About
Cybersecurity professional with 2+ years of hands-on experience in SOC operations and detection engineering. Skilled in monitoring and triaging security alerts from Splunk and Microsoft Sentinel/MDE, investigating endpoint and network telemetry, and escalating incidents with clear documentation. Reduced false-positive alert volume by 30–40% through structured SIEM rule tuning, lookup tables, and exclusion lists. Experienced with Microsoft Defender for Endpoint (MDE), SentinelOne, ServiceNow, Jira, and XSOAR in a 24/7 SOC environment. Solid grounding in TCP/IP, DNS, Windows and Linux log analysis, and MITRE ATT&CK. Comfortable in rotational shift schedules including nights and weekends. Eager to grow within an L1 SOC team while contributing reliable triage, documentation, and escalation support.
Skills & Expertise (41)
Work Experience
Junior Cyber Security Engineer (Detection Engineering)
Dehaze Labs
Oct 2024 - Feb 2026
Tuned and maintained existing SIEM detection rules in Splunk (SPL), Microsoft Sentinel/MDE (KQL), and SentinelOne to improve fidelity and reduce noise. Created lookup tables and exclusion lists to suppress benign activity, reducing false-positive alerts by approximately 30–40%. Authored new SIEM detections in SPL and KQL for specific threat scenarios under senior guidance. Wrote and optimized Anvilogic macros, and migrated detections from Splunk to Anvilogic and from Microsoft Sentinel to Anvilogic. Mapped detection logic to MITRE ATT&CK techniques. Built Akamai alerts to detect DDoS-related traffic patterns. Built and maintained 5+ Splunk dashboards. Supported SOC analysts by reviewing escalated logs and alert patterns. Tracked detection work, tuning requests, and SOC follow-ups across Jira, ServiceNow, and XSOAR.
Security Analyst Intern (SOC / VAPT)
TechdefenceLabs Solutions Pvt Ltd
Dec 2023 - Apr 2024
Practiced full SOC analyst workflows including alert monitoring, initial triage, severity assessment, endpoint investigation basics, and escalation procedures. Reviewed Windows event logs, Linux logs, and network traffic samples. Conducted vulnerability assessments using industry-standard scanners and performed basic penetration testing exercises. Gained hands-on exposure to incident-handling procedures, ticketing workflows, and standard SOC documentation practices.
Education
B.Tech — Computer Science Engineering (Cybersecurity) - Parul Institute of Engineering & Technology
- 2024 · Afghanistan
Certifications
No certifications added yet
Interested in this developer?
Profile Score Breakdown
Profile Overview
Availability Details
Visa Status
Citizen
Relocation
Open to Relocation
Skills (41)
Click a skill to find developers with the same skill