Back to Developers
gavara durgarao

gavara durgarao

Information Security Professional

Hyderabad, India 3+ yrs exp 87 · Excellent

About

Information Security Professional with over 3.3 years of experience as a Security Analyst, recognized for leading security monitoring and incident response efforts. Strong hands-on expertise in SIEM, EDR, and endpoint security administration, with a proven ability to drive phishing threat analysis, improve detection capabilities, and strengthen overall security posture.

Skills & Expertise (59)

Log Management Intermediate
7.8/10
3
Years Exp
Azure Sentinel Intermediate
7.6/10
3
Years Exp
Incident analysis Intermediate
7.6/10
3
Years Exp
KQL Intermediate
7.6/10
3
Years Exp
MITRE ATT&CK Intermediate
7.4/10
3
Years Exp
Microsoft Cloud App Security Advanced Data Analytics Data Analytics Indicators of Compromise Forensic Analysis Microsoft 365 Defender Dashboard Customisation Conditional Access Policies Security Operations SOPs Runbooks Web Servers Databases Tableau Defender firewall policies System security concepts DLP CASB Networking Concepts Protocols Infrastructure Security Identity Security Endpoint Security Next Gen Firewall WAF Proxy Elastic NIST MS Defender ATP CrowdStrike Falcon Cyberint Office 365 Darktrace antigena Qualys Cloud MS Purview MS Intune Windows Server 2016 R2 Windows Server 2019 Symantec Azure Fundamentals Central logging IPS Endpoint Agents Active Directory Windows Event Logs M365 Defender SPL SPF DKIM DMARC AIR policies Log Monitoring Firewalls IDS

Work Experience

Security Analyst

CONQUER TECHNOLOGIES

Jan 2023 - Present

Good knowledge and working experience in central logging, log management, and Splunk SIEM architecture. Expertise in building use cases around the NIST and MITRE ATT&CK frameworks to enable detection at various stages of a cyber-attack. Strong experience in managing Endpoint Agents over Windows and Linux operating systems, Active Directory integrations, and Windows Event Logs. Experience in handling technical administration and troubleshooting activities related to the M365 Defender suite. Experience in supporting, fine-tuning, and troubleshooting correlation searches in Splunk SIEM and Azure Sentinel. Experience in working on host isolation and advanced threat analysis using the EDR Microsoft Defender ATP. Implementation of use cases using SPL/KQL, with complex correlation across different data sources. Experienced in preparing detailed analyses of external cyber threats, including new vulnerabilities, exploits, intrusion patterns, and malware behaviours, based on information proactively checked with the vendor to deploy the signatures for collected IOCs. Handling SPAM and phishing email submissions from the end-users and taking containment steps by further investigating domains and IPs to recommend proper blocking, and creating SPF, DKIM, and DMARC records for the domains to protect against spoofing. Experience in AIR (Automated Investigations and Remediation) policies and their implementation. Experience in onboarding and offboarding Windows Server 2016 R2 and 2019 by installing the MMA/unified agent and troubleshooting server-level issues. Carrying out log monitoring and incident analysis for various devices such as firewalls, IDS, IPS, databases, web servers, and so forth. Experience in creating runbooks, SOPs, and documents supporting Security Operations. Monitor, respond to, and analyse trends in workstations, servers, and security-related events.

Education

Master of Business Administration: Financial Management and Marketing Management - Palivela PG College

- 2015 · Afghanistan

Certifications

No certifications added yet

Interested in this developer?

Profile Score Breakdown

📷 Photo 10/10
📄 Resume 10/10
💼 Job Title 10/10
✍️ Bio 10/10
🛠️ Skills 20/20
🎓 Education 10/10
⏱️ Experience 12/15
💰 Rate 0/5
🏆 Certs 0/5
Verified 5/5
Total Score 87/100

Profile Overview

Member sinceJun 2026

Availability Details

Visa Status

Citizen

Relocation

Open to Relocation