
To be an integral part of a professional Information Security team for applying my knowledge and Professional skills to add value to the organization’s business and achieve the corporate objectives Whilst getting valued exposure and professional satisfaction along with personal growth.
PROFESSIONAL SUMMARY:
Having 4 years of total experience into IT in Information Security and currently working as Security Analyst (Security Operation Center team). Hands on experience on Threat analysis and Security Monitoring and Operations. Experience on SIEM (Security Information and Event Management) tools like Monitoring real-time events using Azure Sentinel. Knowledge on Intrusion Detection/Prevention Systems. Preparing daily, weekly, and monthly report as per client requirement. Investigating and creating case for the security threats and forwarding it to Onsite SOC team for further investigation and action. Good understanding of security threats and vulnerabilities Experience in phishing and spam email analysis. Experience on performing log analysis and analyzing the crucial alerts at immediate basis. Filling the Daily health checklist. Good understanding of security solutions like Firewalls, DLP, Anti-virus, IPS, Email Security, Azure AD, DNS logs etc. Act as first level support for all Security Issues. Monitor SIEM alerts, analyze events in SIEM and raise Security incidents in Ticketing tool Manage Engine. Investigating security violations, attempts to gain unauthorized access, virus infections, etc. Coordinate responses to security incidents in a timely manner Exposure to Documentation and Reporting Served as Analyst in SOC operations for real-time monitoring, analyzing logs from various security/Industrial appliances by using Sentinel. L2 connectivity and troubleshooting of logging issues. Handling incidents/security alerts triggered from SIEM tool into Auto task (ticketing tool) Carrying out log monitoring and incident analysis for various devices such as Firewalls, IDS, IPS, database, web servers and so forth. Website Anti-Malware and Defacement monitoring and real-time alerting based on anomalies detected. Maintenance of data connectors that deployed into sentinel.
SC-200: Microsoft Security Operations Analyst
I hereby declare that the above-mentioned information is correct up to my knowledge and I bear that responsibility for the correctness of the above-mentioned particulars.