About
Cybersecurity Engineer having 3+ years of hands-on experience in Security Operations Center (SOC) environments, specializing in SIEM, Incident Response, Threat Detection, and Monitoring. Skilled in analyzing logs, mitigating security incidents, and enhancing detection capabilities across hybrid infrastructures. Demonstrated expertise in tools like CrowdStrike, Sentinel and Arcon PAM, with strong familiarity in Soc Domain.
Skills & Expertise (31)
Work Experience
Cybersecurity Engineer
WAISL Limited
Sep 2024 - Present
Monitor and manage CrowdStrike Falcon EDR, investigating endpoint alerts and ensuring swift remediation. Manage Arcon PAM operations — user onboarding/deboarding, access provisioning, and privileged session monitoring. Perform incident triage, documentation, and escalation in line with CSOC procedures. Contribute to creation of security runbooks and process documentation. Maintain compliance with NIST and ISO security guidelines. Support continuous improvement of detection logic, SIEM correlation, and alert tuning.
Tech. Support Associate
Advatix Logistic
Oct 2023 - Aug 2024
Monitored and analyzed real-time alerts from IDS/IPS, SIEM, EDR, and Firewall logs. Monitor the incident on SIEM tool (MS Sentinel). Conducted Root Cause Analysis (RCA) and coordinated mitigation with relevant teams. Customized SIEM use cases, fine-tuned rules, and reduced false positives by 40%. Performed vulnerability assessments, coordinated patch management, and ensured remediation.
Senior Analyst
HCL Technology
Dec 2022 - Oct 2023
Worked in 24/7 SOC operations for incident response and escalation support. Developed incident response documentation and awareness materials. Check user activity in MS Defender. Monitor alerts on Splunk tool on L1 level. User onboarding/deboarding on on prime and azure AD. Installed, configured, and maintained Bitdefender Endpoint Security on Windows systems. Performed malware scans and threat remediation using Bitdefender GravityZone. Monitored antivirus alerts and resolved security incidents. Managed real-time protection, firewall, and web protection settings. Updated antivirus definitions and ensured endpoint compliance.
Education
Bachelor of Computer Applications (BCA) - Maharaja Agrasen Himalayan Garhwal University (MAHGU)
- · Afghanistan