Summary
Overview
Work History
Education
Skills
Certification
Disclaimer
Timeline
Generic

VIJAY KUMAR

Hyderabad

Summary

To be an integral part of a professional Information Security team for applying my knowledge and Professional skills to add value to the organization’s business and achieve the corporate objectives Whilst getting valued exposure and professional satisfaction along with personal growth.

PROFESSIONAL SUMMARY:

Having 4 years of total experience into IT in Information Security and currently working as Security Analyst (Security Operation Center team). Hands on experience on Threat analysis and Security Monitoring and Operations. Experience on SIEM (Security Information and Event Management) tools like Monitoring real-time events using Azure Sentinel. Knowledge on Intrusion Detection/Prevention Systems. Preparing daily, weekly, and monthly report as per client requirement. Investigating and creating case for the security threats and forwarding it to Onsite SOC team for further investigation and action. Good understanding of security threats and vulnerabilities Experience in phishing and spam email analysis. Experience on performing log analysis and analyzing the crucial alerts at immediate basis. Filling the Daily health checklist. Good understanding of security solutions like Firewalls, DLP, Anti-virus, IPS, Email Security, Azure AD, DNS logs etc. Act as first level support for all Security Issues. Monitor SIEM alerts, analyze events in SIEM and raise Security incidents in Ticketing tool Manage Engine. Investigating security violations, attempts to gain unauthorized access, virus infections, etc. Coordinate responses to security incidents in a timely manner Exposure to Documentation and Reporting Served as Analyst in SOC operations for real-time monitoring, analyzing logs from various security/Industrial appliances by using Sentinel. L2 connectivity and troubleshooting of logging issues. Handling incidents/security alerts triggered from SIEM tool into Auto task (ticketing tool) Carrying out log monitoring and incident analysis for various devices such as Firewalls, IDS, IPS, database, web servers and so forth. Website Anti-Malware and Defacement monitoring and real-time alerting based on anomalies detected. Maintenance of data connectors that deployed into sentinel.

Overview

4
4
years of professional experience
1
1
Certification

Work History

Security Analyst

TECHSOFT SOLUTIONS PRIVATE LIMITED
Bengaluru
12.2023 - 01.2025
  • Work closely with business units to ensure that they know what and how to feed data into Azure Sentinel
  • Developed and implemented analytics rules, incidents, playbooks, notebooks, and workbooks using Azure Sentinel
  • Performing Real-Time Monitoring, Investigation, Analysis, Reporting and Escalations of Security Events from Multiple log sources
  • Filling the Daily health check list
  • Troubleshooting SIEM dashboard issues when there are no reports getting generated or no data available
  • As a part of Continuous improvement, reviewing all incidents to improve response processes and actionable intelligence
  • Maintain keen understanding of evolving internet threats to ensure the security of client networks
  • Escalating the security incidents based on the client's SLA and providing meaningful information related to security incidents by doing in-depth analysis of event payload, providing recommendations regarding security incidents mitigation which in turn makes the customer business safe and secure
  • Contacting the customers directly in case of high priority incidents and helping the customer in the process of mitigating the attacks
  • Reviewed and assessed L1 team incident investigations, provided feedback, and suggested improvements
  • Implemented corrective actions and preventive measures to mitigate future risks
  • Collaborated with internal stake holders to define and refine access control policies
  • Worked closely with IT, security, and other teams to ensure a unified approach to security
  • Determine the scope of security incident and its potential impact to Client network recommend steps to handle the security incident with all information and supporting evidence of security events
  • Creation of reports and dashboards and rules fine tuning

Security SOC Analyst

Capgemini Technology Services India Limited
Hyderabad
12.2021 - 10.2023

Software Engineer

Technospirit
Hyderabad
12.2020 - 11.2021

Education

Bachelor of Technology (B.Tech) -

JNTU

Skills

  • SOC (Security Operation Center)
  • Vulnerability management
  • SIEM (Security Information and Event Management)
  • Azure Sentinel
  • SOAR
  • Microsoft Sentinel
  • Endpoint Security
  • Microsoft defender for Endpoint
  • Crowd Strike Falcon EDR
  • Phishing and spam Email Analysis
  • Cloud Security
  • Azure Cloud
  • Malware Analysis
  • Any Run
  • Hybrid Analysis
  • Email Security
  • Proof point
  • Phishing Email analysis
  • Vulnerability Management
  • Tenableio
  • Network Security
  • Intrusion Alerts investigation -IDS &IPS
  • Firewall
  • WAF
  • Compliance
  • Risk Governance and Compliance
  • Vulnerability Management
  • Tenableio
  • Network Security
  • Intrusion Alerts investigation -IDS &IPS
  • Firewall
  • WAF
  • Compliance
  • Risk Governance and Compliance

Certification

SC-200: Microsoft Security Operations Analyst

Disclaimer

I hereby declare that the above-mentioned information is correct up to my knowledge and I bear that responsibility for the correctness of the above-mentioned particulars.

Timeline

Security Analyst

TECHSOFT SOLUTIONS PRIVATE LIMITED
12.2023 - 01.2025

Security SOC Analyst

Capgemini Technology Services India Limited
12.2021 - 10.2023

Software Engineer

Technospirit
12.2020 - 11.2021

Bachelor of Technology (B.Tech) -

JNTU
VIJAY KUMAR