About
Results-driven SOC Analyst with 3.4 years of hands-on experience in dedicated, hybrid, and MSSP-based SOC environments. Proficient in threat detection, incident triage, SIEM rule tuning, and XDR/EDR operations. Adept at handling multi-client environments, managing end-to-end incident response, and collaborating in high-pressure bridge calls. Skilled in tools such as ArcSight, CrowdStrike, Trend Micro, and Microsoft Defender. Currently acting as L2 Shift Lead in a dedicated SOC setup.
Skills & Expertise (23)
Work Experience
SOC Analyst - L1/ L2 (Shift Lead)
Sattrix Information Security Ltd.
Nov 2022 - Present
Led shift-based SOC operations, mentoring L1 team members and acting as primary escalation point. Created and fine-tuned ArcSight correlation rules and dashboards for threat detection and alert accuracy. Conducted advanced incident triage and managed incident lifecycle using ArcSight and CrowdStrike Falcon. Generated daily and weekly ESM and Logger health reports; ensured adherence to SLA and compliance. Participated in and led bridge calls, providing real-time incident updates and coordinating resolution efforts. Supported log source onboarding and customized use cases based on threat landscape. Coordinated with L2/L3 teams and CTI analysts to enrich incident data with threat intelligence.
SOC Analyst - L1
Sattrix Information Security Ltd.
Jun 2023 - Feb 2024
Monitored and triaged alerts across multiple MSSP clients using Trend Micro Vision One, CloudSEK XVigil, and Orca Security. Performed initial investigation and escalated valid incidents based on client SOPS. Supported client-specific ad-hoc reporting and compliance documentation. Participated in bridge calls, providing SIEM/XDR alert insights and real-time triage support. Delivered weekly and monthly SOC performance and incident trend reports.
SOC Analyst - L1 (EDR Monitoring)
Sattrix Information Security Ltd.
Dec 2022 - Jun 2023
Monitored alerts and performed initial triage using Secureworks XDR. Identified valid security incidents and escalated them with IOCs and contextual insights. Delivered daily incident reports and participated in bridge calls to support investigation. Generated weekly/monthly reports outlining detection trends and remediation suggestions.
Education
Master Of Computer Application - Galgotias University
2020 - 2022 · Afghanistan
Bachelor of Computer Applications - Integral University
2017 - 2020 · Afghanistan