Back to Developers
Ajay Gandikota

Ajay Gandikota

Security Analyst

Pune 2+ yrs exp 85 ยท Excellent

About

Security Analyst with 2 years of experience in Security Operations Center (SOC) operations, Incident Response, Threat Hunting, and Endpoint Security, specializing in Microsoft Sentinel, Microsoft Defender XDR, Microsoft Intune, and Identity & Access Management. Proven expertise in developing and fine-tuning detection use cases recommendation, creating Sentinel analytic rules and automated playbooks, managing EDR lifecycle, conducting ransomware and phishing investigations, DLP, vulnerability management. Skilled in KQL, SPL, security reporting, and collaborating with cross-functional teams to enhance threat detection, automate response workflows, and improve the organization's overall.

Skills & Expertise (71)

Microsoft Sentinel Advanced
8.1/10
2
Years Exp
Incident Response Intermediate
7.8/10
2
Years Exp
Microsoft Defender XDR Intermediate
7.5/10
2
Years Exp
Threat Hunting Intermediate
7.5/10
2
Years Exp
KQL Intermediate
7.3/10
2
Years Exp
Splunk Intermediate
7.0/10
2
Years Exp
SIEM Intermediate
7.0/10
2
Years Exp
Identity & Access Management Intermediate
6.5/10
2
Years Exp
Malware Analysis Intermediate
6.5/10
2
Years Exp
Vulnerability Management Intermediate
6.5/10
2
Years Exp
Email Security Intermediate
6.0/10
2
Years Exp
Privileged Access Reviews Endpoint Telemetry User provisioning Identity and Access Management Infrastructure Vulnerability Assessments Application Deployment Device Compliance Policies ASR policies ASR rules Attack Surface Reduction Data loss prevention Exchange Online Protection Microsoft Defender for Office 365 Threat Intelligence Integration Azure AD Sign-in Logs Root Cause Analysis vulnerabilities Mitigation strategies SOC processes detection engineering Threat intelligence feeds Security Documentation Standard Operating Procedures SOPs investigation playbooks Incident Documentation Operational reports Rule Tuning Automation EDR Microsoft Intune SPL Security Reporting MS Defender CrowdStrike Falcon Azure Sentinel Office 365 ProofPoint Rapid7 IDS and IPS alert investigation MS Purview Endpoint Security Phishing investigations DLP persistence mechanisms Cloud Security Behavioral Analytics MITRE ATT&CK Indicators of Compromise IOC Analysis Logic Apps Log Analysis Dashboards Investigations SPL queries Windows LINUX macOS Compliance Validation

Work Experience

Security Analyst

TCS

Jun 2024 - Present

Monitored and managed security incidents across enterprise environments using SIEM, EDR, email security, and cloud security platforms. Performed end-to-end Incident Response activities, including detection, investigation, containment, eradication, recovery, and post-incident analysis. Conducted proactive threat hunting using behavioral analytics, MITRE ATT&CK techniques, and Indicators of Compromise (IOCs). Investigated advanced ransomware, malware, phishing, credential theft, and insider threat incidents. Performed IOC analysis and blocked malicious IP addresses, domains, URLs, file hashes, and email senders across multiple security platforms. Created, modified, and fine-tuned Microsoft Sentinel Analytic Rules to improve detection accuracy and reduce false positives. Developed and maintained Microsoft Sentinel Playbooks using Logic Apps to automate incident response activities. Optimized SIEM detection use cases by reducing alert noise and improving threat visibility. Created custom KQL queries for advanced threat hunting, log analysis, dashboards, and investigations. Utilized SPL queries to investigate security events, identify anomalies, and develop custom detection logic. Monitored endpoint security using Microsoft Defender for Endpoint and ensured endpoint protection compliance. Managed EDR onboarding and offboarding of Windows, Linux, and macOS devices across enterprise environments. Performed regular endpoint health checks and compliance validation to ensure security policy adherence. Supported EDR migration activities, including planning, deployment, validation, and post-migration health verification. Investigated ransomware detections and coordinated rapid containment to minimize business impact. Performed malware analysis by reviewing process trees, command-line activities, persistence mechanisms, and endpoint telemetry.

Education

B.SC: COMPUTERS - Andhra University

- 2024 ยท Afghanistan

Certifications

No certifications added yet

Interested in this developer?

Profile Score Breakdown

๐Ÿ“ท Photo 10/10
๐Ÿ“„ Resume 10/10
๐Ÿ’ผ Job Title 10/10
โœ๏ธ Bio 10/10
๐Ÿ› ๏ธ Skills 20/20
๐ŸŽ“ Education 10/10
โฑ๏ธ Experience 10/15
๐Ÿ’ฐ Rate 0/5
๐Ÿ† Certs 0/5
โœ… Verified 5/5
Total Score 85/100

Profile Overview

Member sinceSep 2026