Back to Developers
Vishal Gorade

Vishal Gorade

SOC Analyst

PCMC, Maharashtra, India 2+ yrs exp 85 ยท Excellent

About

Result-oriented SOC Analyst with 2.5 years of hands-on experience in 24/7 Security Operations Center environments. Specialized in real-time alert triage, incident investigation, and threat monitoring across SIEM, EDR, next-gen firewalls, WAF, secure web gateways, and email gateways. Skilled in detecting and responding to DoS/DDoS, SQL injection, XSS, suspicious VPN logins, brute-force attacks, and phishing campaigns. Experienced in endpoint threat hunting with MITRE ATT&CK mapping, malicious-indicator isolation, cloud security log analysis, and structured incident escalation workflows.

Skills & Expertise (21)

CrowdStrike Falcon Intermediate
8.0/10
1
Years Exp
Splunk Intermediate
8.0/10
1
Years Exp
Security Event Correlation Intermediate
7.5/10
2
Years Exp
Cyber Kill Chain Intermediate
7.5/10
2
Years Exp
Windows Security Logs Intermediate
7.5/10
2
Years Exp
MITRE ATT&CK Intermediate
7.5/10
2
Years Exp
Port Scanning Intermediate
7.0/10
2
Years Exp
ServiceNow Intermediate
7.0/10
2
Years Exp
OWASP Top 10 Intermediate
7.0/10
2
Years Exp
Dos Intermediate
7.0/10
2
Years Exp
Log Parsing Intermediate
7.0/10
2
Years Exp
Alert Triage Intermediate
7.0/10
2
Years Exp
AWS CloudTrail Intermediate
7.0/10
1
Years Exp
Palo Alto Firewall Intermediate
6.5/10
1
Years Exp
Rule Tuning Intermediate
6.5/10
1
Years Exp
Sysmon Intermediate
6.5/10
1
Years Exp
Imperva WAF Intermediate
6.0/10
1
Years Exp
Zscaler Proxy Intermediate
6.0/10
1
Years Exp
Proofpoint Email Gateway Intermediate
6.0/10
1
Years Exp
Cisco VPN Intermediate
6.0/10
1
Years Exp
AWS IAM Intermediate
6.0/10
1
Years Exp

Work Experience

SOC Analyst

A B Infotech Solution Pvt. Ltd.

Aug 2024 - Present

Monitored perimeter firewall logs to identify port scanning, network reconnaissance, DoS/DDoS and HTTP flood attempts, and sustained brute-force login attacks. Analyzed WAF alerts to detect, investigate, and mitigate SQL injection (SQLi), cross-site scripting (XSS), and malicious payload injection attempts. Inspected proxy logs for user activity involving Tor exit nodes, Newly Registered Domains (NRDs), and malware download domains. Investigated suspicious emails containing malicious URLs, weaponized attachments, and QR-code (quishing) phishing vectors. Triaged authentication anomalies including impossible-travel alerts, logins from blacklisted countries, failed VPN brute-force attempts, and unauthorized account access. Investigated alerts for suspicious PowerShell execution, privilege escalation, lateral movement attempts, and malware execution. Analyzed Windows Security, Sysmon, and Event Viewer logs to detect unauthorized process creation, persistence mechanisms, and suspicious system activity. Logged, triaged, and documented incidents in ServiceNow, adhering to SOC SLAs and the Cyber Kill Chain and MITRE ATT&CK frameworks.

SOC Intern

CyberSecXperts

Jan 2024 - Jul 2024

Gained hands-on exposure to SIEM (Splunk) and EDR (CrowdStrike Falcon) for alert monitoring and investigation in a SOC environment. Handled 100+ security incident tickets during the internship. Completed a 6-month SOC internship and received an Internship Experience Certificate from CyberSecXperts. Recognized for analytical ability, communication skills, adaptability, and teamwork.

Education

Bachelor of Arts (B.A.) โ€“ Economics - Government College of Arts and Sciences

- ยท Afghanistan

Certifications

No certifications added yet

Interested in this developer?

Profile Score Breakdown

๐Ÿ“ท Photo 10/10
๐Ÿ“„ Resume 10/10
๐Ÿ’ผ Job Title 10/10
โœ๏ธ Bio 10/10
๐Ÿ› ๏ธ Skills 20/20
๐ŸŽ“ Education 10/10
โฑ๏ธ Experience 10/15
๐Ÿ’ฐ Rate 0/5
๐Ÿ† Certs 0/5
โœ… Verified 5/5
Total Score 85/100

Profile Overview

Member sinceOct 2026