Back to Developers
Ankit Mishra

Ankit Mishra

SOC Analyst

Odisha, India 1+ yrs exp 88 · Excellent

About

Security analyst with a year of hands-on experience in security testing, log analysis, and incident triage across 30+ production environments. Strong on the OWASP Top 10 and attacker techniques, with working knowledge of SIEM, MITRE ATT&CK, and phishing and malware analysis. CompTIA Security+ certified. Comfortable in 24x7 rotational SOC shifts and available to join immediately. Looking to apply an attacker's mindset to alert monitoring, detection, and incident response as a SOC Analyst.

Skills & Expertise (46)

ISO 27001 Intermediate
6.0/10
1
Years Exp
CVSS v3.1 Intermediate
6.0/10
1
Years Exp
NIST 800-53 Intermediate
6.0/10
1
Years Exp
OWASP Top 10 Intermediate
6.0/10
1
Years Exp
Cyber Kill Chain Intermediate
6.0/10
1
Years Exp
MITRE ATT&CK Intermediate
6.0/10
1
Years Exp
Log Analytics Intermediate
6.0/10
1
Years Exp
Security Event Triage Intermediate
5.5/10
1
Years Exp
Brute-force Detection Intermediate
5.5/10
1
Years Exp
Phishing and Malware Analysis Intermediate
5.5/10
1
Years Exp
IOC extraction Intermediate
5.5/10
1
Years Exp
log correlation Intermediate
5.5/10
1
Years Exp
Anomaly Detection Intermediate
5.5/10
1
Years Exp
alert monitoring Intermediate
5.5/10
1
Years Exp
escalation Intermediate
5.5/10
1
Years Exp
Severity Classification Intermediate
5.5/10
1
Years Exp
Incident Detection and Response Intermediate
5.5/10
1
Years Exp
Metasploit Intermediate
5.0/10
1
Years Exp
SQLmap Intermediate
5.0/10
1
Years Exp
ServiceNow Intermediate
5.0/10
1
Years Exp
Jira Intermediate
5.0/10
1
Years Exp
AWS Intermediate
5.0/10
1
Years Exp
IAM Intermediate
5.0/10
1
Years Exp
S3 Intermediate
5.0/10
1
Years Exp
Lambda Intermediate
5.0/10
1
Years Exp
CloudTrail Intermediate
5.0/10
1
Years Exp
Azure Intermediate
5.0/10
1
Years Exp
Bash Intermediate
5.0/10
1
Years Exp
Python Intermediate
5.0/10
1
Years Exp
Windows Intermediate
5.0/10
1
Years Exp
LINUX Intermediate
5.0/10
1
Years Exp
OWASP ZAP Intermediate
5.0/10
1
Years Exp
WIRESHARK Intermediate
5.0/10
1
Years Exp
Nmap Intermediate
5.0/10
1
Years Exp
Burp Suite Intermediate
5.0/10
1
Years Exp
Nessus Intermediate
5.0/10
1
Years Exp
Entra ID Intermediate
5.0/10
1
Years Exp
Windows Active Directory Intermediate
5.0/10
1
Years Exp
CrowdStrike Intermediate
5.0/10
1
Years Exp
Defender Intermediate
5.0/10
1
Years Exp
EDR Intermediate
5.0/10
1
Years Exp
KQL Intermediate
5.0/10
1
Years Exp
Elastic Intermediate
5.0/10
1
Years Exp
Splunk Intermediate
5.0/10
1
Years Exp
Microsoft Sentinel Intermediate
5.0/10
1
Years Exp
ELK

Work Experience

Security Researcher

Independent

Jan 2026 - Present

Operate a production Azure honeypot 24x7, capturing live attacker activity. Triage the telemetry daily, classify each event, and map techniques to MITRE ATT&CK across all 14 enterprise tactics — the same detect-triage-classify loop a SOC runs on real alerts. Dissect phishing, malware, and web-application attacks against the honeypot, then document attacker TTPs and the detection logic a blue team uses to catch them. Reverse-engineered the Axios npm supply-chain attack (cross-platform RAT delivery), mapping the full compromise window and 3 distinct detection signals for defensive teams. Developed a phishing-detection pipeline in Python (scikit-learn, NLTK) reaching ~90% accuracy across a labelled dataset of phishing and legitimate emails. Authored 5 technical articles on cloud threat detection, supply-chain attacks, and AI/LLM threats, read by a combined security audience on Medium. Completing the TryHackMe SOC Level 1 path and HackTheBox defensive labs.

Penetration Tester L1

Qualysec Technologies Pvt. Ltd.

Jan 2025 - Oct 2025

Triaged security findings across 30+ production environments — classified severity, validated false positives, and escalated confirmed issues to client security teams following set procedures. Owned 120+ high-risk findings end to end: intake, investigation, remediation tracking with engineering teams, fix validation, and SLA-based closure. Correlated application, security, and access logs (including AWS CloudTrail) across engagements to surface suspicious patterns, anomalies, and indicators of compromise — the same analytical workflow as SOC alert triage. Executed 50+ web, API, and AWS cloud security assessments covering the OWASP Top 10 (SQLi, XSS, CSRF, SSRF, IDOR), authentication flaws, and misconfigurations. Uncovered a previously undocumented DOM-based vulnerability in a client application and drove the full fix: reproduction, root-cause analysis, validation, and secure-coding guidance. Produced 50+ technical reports with reproduction steps and remediation roadmaps, communicating risk clearly to both engineering teams and non-technical stakeholders.

Education

B.Sc. in Information Technology & Management - Lakshya Institute of Technology

- 2024 · Afghanistan

Certifications

CompTIA Security+

· 2024

Google Cybersecurity Professional Certificate

· 2024

HackTheBox — Hacker Rank; Certified CTF Player, Cyber Apocalypse

· 2023

Interested in this developer?

Profile Score Breakdown

📷 Photo 10/10
📄 Resume 10/10
💼 Job Title 10/10
✍️ Bio 10/10
🛠️ Skills 20/20
🎓 Education 10/10
⏱️ Experience 8/15
💰 Rate 0/5
🏆 Certs 5/5
Verified 5/5
Total Score 88/100

Profile Overview

Member sinceJul 2026