Back to Developers
Md Khan

Md Khan

Security Analyst

Uttar Pradesh, India
80
Profile Score

About

Security Analyst with 3+ years of hands-on experience in cybersecurity and 7+ years in telecom operations, specializing in SOC operations, SIEM tools, and security monitoring. Seeking to leverage strong expertise in telecom infrastructure and cybersecurity to strengthen security operations, threat detection, and risk management within a dynamic organization.

Skills & Expertise (43)

SIEM & Security Monitoring Expert
9.1/10
4
Years Exp
Network Security Expert
8.9/10
9
Years Exp
Threat Detection Expert
8.8/10
4
Years Exp
ArcSight Advanced
8.6/10
4
Years Exp
Splunk Advanced
8.6/10
4
Years Exp
basic Linux command-line troubleshooting VPN Incident Management ITSM Tools ServiceNow BMC Remedy Jira Telecom Security LTE (3GPP TS 33.401) 5G (3GPP TS 33.501) EPS-AKA 5G-AKA Protocols TCP/IP DNS HTTP/HTTPS SSL/TLS SSH IPSec OSS Firewall IDS/IPS Proxy Windows/Linux log monitoring Vulnerability & Endpoint Security Nessus/Tenable.sc scanning Trellix ePO endpoint protection monitoring Telecom Infrastructure Tools ENM Windows & Linux log analysis SHM Winfio NetAct Remote Administration Putty SecureCRT FileZilla Operating systems

Work Experience

Back-Office RAN Operations & Integration Engineer

Ericsson India Global Services Pvt. Ltd.

Nov 2018 - Mar 2022

Supported 2G, 3G, 4G, and 5G networks for site outages, cell failures, and performance degradation. Monitored and maintained network KPIs (Accessibility, Integrity, Mobility, Retainability, Throughput) for LTE and 5G-NR. Handled critical incidents by coordinating with Core, IP, EPC, Transmission, OSS, RF, and Performance teams, while providing on-call L2/L3 support for commissioning, hardware replacement, alarm troubleshooting, and service restoration. Performed LTE/5G software upgrades, rollbacks, license loading, and bulk upgrades, working on Ericsson Basebands (5212/5216/6630), BBU6620/30, DUW/DUG/TCU, and 6K routers via ENM. Configured and optimized 2G/3G/4G sites, including TRX/sector additions, neighbor loading, and LTE (G900/G1800) reconfiguration to improve network performance. Integrated and troubleshot 4G and 5G, including alarms, PM/CM dumps, counter activation, and OSS-RC/ENM node definitions. Diagnosed and resolved Fiber, VSWR, TMA, RET, RSSI, transport, and IP configuration issues impacting mobile services.

LSMR & Networking Engineer

Samsung India Electronics Pvt. Ltd. (Payroll: Accord Synergy Ltd.)

Mar 2018 - Nov 2018

Performed daily alarm rectification, monitoring, troubleshooting, and clearance activities. Led a team of 12 engineers, managing report preparation and task allocation. Provided L1 support for alarm clearance to field engineers, including pre-launch O&M alarm monitoring and resolution. Troubleshot network-related issues, ensuring smooth operations. Prepared daily outage reports and tracked NOC reachability. Compiled and presented weekly alarm status reports to clients.

FM & BSS Engineer

Ericsson India Pvt. Ltd. (Payroll: Vedang Cellular Services Pvt. Ltd.)

Jul 2014 - Nov 2017

Worked with Nokia MR10 BTS (FSMF, FSME, FSMD System Module) and Flexi BTS (ESMA, ESEA). Installed and commissioned 2G, 3G, and 4G (TDD/FDD) sites, performed alarm monitoring, rectification, troubleshooting, PoP migration, and site re-homing. Installed, commissioned, and maintained Nokia 2G, 3G, and 4G networks, along with microwave installation, commissioning, and alignment (Ceragon IP10, IP20). Resolved site outages, transmission/TRX/VSWR issues, hardware faults, and conducted RFI, EMF, and loss surveys. Configured E1 routing, DDF punching, and microwave alignment for wireless networks, including loop break tests, E1 checks, and media routing via microwave and fiber from BSC to BTS.

Security Analyst

Ericsson India Global Services Pvt. Ltd.

Apr 2022 - Present

Monitor and triage security alerts in a 24x7 SOC environment using ArcSight and Splunk SIEM, performing log analysis, correlation, and threat investigation. Use SIEM tools such as ArcSight, and Splunk to detect potential security breaches, conduct root cause analysis (RCA), and escalate incidents as per the Incident Management Framework. Monitor and investigate security events from firewalls, IDS/IPS, proxy, Trellix ePO, Windows/Linux servers, databases, load balancers, and cloud platforms. Analyzing brute-force attempts, malware alerts, suspicious logins, privilege escalation, and anomalous network behavior. Performing L1 alert validation and L2-level in-depth investigation including RCA, impact analysis, and incident classification. Perform vulnerability assessments using Nessus/Tenable, identify risks, and coordinate remediation with stakeholders. Ensure end-to-end Incident Investigation and Response, maintaining compliance with defined SLA and security policies. Escalated high-severity security incidents as per SLA and managed end-to-end incident lifecycle in BMC Remedy, ServiceNow, and Jira, ensuring proper tracking and closure. Conduct knowledge-sharing sessions with team members on complex incident issues and lessons learned from other team members. Analyze daily and monthly incident reports to identify security trends and assess compliance metrics. Provide technical support and troubleshooting for end-users, addressing hardware, software, and network security issues. Preparing daily, weekly and monthly SOC reports to track incident trends and compliance metrics. Collaborating with MSSP and cross-functional teams for containment and recovery actions.

Education

B. Tech in Electronics and Instrumentation - Greater Noida Institute of Technology (GNIOT)

2010 - 2014 · Afghanistan

Interested in this developer?

Profile Score Breakdown

📷 Photo 10/10
📄 Resume 10/10
💼 Job Title 10/10
✍️ Bio 10/10
🛠️ Skills 20/20
🎓 Education 10/10
⏱️ Experience 5/15
💰 Rate 0/5
🏆 Certs 0/5
Verified 5/5
Total Score 80/100

Profile Overview

Member sinceFeb 2026

Skills (43)

SIEM & Security Monitoring Network Security Threat Detection ArcSight Splunk basic Linux command-line troubleshooting VPN Incident Management ITSM Tools ServiceNow +33 more