Skills & Expertise (58)
Work Experience
SOC Analyst
CyArt Tech LLP
Jan 2026 - Present
Designed and deployed a SOC monitoring environment using ELK Stack for centralized log ingestion, normalization, indexing, and visualization of endpoint and network telemetry. Integrated Windows Event Logs and Sysmon telemetry into SIEM pipelines enabling real-time security monitoring, event correlation, and threat detection. Developed and tuned Wazuh detection rules to identify brute-force authentication attempts, privilege abuse, repeated login failures, and anomalous system activity, while reducing false positives. Performed alert triage and incident investigations across endpoint, authentication, and network telemetry, reconstructing attack timelines and supporting escalations. Built Kibana dashboards and investigation queries to analyze event chains and surface high-fidelity alerts. Engineered Snort IDS rules for reconnaissance detection (port scans, SYN flood attempts) and validated detections through Scapy-generated simulations and Metasploit adversary testing. Performed PCAP analysis using Wireshark and vulnerability assessments using Nmap/OpenVAS to investigate threats and prioritize remediation using CVE and CVSS scoring. Applied MITRE ATT&CK framework mapping during investigations and documented incident timelines and SOC analysis reports.
Tech Intern
Fibmesh
Aug 2025 - Dec 2025
Evaluated secure deployment models for static public IP allocation (NeuConnect) including RDP, FTPS/SFTP, HTTPS APIs, and webhook services. Built controlled infrastructure environments to validate remote access paths, DNS/TLS configurations, and firewall policies. Conducted service exposure analysis, testing interface bindings, certificate configurations, and IPv4/IPv6 resolution to minimize attack surface. Implemented least-privilege firewall rules and performed controlled break-testing of connection flows. Presented security architecture and risk analysis to stakeholders and produced deployment guides and demo environments.
Education
B.E. Information Technology (Honors in Cyber Security & Privacy) - Savitribai Phule Pune University (SPPU)
2021 - 2025 · Afghanistan
Interested in this developer?
Profile Score Breakdown
Profile Overview
Availability Details
Visa Status
Citizen
Relocation
Open to Relocation