Back to Developers
Bhavesh More

Bhavesh More

SOC Analyst

Pune 0+ yrs exp 81 ยท Excellent

About

Entry-level L1 SOC Analyst with seven months of practical internship experience in continuous security monitoring, alert triage, incident investigation, phishing analysis, threat-intelligence enrichment, and enterprise log analysis. Hands-on exposure to SIEM, EDR, firewall, IDS/IPS, proxy, email security, WAF, and vulnerability-management tools. Skilled in classifying alerts, documenting evidence, managing indicators of compromise, and escalating incidents according to SOC procedures.

Skills & Expertise (31)

Windows Intermediate
6.0/10
0.6
Years Exp
LINUX Intermediate
6.0/10
0.6
Years Exp
Alert Triage Intermediate
6.0/10
0.6
Years Exp
Phishing Analysis Intermediate
6.0/10
0.6
Years Exp
CrowdStrike Falcon Intermediate
5.4/10
0.6
Years Exp
Microsoft Defender for Endpoint Intermediate
5.4/10
0.6
Years Exp
Splunk Intermediate
5.4/10
0.6
Years Exp
QRadar Intermediate
5.0/10
0.6
Years Exp
WIRESHARK Intermediate
5.0/10
0.6
Years Exp
Active Directory Intermediate
5.0/10
0.6
Years Exp
Microsoft Sentinel Intermediate
5.0/10
0.6
Years Exp
Palo Alto Intermediate
4.8/10
0.6
Years Exp
LogRhythm Intermediate
4.8/10
0.6
Years Exp
MITRE ATT&CK Fundamentals ANY.RUN Hybrid Analysis Anomali McAfee ATD Qualys Nessus ServiceNow OS Ticket Recorded Future DNS Authentication SLA handling escalation Imperva WAF IPS IDS Blue Coat

Work Experience

SOC Analyst Intern

CyberSecXperts

Nov 2025 - May 2026

Monitored and triaged security alerts generated by SIEM, EDR, firewall, IDS/IPS, proxy, email security, and WAF solutions. Performed initial L1 investigation by reviewing source and destination IPs, users, hosts, ports, protocols, severity, and event timelines. Analyzed Windows, Linux, authentication, DNS, endpoint, network, firewall, and proxy logs to identify suspicious activity. Investigated brute-force attempts, suspicious logins, malware alerts, port scans, policy violations, and abnormal network traffic. Performed phishing-email analysis using sender details, headers, URLs, attachments, domains, file hashes, and reputation checks. Investigated endpoint alerts in CrowdStrike Falcon and Microsoft Defender for Endpoint and documented supporting evidence. Collected and validated indicators of compromise, including malicious IPs, domains, URLs, email addresses, and file hashes. Enriched alerts with threat-intelligence sources and classified them as true positive, false positive, benign positive, or informational. Created and updated incident tickets with investigation findings, evidence, actions taken, recommendations, and accurate timelines. Escalated confirmed, high-risk, or complex incidents to L2 analysts according to SOPs, playbooks, SLAs, and escalation procedures. Supported SIEM rule validation and tuning by identifying recurring false positives and documenting improvement recommendations. Prepared daily and weekly SOC reports covering alert volumes, incident status, investigation outcomes, and security trends.

Education

Master of Computer Applications (MCA) - Savitribai Phule Pune University

- ยท Afghanistan

B.Sc. in Computer Science - North Maharashtra University

- ยท Afghanistan

Certifications

No certifications added yet

Interested in this developer?

Profile Score Breakdown

๐Ÿ“ท Photo 10/10
๐Ÿ“„ Resume 10/10
๐Ÿ’ผ Job Title 10/10
โœ๏ธ Bio 10/10
๐Ÿ› ๏ธ Skills 20/20
๐ŸŽ“ Education 10/10
โฑ๏ธ Experience 6/15
๐Ÿ’ฐ Rate 0/5
๐Ÿ† Certs 0/5
โœ… Verified 5/5
Total Score 81/100

Profile Overview

Member sinceJul 2026

Availability Details

Visa Status

Citizen

Relocation

Open to Relocation