Back to Developers
Ashish Kumar

Ashish Kumar

SOC Engineer/Analyst

Gurugram, HR, India
72
Profile Score

About

SOC Engineer/Analyst with 3.8 years of success in investigating security-related breaches, installing data encryption, and implementing incident response/risk assessment strategies to avert unauthorized access. Proven ability to understand and follow incident response procedures in fast-paced environments. Proficient at training staff on alerting customers to possible malicious activity, resolving priority cases, and creating reports that enable experts to modify security policies.

Skills & Expertise (7)

SIEM Advanced
8.7/10
3.8
Years Exp
7
Proficiency
6
Experience
10
Recency
9
Demand
Splunk Advanced
8.6/10
3.8
Years Exp
7
Proficiency
6
Experience
10
Recency
9
Demand
Threat Detection Advanced
8.6/10
3.8
Years Exp
7
Proficiency
6
Experience
10
Recency
9
Demand
Risk Management Advanced
8.5/10
3.8
Years Exp
7
Proficiency
6
Experience
10
Recency
8
Demand
Communication Advanced
8.5/10
3.8
Years Exp
7
Proficiency
6
Experience
10
Recency
6
Demand
WIRESHARK Intermediate
7.4/10
2
Years Exp
5
Proficiency
4
Experience
10
Recency
6
Demand
ProofPoint Intermediate
7.4/10
2
Years Exp
5
Proficiency
4
Experience
10
Recency
8
Demand

Work Experience

Security Delivery Analyst

Accenture

10-2021 - 05-2024

Handled SOC operations for a government client (Central Bank of UAE) using Splunk. IDS/IPS monitoring and analysis through SOC/SIEM tools. Analyse network traffic for potential threats, Intrusion detection. Complete log analysis as needed, prioritising and differentiating between potential intrusion attempts, and doing analysis of alerts of false negatives. Monitor reported spam, social engineering, and phishing emails. Monitoring email security through Proofpoint TRAP, TAP and providing immediate containment, prevention from malicious urls and resolution to the phishing email. Raising incidents with concerned teams, responding to the incidents and service requests and bringing together additional information either resolve or escalate the issue to the appropriate teams. Ensure searches for Indicators of Compromise (IOCs) are completed when reported, through EDR tools.

Security Delivery Analyst

Accenture

10-2021 - 05-2024

Handled SOC operations for a government client (Central Bank of UAE) using Splunk. IDS/IPS monitoring and analysis through SOC/SIEM tools. Analyse network traffic for potential threats, Intrusion detection. Complete log analysis as needed, prioritising and differentiating between potential intrusion attempts, and doing analysis of alerts of false negatives. Monitor reported spam, social engineering, and phishing emails. Monitoring email security through Proofpoint TRAP, TAP and providing immediate containment, prevention from malicious urls and resolution to the phishing email. Raising incidents with concerned teams, responding to the incidents and service requests and bringing together additional information either resolve or escalate the issue to the appropriate teams. Ensure searches for Indicators of Compromise (IOCs) are completed when reported, through EDR tools.

IT Engineer SOC

Guardian Life Insurance Company of America

05-2024 - Present

Performs security Incident Event Management (SIEM) console monitoring and correlation. Regularly check the work queue for incoming assignments and complete all work daily. Monitors and analyzes network traffic and IDS/IPS alerts, investigating intrusion attempts and performing in-depth analysis of exploits and attacks with help of wireshark. Provides support on network security issues and responds in accordance with the Security Incident Management Plan. Receives guidance from senior staff. Develop technical documentation describing the deployment, configuration, and management of shared, networked, and multi-user information security systems. Create and maintain operational reports for Key Performance Indicators and weekly and Monthly Metrics. Provide trend analysis and risk assessment to management for vulnerabilities in the environment.

IT Engineer SOC

Guardian Life Insurance Company of America

05-2024 - Present

Performs security Incident Event Management (SIEM) console monitoring and correlation. Regularly check the work queue for incoming assignments and complete all work daily. Monitors and analyzes network traffic and IDS/IPS alerts, investigating intrusion attempts and performing in-depth analysis of exploits and attacks with help of wireshark. Provides support on network security issues and responds in accordance with the Security Incident Management Plan. Receives guidance from senior staff. Develop technical documentation describing the deployment, configuration, and management of shared, networked, and multi-user information security systems. Create and maintain operational reports for Key Performance Indicators and weekly and Monthly Metrics. Provide trend analysis and risk assessment to management for vulnerabilities in the environment.

Interested in this developer?

Profile Score Breakdown

📷 Photo 10/10
📄 Resume 10/10
💼 Job Title 10/10
✍️ Bio 10/10
🛠️ Skills 12/20
🎓 Education 0/10
⏱️ Experience 15/15
💰 Rate 0/5
🏆 Certs 0/5
Verified 5/5
Total Score 72/100

Profile Overview

Member sinceJan 2026

Availability Details

Current Company

Guardian Life insurance agency

Visa Status

No Visa

Relocation

Open to Relocation

Skills (7)

SIEM Splunk Threat Detection Risk Management Communication WIRESHARK ProofPoint