About
SOC Analyst with 4 years of experience securing enterprise 24/7 Security Operations Center (SOC) environments. Proven track record in incident lifecycle management, ransomware containment, SIEM correlation tuning, and endpoint investigations across high-volume alert environments (500+ alerts/day). Reduced false positives by 30% through correlation rule optimization. Skilled in MITRE ATT&CK mapping, root cause analysis (RCA), IOC enrichment, and risk-based incident prioritization aligned to business impact.
Skills & Expertise (17)
Work Experience
SOC Analyst
Tata Elxsi Ltd
Jun 2022 - Present
Monitored and triaged 500+ daily security alerts across a 24/7 enterprise SOC using Splunk Enterprise Security, ensuring consistent SLA adherence. Owned the full incident lifecycle for phishing, ransomware, malware infections, brute-force attacks, suspicious logins, and anomalous network activity, from detection through remediation. Led ransomware investigations – including process analysis, persistence identification, containment actions, and endpoint isolation – using CrowdStrike Falcon EDR, reducing dwell time and business impact. Conducted advanced phishing investigations spanning email header analysis, attachment inspection, URL detonation, and IOC enrichment via threat intelligence platforms, improving detection of targeted campaigns. Performed in-depth endpoint investigations using CrowdStrike Falcon (RTR, process tree analysis, command-line review, file reputation checks, host isolation) to accelerate root cause identification. Executed vulnerability assessments using Nessus, analyzing CVE severity and CVSS scoring to drive risk-based remediation prioritization across the environment. Tuned and optimized SIEM correlation rules, cutting alert fatigue and raising detection efficiency for the SOC team by 30%. Mapped security incidents to MITRE ATT&CK techniques to strengthen adversary behavior visibility and align findings with threat intelligence. Authored detailed incident reports – including RCA, remediation guidance, and executive-level summaries – for stakeholders across security and business teams. Collaborated with cross-functional IT, network, and infrastructure teams to remediate root cause vulnerabilities and reduce recurrence of similar incidents. Contributed to the development and continuous refinement of SOC playbooks and standard operating procedures (SOPs), standardizing response actions across the analyst team. Conducted proactive threat-hunting exercises across SIEM and EDR telemetry to surface undetected malicious activity ahead of automated alerting. Mentored and onboarded junior SOC analysts, providing hands-on guidance on alert triage workflows, escalation criteria, and investigation best practices. Participated in shift handover and knowledge-transfer sessions to ensure seamless continuity of active investigations across 24/7 coverage. Supported audit and compliance reporting by compiling incident metrics, SLA adherence data, and SOC performance summaries for leadership review.
Education
Bachelor of Technology in Computer Science & Engineering - Bharath University
2018 - 2022 · Afghanistan
Certifications
No certifications added yet
Interested in this developer?
Profile Score Breakdown
Profile Overview
Skills (17)
Click a skill to find developers with the same skill