About
SOC Analyst with 1.5+ years of hands-on Security Operations Center experience, monitoring security alerts and logs from SIEM platforms (Wazuh, QRadar), triaging 100+ daily alerts, and investigating 25-75 incidents spanning phishing, malware, credential abuse, and unauthorized access to determine root cause. Experienced in event correlation and fine-tuning SIEM rules to reduce false positives, verifying IOCs (IPs, domains, hashes, URLs), and applying threat intelligence to ongoing investigations. Working knowledge of EDR monitoring (Endpoint Central), vulnerability assessment (Nessus, Nmap), TCP/IP networking, and malware/web-proxy investigation concepts, with incident documentation aligned to ISO 27001 and NIST standards. CRTOM-certified and currently pursuing Certified Ethical Hacker (CEH), looking to grow into a SOC Analyst role with deeper exposure to SOAR automation, KQL, and DLP administration.
Skills & Expertise (53)
Work Experience
SOC Analyst
Servcrust Pvt. Ltd.
Jan 2026 - Apr 2026
Monitored security alerts and events via Wazuh SIEM, performing initial triage to identify suspicious activity. Analyzed logs from endpoints, authentication systems, and firewalls, using Wireshark and tcpdump for packet-level inspection during network-related investigations. Investigated phishing emails, suspicious URLs, and malicious attachments; verified IOCs including IPs, domains, hashes, and URLs. Monitored endpoint alerts via Endpoint Central and logged, tracked, and escalated incidents through ServiceDesk Plus. Escalated critical and high-severity alerts to senior teams, coordinating with internal stakeholders during incident handling. Supported vulnerability assessment activities and maintained incident documentation per SOC procedures.
SOC Analyst
CYE Technology Pvt. Ltd.
Mar 2025 - Jan 2026
Triaged 100+ daily SIEM alerts across firewall, IDS/IPS, endpoint, authentication, and cloud logs; validated authenticity and prioritized escalation by severity. Investigated 25-75 security incidents — phishing, malware, credential abuse, lateral movement, unauthorized access — and documented findings for L2/IR handoff. Verified phishing and malware indicators through email-header analysis, URL inspection, and file-hash checks using VirusTotal and Hybrid Analysis. Documented incidents and escalations per ISO 27001 and NIST-aligned controls, sustaining audit readiness.
Security Researcher
24/7.ai
Sep 2024 - Jan 2025
Researched attacker techniques — phishing, privilege escalation, lateral movement, data exfiltration — across web apps, APIs, and cloud infrastructure. Analyzed binaries, scripts, macros, and configs statically to flag malicious logic and IOCs. Ran dynamic malware analysis in sandboxed environments to profile execution behavior, persistence, and C2 communication.
Education
Bachelor of Technology (B.Tech), Computer Science & Engineering (IoT) - Aditya University
- 2024 · Afghanistan
Cloud Trainee — Azure Cloud Internship - Technical Hub
- 2022 · Afghanistan
Certifications
No certifications added yet
Interested in this developer?
Profile Score Breakdown
Profile Overview
Skills (53)
Click a skill to find developers with the same skill