About
I have overall 6+ years of experience in IT and relevant to Security Operation Center (SOC) I have 4+ years of experience, Experienced in conducting in-depth security investigations, documenting findings, and providing mentorship and technical guidance to junior SOC analysts. Demonstrated proficiency in email security platforms including Proofpoint and Symantec, as well as vulnerability management using Qualys. Well-versed in antivirus technologies like TrendMicro and McAfee, and email gateway protection via Mimecast and Proofpoint. Experience in monitoring and analyzing security events across diverse platforms, including SIEM tools such as IBM QRadar, Splunk, and Microsoft Sentinel. Proficient in leveraging network and host-based IDS/IPS, managing firewalls like Palo Alto, and utilizing advanced EDR solutions such as SentinelOne, Carbon Black, and Microsoft Defender ATP.
Skills & Expertise (50)
Work Experience
Security Analyst
Reliance Industries Ltd
Dec 2022 - Jun 2025
Monitor and analyze security events from multiple sources using SIEM systems such as IBM QRadar, Splunk, and Sentinel to detect potential threats. Conduct thorough investigations into security incidents, analyzing logs and artifacts to identify root causes and report findings to management. Provide technical guidance and mentorship to junior SOC analysts, enhancing team performance and skills development. Develop and maintain standard operating procedures (SOPs) for incident response and threat analysis, ensuring consistency in operations. Engage in proactive threat hunting to identify and respond to advanced persistent threats (APTs) utilizing SentinelOne and Carbon Black. Participate in incident response activities, coordinating with IT and security teams to contain and remediate incidents effectively. Maintain up-to-date knowledge of emerging security threats, vulnerabilities, and mitigation techniques, providing recommendations to management. Collaborate with IT teams to implement security measures, ensuring the integrity of the organization's infrastructure and systems. Conduct vulnerability assessments using tools like Qualys and recommend security enhancements to reduce risk exposure. Analyze phishing attempts and malicious email campaigns using Proofpoint and Symantec, implementing preventive measures. Implement automation for incident detection and response processes, reducing manual workload and improving efficiency. Conduct regular training sessions for SOC team members on new tools and security protocols to enhance team capability. Establish metrics for SOC performance evaluation, identifying areas for improvement and operational efficiency. Provided first-level analysis of security incidents, using IDS and IPS logs to identify potential threats. Conducted regular health checks of security tools, including firewalls (e.g., Palo Alto) and EDR solutions (e.g., Microsoft Defender ATP). Assisted in the initial triage of security incidents, utilizing DLP solutions like Symantec to identify data loss threats. Engaged in phishing and email analysis, using tools such as Proofpoint to evaluate email threats. Assisted in maintaining the security posture of endpoints using McAfee and TrendMicro solutions. Performed routine maintenance on devices, including updates, patches, and virus scans using McAfee and Symantec. Create and modify Kusto Queries (KQL functions) for Azure Sentinel analysis and investigations. Experience with core AWS services such as EC2, VPCs, S3, SNS, Lambda, CloudWatch and CloudTrail and AWS security consoles such as Guard Duty. Investing alerts on different security devices such as Guard duty, Crowd strike, etc. Administered comprehensive email security solutions, including Proofpoint, Symantec, and Mimecast, to safeguard against phishing attacks, business email compromise (BEC), and malicious attachments. Implemented advanced threat protection features and conducted regular phishing simulation exercises to enhance user awareness.
Security Analyst
Quess Corp
Jul 2021 - Dec 2022
Provided first-level support for enterprise network operations and assisted in maintaining WAN/LAN connectivity. Handled configuration and monitoring of basic Cisco devices under guidance of senior engineers. Assisted in troubleshooting hardware and link-level issues for enterprise circuits. Worked closely with field engineers to resolve fiber cut incidents, link flaps, and equipment replacements. Escalated unresolved or critical network issues to L2/L3 engineers for further analysis. Maintained accurate documentation of configurations, outages, and support tickets for internal reporting. Configured Cisco ASR 920 routers at core and aggregation layers for enterprise connectivity. Implemented BGP for external routing and OSPF for dynamic internal route distribution. Verified routing tables, neighbor relationships, and failover behavior during deployment. Performed initial troubleshooting for BGP/OSPF adjacency issues and routing mismatches. Integrated routers and switches into Cisco Prime Infrastructure for centralized monitoring and fault detection.
Network Support Engineer
Quess Corp
Sep 2019 - Jul 2021
Provided first-level support for enterprise network operations and assisted in maintaining WAN/LAN connectivity. Handled configuration and monitoring of basic Cisco devices under guidance of senior engineers. Assisted in troubleshooting hardware and link-level issues for enterprise circuits. Worked closely with field engineers to resolve fiber cut incidents, link flaps, and equipment replacements. Escalated unresolved or critical network issues to L2/L3 engineers for further analysis. Maintained accurate documentation of configurations, outages, and support tickets for internal reporting. Configured Cisco ASR 920 routers at core and aggregation layers for enterprise connectivity. Implemented BGP for external routing and OSPF for dynamic internal route distribution. Verified routing tables, neighbor relationships, and failover behavior during deployment. Performed initial troubleshooting for BGP/OSPF adjacency issues and routing mismatches. Integrated routers and switches into Cisco Prime Infrastructure for centralized monitoring and fault detection.
Education
Bachelor of Commerce in Computers - Gitam University
2018 - 2021 ยท Afghanistan
Certifications
No certifications added yet
Interested in this developer?
Profile Score Breakdown
Profile Overview
Availability Details
Visa Status
Need Sponsorship
Relocation
Depends on Offer
Skills (50)
Click a skill to find developers with the same skill