About
SOC Analyst with almost 4 years of experience in security operations, incident response, and threat detection. Skilled in SIEM, EDR/XDR, log analysis, and vulnerability management. Strong knowledge of firewalls, email security, and cloud security (AWS, Azure).
Skills & Expertise (42)
Work Experience
SOC/Security Analyst
LTIMindtree
Jun 2022 - Present
Hands-on experience with SIEM tools including IBM QRadar, Splunk, and Azure Sentinel for continuous monitoring and incident response. Performed real-time log analysis across firewalls, IDS/IPS, databases, routers, operating systems, and web servers to detect and mitigate threats. Administered and triaged security incidents and alerts triggered in SIEM platforms, ensuring timely containment and resolution. Developed and optimized KQL queries in Azure Sentinel to detect anomalies, analyze sign-in logs, network traffic, and resource usage for compromised accounts. Created KQL queries to monitor Azure resource performance (CPU, memory, traffic), enabling proactive tuning and resource allocation. Configured and maintained AWS CloudWatch and CloudTrail for logging, monitoring, and detection of unauthorized access or suspicious activity. Collected and examined logs from Palo Alto firewalls, IDS/IPS systems, Windows Domain Controllers (DC), Cisco applications and antivirus/anti malware software (TrendMicro, McAfee) to support incident containment and investigation. Conducted vulnerability assessments using Qualys Guard, prioritizing remediation efforts based on risk levels. Monitored email security platforms (Proofpoint, Mimecast, Microsoft 365 Defender) to detect phishing and email-borne threats. Utilized IDS, IPS, DLP, and endpoint protection tools (TrendMicro, McAfee) for comprehensive threat detection and prevention. Performed detailed log analysis from Palo Alto firewalls, Windows Domain Controllers, Cisco applications, and antivirus systems to support investigations. Collaborated in root cause analysis and system restoration, coordinating with IT teams to prevent recurrence of incidents.
Education
Bachelor of Engineering in Computer Science (B.TECH) - GITAM University
2018 - 2022 · Afghanistan
Certifications
No certifications added yet
Interested in this developer?
Profile Score Breakdown
Profile Overview
Skills (42)
Click a skill to find developers with the same skill