Back to Developers
Naresh Kumar

Naresh Kumar

Security Analyst

Hyderabad 3+ yrs exp 87 · Excellent

About

Security Analyst with around 4 years of advancing experience in cyber security, specializing in risk assessment and compliance analysis across diverse business systems. Adept at identifying vulnerabilities and regulatory gaps, and crafting long-term security strategies that strengthen organizational resilience and safeguard critical assets.

Skills & Expertise (30)

Azure Sentinel Advanced
8.6/10
4
Years Exp
Splunk ES Advanced
8.0/10
4
Years Exp
Phishing Email Investigation Advanced
8.0/10
4
Years Exp
IAM roles Incident Response SPL endpoint detection and response Azure Logic Apps MITRE ATT&CK framework DMARC DKIM SPF Defender firewall policies Windows Event Logs UEBA AIR policies AWS MS Defender ATP Log Analytics EDR Microsoft Defender ATP Log Management Jira Service Now MS Intune Administrator Rapid 7 Zscaler Remediation Alert Investigation Office 365 Crowd strike

Work Experience

Security Analyst

Cognizant

Aug 2022 - Present

Good knowledge and working experience in central logging, log management, and Splunk SIEM architecture. Experience in working on host isolation and advanced threat analysis using EDR Microsoft Defender ATP. Hands-on experience in creating playbooks, notebooks, runbooks, and automation roles using Azure Sentinel. Experience in creating Log Analytics workspaces, creating conditional access policies, and detection rules using Defender 365 and Azure Sentinel. Experienced in writing correlation rules with respect to KQL and SPL languages. Experience in configuring and tuning ASR policies in the Microsoft 365 Defender portal. Knowledge of email security threats and security controls, including experience analysing email headers. Good hands-on experience in creating virtual machines, deploying endpoint agents on them, and managing IAM roles in an AWS environment. Monitored network traffic for suspicious activity to prevent cyberattacks and data breaches. Experience in AIR (Automated Investigations and Remediation) policies and their implementation. Investigate malicious phishing emails, domains, and IPs using open-source tools, and recommend proper blocking based on analysis. Monitoring the triage of insider threats and User Entity Behavioral Analytics (UEBA), creating reports and dashboards, and fine-tuning rules (alert fine-tuning). Analysis of phishing emails reported by users to identify the type of attack and take immediate remediation. Integrated Defender for Endpoint with Microsoft Sentinel to centralise alert management and automate remediation workflows. Strong experience in managing Endpoint Agents over Windows and Linux operating systems, Active Directory integrations, and Windows Event Logs. Experience in adding and deploying a client onboarding configuration file; Configuration Manager can monitor deployment status, and Microsoft Defender ATP agent health. Monitor, respond to, and analyse trends in workstations, servers, and security-related events. Perform daily, weekly, and monthly scheduled tasks for Defender ATP. Conducted advanced threat hunting using Defender's telemetry and KQL queries, identifying lateral movement and zero-day exploits. Hands-on experience in analysing the device timeline logs and pulling reports by using advanced hunting in KQL.

Education

B.Tech in Mechanical - Aditya College of Engineering & Technology

- 2019 · Afghanistan

Certifications

No certifications added yet

Interested in this developer?

Profile Score Breakdown

📷 Photo 10/10
📄 Resume 10/10
💼 Job Title 10/10
✍️ Bio 10/10
🛠️ Skills 20/20
🎓 Education 10/10
⏱️ Experience 12/15
💰 Rate 0/5
🏆 Certs 0/5
Verified 5/5
Total Score 87/100

Profile Overview

Member sinceApr 2026