Back to Developers
Gowthami

Gowthami

Cyber Security Analyst (SOC L1)

Hyderabad, India
80
Profile Score

About

Cyber Security Analyst (SOC L1) with 3.6 years of experience in 24/7 SOC operations specializing in security monitoring, incident, and threat detection. Hands-on expertise in IBM QRadar, Splunk, and Microsoft Sentinel for real-time alert analysis and log correlation. Experienced in EDR investigations, phishing analysis, firewall monitoring, and SLA-driven incident response. Strong understanding of MITRE ATT&CK, NIST, ISO 27001, and OWASP Top 10 frameworks. Proven track record of reducing false positives and improving SOC detection efficiency.

Skills & Expertise (44)

Splunk Advanced
8.6/10
4
Years Exp
Microsoft Sentinel Advanced
8.6/10
4
Years Exp
IBM QRadar Advanced
8.6/10
4
Years Exp
MITRE ATT&CK Advanced
8.4/10
4
Years Exp
NIST Advanced
8.4/10
4
Years Exp
Active Directory Logs SOC Reporting TCP/IP DNS HTTP HTTPS SMTP SSH FTP VPN Security monitoring incident triage Alert Investigation Threat Detection Phishing Analysis EDR investigation SLA Management playbook development Vulnerability Assessment ProofPoint ISO 27001 ItIl Cyber Kill Chain OWASP Top 10 Microsoft Defender for Endpoint Crowdstrike EDR Palo Alto Firewall FireEye IPS Nessus Email Gateway Logs ServiceNow Jira Windows Event Logs Linux logs Firewall Logs proxy logs VPN Logs IDS/IPS logs DLP Logs

Work Experience

Accounts Executive

Reddem Engineering Industries

Nov 2018 - Mar 2022

Prepared and verified monthly financial reports and compliance documents with zero audit escalations. Assisted in reconciliation of X lakh transactions per month, maintaining 98% accuracy. Ensured timely submission of compliance reports, reducing penalty risks by 20%. Maintained structured documentation system improving retrieval efficiency by 30%.

SOC Analyst (Tier 1)

VSM Infotech Pvt Ltd

May 2022 - Jan 2026

Monitored and triaged security alerts generated from SIEM tools including IBM Q radar, Splunk, and Microsoft Sentinel. Performed initial investigation and classification of P1, P2 security incidents based on severity and SLA timelines. Conducted log analysis from firewalls, IDS/IPS, VPN, proxy, Windows, Linux, and Active Directory sources. Investigated Microsoft Defender for Endpoint alerts for malware, suspicious processes, lateral movement, and privilege escalation activities. Analyzed phishing emails including header analysis, URL inspection, attachments and boxing, and domain reputation checks. Supervised URL/domain whitelisting at EDR and firewall level after validation and risk assessment. Conducted phishing simulation campaigns and user awareness programs. Prepared Daily, Weekly, and Monthly SOC reports and security incident dashboards. Participated in ISO 27001 internal audit support and compliance documentation. Developed and updated SOC runbooks and playbooks to improve response time. Mentored junior analysts to enhance investigation quality and detection capability. Directed incident tickets using ServiceNow and Jira ensuring SLA compliance. Monitored and triaged 100+ security alerts daily using IBM Q Radar, Splunk, and Microsoft Sentinel. Reduced false positives by 25-30% through SIEM rule tuning. Investigated 20+ phishing incidents per week, performing header and URL analysis. 98% SLA compliance achieved in incident response.

Process Associate

Tata Consultancy Services

Aug 2014 - Feb 2017

Decreased documentation errors by 25% by implementing checklist-based verification aligned with SOP guidelines. Processed 150+ daily transactions while maintaining 99% accuracy and SLA adherence. Improved turn around time by 15% by streamlining operational work flow procedures.

Education

Bachelor of Commerce (B.COM) - Osmania University

2010 - 2013 · Afghanistan

Interested in this developer?

Profile Score Breakdown

📷 Photo 10/10
📄 Resume 10/10
💼 Job Title 10/10
✍️ Bio 10/10
🛠️ Skills 20/20
🎓 Education 10/10
⏱️ Experience 5/15
💰 Rate 0/5
🏆 Certs 0/5
Verified 5/5
Total Score 80/100

Profile Overview

Member sinceMar 2026

Skills (44)

Splunk Microsoft Sentinel IBM QRadar MITRE ATT&CK NIST Active Directory Logs SOC Reporting TCP/IP DNS HTTP +34 more