About
Trusted Cyber Security Professional with 4.5 years’ experience of protecting companies against both internal and external threats. I have worked on multiple domains of Cyber Security, including SIEM Tools, EDR tools, phishing, threat Hunting and have been part of growing SOC teams. I have also worked on SOC projects for major clients.
Skills & Expertise (43)
Work Experience
System Analyst
ICICI
Sep 2021 - Dec 2022
Part of the Security Operations Centre in ICICI. Roles and responsibility working as system analyst L1 investigating the real time incidents with the help of the security tools. Creating the daily reports and escalating the compromised incidents to the L2 for the deeper investigations.
Cyber Security Analyst
CYDERES
Jan 2023 - Apr 2025
Part of Cyber Security advisory team and working with multiple clients on various domains of cyber security. Providing consulting services on the same. Designed and documented Security Operations Centre (SOC) processes for a major multinational automobile client. Key responsibilities in the project included investigating logs from Windows, Linux, Cloud (AWS, Azure), handling complex security incidents that require deep investigation and correlation of multiple data source, analyzing TTPs (Tactics, Techniques and procedures) of cyber threats using frameworks like MITRE ATT&CK, creating and documenting use cases for implementation in Microsoft Sentinel (SIEM Tool) and Jira and Service Now (Ticketing tool), drafting escalation matrix to the customers, etc.
Senior Security Analyst
Cognizant
Apr 2025 - Present
Working as a contingent worker at Cognizant, supporting a Senior SOC role in a 24×7 MSSP environment by performing deep-dive security investigations and acting as the primary point of contact for Cognizant clients, supporting approximately 15 MSSP customers. Classifying security incident based on severity type like Malware, Phishing, unauthorized access, etc. and business impact and triage the alerts based on SLA period. Current job role involves technical Security Analyst. Single point of contact for two primary clients in Australia – Handling entire SOC operations for them in their off-hours. Working on SIEM tools like Microsoft Sentinel, Qradar and Splunk to monitor and respond to any suspicious activity in the company and client's network. Working on EDR tools like Crowdstrike and Microsoft Defender suite.
Education
MBA - HYD
- 2020 · Afghanistan