About
SOC Analyst with 2 plus years experience in Security Operations Center monitoring and threat investigation. Analyze SIEM alerts using Splunk. Investigate endpoint alerts from CrowdStrike and Microsoft Defender. Validate indicators of compromise such as IP address domain and file hash. Knowledge of MITRE ATT&CK, Cyber Kill Chain and OWASP Top 10. Understanding of network protocols with port numbers and common cyberattacks. Experience in phishing analysis log investigation and threat intelligence correlation. Skilled in OSI and TCP/UDP model. Incident documentation using ServiceNow.
Skills & Expertise (32)
Work Experience
SOC Analyst
Saffron Networks Pvt Ltd
Mar 2024 - Present
Monitor and triage security alerts from Splunk SIEM and endpoint tools. Investigate suspicious activities using log analysis and threat intelligence. Validate indicators of compromise including IP address domain and file hash. Perform phishing investigations by analyzing email headers links and attachments. Follow SOC process for incident triage documentation and escalation. Improve SIEM detection rules to reduce false positives. Track incidents using ServiceNow ticketing platform.
Education
Bachelor of Mechanical Engineering - VTU University
- · Afghanistan
HSC - Karnataka School Examination and Assessment Board
- · Afghanistan
Interested in this developer?
Profile Score Breakdown
Profile Overview
Availability Details
Relocation
Open to Relocation