About
Cybersecurity professional with 3 years of experience in EDR investigation, antivirus analysis, SOC operations, and threat hunting using Microsoft Sentinel and Microsoft Defender for Endpoint. Skilled in malware analysis, incident response, and detection engineering across Windows, Linux, and MacOS environments. Experienced in KQL-based threat hunting, alert automation using Python/PowerShell, and mapping adversary activity to MITRE ATT&CK for proactive threat detection.
Skills & Expertise (29)
Work Experience
Consultant (Cyber Security)
LTIMindtree
Apr 2023 - Present
3 years of hands-on experience across EDR, antivirus, and SOC operations using Microsoft Defender for Endpoint (MDE), Defender XDR, and Microsoft Sentinel to detect, investigate, and respond to enterprise security threats. Investigated 50+ daily EDR alerts using Microsoft Defender for Endpoint and Microsoft Sentinel, identifying malicious processes, persistence mechanisms, and lateral movement attempts, reducing false positives across Windows, Linux, macOS, and APK endpoints via tuned detection rules. Conducted static and dynamic malware analysis on PE and non-PE files to identify malicious behavior, extract Indicators of Compromise (IOCs), and support EDR detections and antivirus signature development while mapping adversary techniques to the MITRE ATT&CK framework. Performed thorough incident analysis to identify vulnerabilities and recommend remediation strategies to improve overall endpoint security posture. Developed Python, PowerShell, and KQL automation scripts to enhance SIEM investigations, automate alert triage, and enrich threat detection workflows. Monitored threat intelligence feeds and SOC alerts to identify emerging threats, investigated Indicators of Compromise (IOCs) including IP addresses, domains, URLs, and file hashes, and enriched detections by mapping attacker Tactics, Techniques, and Procedures (TTPs) to the MITRE ATT&CK framework. Correlated threat intelligence from OSINT and security feeds with endpoint telemetry to proactively detect attack campaigns and improve Defender AV and EDR detection coverage.
Education
Bachelor of Engineering – Computer Science - Savitribai Phule Pune University
2019 - 2023 · Afghanistan
Interested in this developer?
Profile Score Breakdown
Profile Overview
Availability Details
Visa Status
Need Sponsorship
Relocation
Open to Relocation