Back to Developers
Naveen Reddy

Naveen Reddy

Network Security Engineer

Gurugram, India 4+ yrs exp 90 · Outstanding

About

SOC Analyst with 4+ years of experience in Security Operations Center (SOC) operations, specializing in SIEM monitoring, EDR investigations, incident response, and threat hunting. Currently supporting enterprise security operations using CrowdStrike Next-Gen SIEM and CrowdStrike Falcon, handling 4–5 high-severity incidents daily escalated by L1 teams. Reduced false positives by 25% through alert fine-tuning and playbook optimization. Experienced in phishing and BEC investigations using Proofpoint TAP, while maintaining 98%+ SLA compliance in a 24x7 SOC environment.

Skills & Expertise (24)

Incident Response Advanced
8.2/10
3
Years Exp
Alert Triage Advanced
8.0/10
3
Years Exp
Security Operations Advanced
8.0/10
3
Years Exp
Threat Detection Advanced
8.0/10
3
Years Exp
SIEM tuning Advanced
8.0/10
3
Years Exp
Threat Hunting Advanced
7.8/10
3
Years Exp
CrowdStrike Falcon Advanced
7.8/10
3
Years Exp
Endpoint Security Advanced
7.6/10
3
Years Exp
Microsoft Defender Advanced
7.6/10
3
Years Exp
Log Monitoring Advanced
7.6/10
3
Years Exp
Exabeam Advanced
7.4/10
3
Years Exp
Vulnerability Management Advanced
7.4/10
3
Years Exp
Malware Analysis Intermediate
7.0/10
3
Years Exp
MITRE ATT&CK Intermediate
7.0/10
3
Years Exp
Trend Micro CrowdStrike Next-Gen SIEM Proofpoint TAP Phishing Analysis URL & attachment analysis Azure AD Microsoft Entra ID IOC Analysis Threat Intelligence log correlation

Work Experience

Network Security Engineer

Mynd Integrated Solutions Pvt LTD.

Sep 2024 - Present

Monitoring and investigating security alerts across enterprise SIEM platforms within a 24x7 SOC environment. Performing Endpoint Detection & Response (EDR) investigations including process analysis, containment, remediation support, and forensic artifact review. Utilizing SOAR workflows to automate response actions and extract forensic artifacts during endpoint investigations. Handling 4–5 medium to Critical & high severity incidents daily and which are escalated by the L1 teams as per escalation matrix. Providing technical updates during incident bridge calls and collaborating with NOC, IT, and business teams for timely containment and remediation. Supporting implementation of incident response playbooks and managing end-to-end incident lifecycle from detection to closure, including documentation, artifact validation, follow-ups, and root cause analysis. Minimized false positive alerts by 20% through SIEM use-case fine-tuning, alert validation, and detection optimization. Monitoring and validating behavioral detections and managed threat intelligence alerts (Overwatch) to identify suspicious activities. Leveraging AI-assisted investigation tools such as DropZone AI to accelerate alert triage, validate false positives, and enhance threat analysis efficiency. Performing detailed log correlation across firewalls, domain controllers, endpoints, servers, and network devices to identify anomalous patterns. Monitoring SIEM health including log ingestion status, EPS utilization, and log volume deviations to ensure continuous visibility and compliance. Investigating phishing, BEC, and email-based attacks using enterprise email security platforms (Proofpoint TAP), including attachment and URL defense analysis. Managing SOC security mailbox, investigating user-reported security concerns, validating suspicious emails/URLs/files, and providing remediation guidance while maintaining SLA adherence. Conducting proactive threat hunting using OSINT-based IOCs and internal threat intelligence feeds to identify threats in the Environment. Monitoring real-time XDR alerts and endpoint behavioral detections to identify threats. Monitoring risky sign-ins, privileged access, and user activity in cloud identity platforms (Microsoft Entra ID). Supporting DLP and USB monitoring by tracking sensitive data access and blocking unauthorized device usage, reducing potential data exfiltration risks by approximately 20%. Supporting vulnerability management by escalating web application vulnerabilities and tracking remediation through Jira and ServiceNow. Maintaining Incident, False Positive, USB Activity, and IOC trackers and preparing Daily/Weekly SOC reports while maintaining 98%+ SLA adherence.

SOC Analyst – Azure

Sarag Systems Pvt LTD.

Jul 2021 - Aug 2024

Monitoring security events from SIEM, firewalls, and email security gateways in a 24x7 SOC environment. Performing initial alert triage, validation, and categorization based on severity. Conducting basic log analysis and event correlation before escalating to L2/L3 teams. Escalating high-severity incidents as per defined escalation matrix. Validating and blocking IOCs received from threat intelligence feeds. Maintaining Incident Tracker, False Positive Tracker, and Whitelisting records. Preparing Daily and Weekly SOC operational reports. Coordinating with IT and NOC teams for initial investigation support. Ensuring SLA adherence while handling security alerts.

Education

B. Tech in Mechanical Engineering - VGNT – Vignan Institute of Technology and Sciences

- 2021 · Afghanistan

Certifications

No certifications added yet

Interested in this developer?

Profile Score Breakdown

📷 Photo 10/10
📄 Resume 10/10
💼 Job Title 10/10
✍️ Bio 10/10
🛠️ Skills 20/20
🎓 Education 10/10
⏱️ Experience 15/15
💰 Rate 0/5
🏆 Certs 0/5
Verified 5/5
Total Score 90/100

Profile Overview

Member sinceJun 2026

Availability Details

Relocation

Open to Relocation