Kalyan Teegala
SOC Analyst
About
Possess 3+ years of total experience as a SOC Analyst in SOC. Monitoring, alerting, Incident Response and Investigation using QRadar Enterprise. Good understanding of security solutions like Anti-virus, DLP, Proxy, Firewall filtering/monitoring, IPS, Email Security, EPO and WAF. Hands-on experience with QRadar and Azure Sentinel SIEM tools for log monitoring and analysis, and ServiceNow ticketing tool. Good knowledge of networking concepts including OSI layers, subnetting, TCP/IP, ports, DNS, DHCP, firewall monitoring, content filtering and Check Point.
Skills & Expertise (30)
Work Experience
Information Security Analyst
Claro Software Solutions Pvt. Ltd.
Apr 2023 - Present
Possess 3.3 years of experience as a SOC Analyst L2 in SOC monitoring, alerting, Incident Response and Investigation using IBM QRADAR. Administrating various incidents/security alerts triggered in SIEM tool. Carrying out log monitoring and incident analysis for Firewalls, IDS, IPS, databases, web servers and other devices. Security event analysis and intrusion detection through review and analysis of events generated by IDS/IPS, firewalls, routers, databases, operating systems and security devices. Knowledge of installation, configuration and upgradation of various connectors and troubleshooting. Work closely with business units to feed data into QRadar, create network hierarchy and classify log sources. Monitoring customer networks using IBM QRadar. Performing real-time monitoring, investigation, analysis, reporting and escalation of security events from multiple log sources. Maintain keen understanding of evolving internet threats to ensure client network security. Contacting customers directly in case of high-priority incidents and assisting in attack mitigation. Determining whether incidents are true positives or false positives. Troubleshooting SIEM dashboard issues when reports are not generated or data is unavailable. Handling and mitigating attacks related to Malware, Viruses, Spoofing, Phishing, Spam and Email Monitoring. Creation of reports, dashboards and rule fine-tuning. Good understanding of OWASP Top 10, IDS, IPS, Threat Modeling and Cyber Attacks such as DOS, DDOS, MITM, SQL Injection, XSS and CSRF. Recommended design changes for network systems including router, switch and firewall configuration. Working in a 24x7 Security Operations Center monitoring SOC events and preventing intrusion attempts. Performed firewall configuration primarily through command-line interface. Monitoring, analyzing and responding to infrastructure threats and vulnerabilities. Providing daily reports with False Positive and True Positive trends. Identify, investigate and resolve security breaches and incidents. Creating dashboards on QRadar to analyze data. Initial troubleshooting for log source communication issues. Working in GSOC (Global Security Operations Center) with multiple clients. Creating reports, alerts and investigating issues identified during live traffic monitoring. Preparing RCA documents and daily/weekly/monthly reports. Handling multiple global customers and analyzing networks for potential security attacks. Supporting security incident response processes by providing incident reporting. Troubleshooting QRadar errors and resolving identified issues.
Education
MBA – Finance - Aurora's PG College
- · Afghanistan
B.Sc – MSCS - Kakatiya Degree College
- · Afghanistan
Certifications
No certifications added yet
Interested in this developer?
Profile Score Breakdown
Profile Overview
Availability Details
Visa Status
Need Sponsorship
Relocation
Open to Relocation
Skills (30)
Click a skill to find developers with the same skill