Back to Developers
SC

Santosh Chire

SOC Analyst

Pune 70 · Very Good

About

SOC Analyst with 1.7 years of experience in 24x7 Security Operations, specializing in SIEM monitoring, EDR investigation, phishing analysis, and incident triage. Hands-on expertise in Microsoft Sentinel, Splunk, CrowdStrike Falcon, Qualys VMDR, Microsoft Defender for Office 365, and Proofpoint. Strong experience in alert investigation, log correlation, threat detection, IOC analysis, and incident escalation following MITRE ATT&CK framework. Proven ability to reduce false positives, improve detection accuracy, and maintain SLA compliance in high-volume SOC environments.

Skills & Expertise (20)

Splunk Enterprise Intermediate
8.4/10
1.7
Years Exp
CrowdStrike Falcon Intermediate
8.4/10
1.7
Years Exp
Microsoft Sentinel Intermediate
8.4/10
1.7
Years Exp
False Positive Reduction Endpoint isolation SLA Management MITRE ATT&CK Mapping Malware Alert Investigation Phishing Analysis IOC Investigation Threat Intelligence log correlation Incident Triage & Analysis ServiceNow firewall log analysis Ips monitoring IDS ProofPoint Microsoft Defender for Office 365 Qualys VMDR

Work Experience

SOC Analyst

Fujitsu

Jul 2024 - Present

Performed 24x7 real-time monitoring of security alerts using Microsoft Sentinel and Splunk. Investigated and triaged alerts related to malware, phishing, brute force, suspicious login, lateral movement, and anomalous activities. Conducted endpoint investigations using CrowdStrike Falcon to analyze process trees, command-line executions, and suspicious hashes. Executed phishing investigations using Microsoft Defender for Office 365 and Proofpoint, including header analysis and URL detonation. Identified and validated IOCs (IPs, domains, hashes) using threat intelligence platforms. Monitored IDS/IPS alerts to detect intrusion attempts and suspicious network behavior. Performed vulnerability assessment validation and risk prioritization using Qualys VMDR. Executed incident response runbooks and containment actions including endpoint isolation. Created and updated incidents in ServiceNow, ensuring proper documentation and SLA adherence. Reduced false positives by fine-tuning alert investigation workflows. Escalated confirmed security incidents to L2/L3 teams with detailed technical findings. Mapped detected threats to MITRE ATT&CK framework for better threat classification. Supported monthly security reporting and dashboard review.

Education

B.Tech – EEE - Kakinada Institute of Technology & Science

- 2024 · Afghanistan

Certifications

No certifications added yet

Interested in this developer?

Profile Score Breakdown

📷 Photo 0/10
📄 Resume 10/10
💼 Job Title 10/10
✍️ Bio 10/10
🛠️ Skills 20/20
🎓 Education 10/10
⏱️ Experience 5/15
💰 Rate 0/5
🏆 Certs 0/5
Verified 5/5
Total Score 70/100

Profile Overview

Member sinceApr 2026