Cyber Defender
Cyber Security Analyst
About
Cyber Security Analyst with 2.5+ years of experience in security operations, SIEM-based monitoring, and EDR alert investigation across 400+ endpoints. Skilled in identifying, triaging, and root-causing security incidents (SentinelOne EDR, Splunk) using dynamic malware analysis in Cuckoo Sandbox and packet-level traffic analysis (Wireshark, tcpdump), with IOC-driven threat hunting that has surfaced multiple confirmed threats. Experienced in external attack surface management (EASM), DLP policy validation, and coordinating escalation and resolution with stakeholders within SLA. CEH-certified, with a strong foundation in networking, security product evaluation, and process/knowledge-base improvement.
Skills & Expertise (24)
Work Experience
Security Analyst II
BrandSek IT Solution Pvt Ltd
Sep 2025 - Apr 2026
Monitored client endpoint infrastructure across 400+ systems, investigating and triaging SentinelOne EDR security alerts by analyzing file hashes, IOCs, and process behavior to identify problems before escalation to end users. Conducted proactive, environment-wide threat hunts that identified incidents, including compromised users who had clicked malicious phishing links, resolving them via endpoint controls before impact. Investigated first-line security incidents end-to-end, performing dynamic malware analysis in an isolated Cuckoo Sandbox and packet-level traffic analysis (Wireshark, tcpdump) to determine root cause and extract actionable IOCs for detection content. Analyzed EASM alerts to identify exposed assets, vulnerabilities, and misconfigurations, escalating high-risk findings to stakeholders and tracking them through to resolution within SLA. Evaluated new security products through proof-of-concept (POC) testing against organizational requirements, supporting informed security investment and process-improvement decisions. Validated DLP policies across PII protection, copy/paste restrictions, USB transfer, email data protection, file uploads, and printing controls to reduce data-loss incidents.
Cybersecurity Associate
Core IT Services Pvt Ltd
Oct 2023 - Sep 2025
Delivered phishing awareness campaigns to ~4,000 users, monitoring results, identifying users who interacted with simulated threats, and providing targeted guidance to reduce incident volume. Audited external attack surface (EASM) alerts to validate exposed assets and misconfigurations, coordinating remediation with stakeholders and verifying closure. Triaged and investigated reported phishing incidents through header, URL, attachment, and IOC analysis to determine legitimacy, root cause, and organizational impact. Prioritized and tracked CERT advisories and critical security alerts, assessing impact, coordinating remediation with stakeholders, and validating resolution โ contributing to incident-reduction and knowledge-base upkeep. Facilitated security review and shift-handover meetings, documented Minutes of Meeting (MoM), and tracked action items to closure to ensure service continuity and accountability.
Education
Bachelor of Science โ Information Technology - University of Mumbai
- 2021 ยท Afghanistan
Certifications
No certifications added yet
Interested in this developer?
Profile Score Breakdown
Profile Overview
Availability Details
Visa Status
Citizen
Relocation
Open to Relocation
Skills (24)
Click a skill to find developers with the same skill