.
∙ Performed quarterly skill-gap assessments for SOC team members and implemented process improvement opportunities within client security environments, increasing operational efficiency and strengthening the overall security posture.
∙ Supported security operations across both hospitality and healthcare verticals, adapting threat detection and incident response strategies to meet industry-specific compliance and regulatory requirements.
∙ Collaborated with senior analysts, threat intelligence teams, and client stakeholders to align SOC operations with business objectives and cybersecurity frameworks including MITRE ATT&CK, NIST CSF, and CIS Controls.
Mircrosoft SC-200