Dedicated and detail-oriented Cyber Security Analyst with over 2.9 years of comprehensive experience in security operations, SIEM engineering, threat analysis, risk assessments. Proficient in security monitoring, incident response, and vulnerability management. Skilled in deploying, managing, and configuring SIEM systems like IBM QRadar, EDR solutions, and various antivirus software. Demonstrated expertise in phishing mail analysis, malware analysis, threat hunting, and reporting. Possesses excellent communication and interpersonal skills, with a proactive approach to solving complex security issues. Committed to enhancing organizational security posture through continuous learning and adaptation.
Overview
3
3
years of professional experience
1
1
Certification
Work History
Engineer
TATA CONSULTANCY AND SERVICES
02.2022 - Current
Monitoring and support 24x7 for Security Operation Center (SOC), which include detection, monitoring, alerting, escalation, and tracking and analyzing incident alerts and generating daily, weekly and monthly reports
Monitored and analyzed network traffic, logs, and alerts to detect and respond to security incidents
Managed and configured EDR solutions to enhance endpoint protection and monitor for potential threats
Coordinated and executed the incident response lifecycle, from detection to containment and eradication
Configured, deployed, and managed SIEM solutions (IBM QRadar) to ensure effective security monitoring and alerting
Fine-tuned SIEM rules, correlations, and dashboards to optimize threat detection capabilities
Performed in-depth malware analysis and phishing mail analysis to identify, isolate, and respond to threats
Good understanding of the industry models such as the Cyber Kill Chains, ITIL Farmwork, NIST Farmwork and MITRE ATTACK framework
Performing the health check on day daily for various security tools and solutions, EDR, IDS/IPS
Conducting thorough investigations into security incidents, leveraging SIEM and forensic tools, successfully identified and mitigated advanced persistent threats, preventing potential data breaches and financial losses
Performed regular vulnerability scans to identify and address security weaknesses
Tracked vulnerabilities from discovery to remediation, ensuring proper risk mitigation
Investigated and remediated endpoint incidents to prevent compromise of critical assets
Ensured all systems and processes aligned with organizational and regulatory security standards
Prepared and delivered detailed incident reports, security assessments, and audit findings to senior management
Collaborated with cross-functional teams to ensure timely resolution of security issues and effective implementation of security measures
Provided security training and guidance to internal teams to enhance awareness and adherence to security best practices
Led awareness programs to educate employees about phishing, malware, and other cyber threats
Education
B.TECH - Computer Science
JNTUH
Skills
Information Security
Security Operations
Threat detection and response
Incident response
Malware analysis
Sandboxing
Threat hunting
Vulnerability Management
Tools
SIEM: IBM Q-Radar, MS Sentinel
EDR: MS Defender, Tanium
Cloud Security: Azure Cloud
Vulnerability Assessment : Nessus
Network: Palo Alto
Ticketing : ServiceNow, Jira
Email Security: MS O365
Antivirus: McAfee, Carbon block
Certification
AZ-900
SC-900
SC-200
Disclaimer
I hereby declare that the information furnished above is true to the best of my Knowledge.