Back to Developers
Rashid Khan

Rashid Khan

Cyber Security Analyst

Mumbai
80
Profile Score

About

Experienced Cyber Security Analyst with experience in SOC, Incident response, vulnerability management and intelligence gathering. I aspire to serve an organization with sincerity and determination to succeed. I aim to occupy a responsible and challenging position in an organization by keeping abreast with the latest developments in Information Security.

Skills & Expertise (26)

Security Operations Expert
9.1/10
6
Years Exp
SIEM Advanced
8.8/10
4
Years Exp
Azure Sentinel Advanced
8.5/10
3
Years Exp
Splunk Advanced
8.3/10
3
Years Exp
CrowdStrike Advanced
8.0/10
3
Years Exp
Security Incident and Event Management Security monitoring Malware Analysis Firewalls Routers VPNs LANs TCP/IP Endpoint Protection Anti-Spam Anti-Phishing Firewall Log Monitoring IOC Threat Advisory Protocols ports Networking Concepts Log Analysis Rapid7 IDR Microsoft Defender QRadar

Work Experience

Technical support II & Handling Security operation, SOC Analyst

Sun Pharmaceutical Industries Ltd on the payrole of Globtier Infotech Private Limited

Sep 2022 - Present

Working in Security Operations Center, monitoring of SOC events, detecting and preventing the Intrusion attempts. Handling client escalated issues and presenting the reports to Clients. Responding to various security alerts, incidents for various clients and scanning for vulnerabilities using tools like Nessus. Monitoring real-time events using SIEM tools like Azure Sentinel, Splunk and Qradar. Monitoring, analyzing and responding to infrastructure threats and vulnerabilities. Collecting the logs of all the network devices and analyse the logs to find the suspicious activities. Investigate the security logs, mitigation strategies and responsible for preparing generic security incident reports. Monitoring for Security Alerts and targeted phishing sites by using SIEM tool with the help of technologies such as Watermark, Referrer, Abuse mailbox and similar sounding domains. Website Anti-Malware monitoring and real-time alerting based on anomalies detected. Malware analysis using Sandbox (cuckoo). Responsible in preparing the root cause analysis reports based on the analysis. Analyzing daily, weekly and monthly reports. Creating the tickets in ticketing tool. Taking follow ups and closing the tickets based on the client response and Artifacts. Perform detailed analysis on alerts, Categorize & Prioritize. Phishing analysis, working on ATP alerts, impossible travel attack alerts. Monitor security events from various channels (SIEM, Security Appliances, and Email). Triaging, Investigating, Containing, and Eradicating Security incidents. Work with NOC, IT, and various business units to investigate & remediate detected security incidents. Taking follow ups based on Escalation Matrix. Had good experience in working on different types of security alerts like Risky sign-in, ATP alerts, Phishing and malware analysis, Brute force alerts etc. Performing quality checks on tickets done by L1 analysts. Closing the tickets based on the Business Justification and Artifacts. Escalating cases to L2 Users, Device Owners as per case requirements & Severity. Vetting & blocking of IOCs, Getting from various sources like CERTIN. Providing inputs in bridge calls for an ongoing investigation. Handling Adhoc Customer Requests: Configure Dashboard, Fine-tuning Use cases, checking traffic Logs. Maintain Trackers: Alerts, Blocked Rogue IP, Security Advisory, white listing Tracker. Performing day-to-day operational responsibilities for accurately researching, analyzing, evaluating, and

Desktop Support

ACCUSOL (VARDHAMAN DIGITRONICS)

Jul 2017 - Nov 2019

Responding to telephone calls, email and personnel requests for technical support. Troubleshooting problems across both Windows and Mac operating system and applications. Documenting, tracking and monitoring the problem to ensure a timely resolution. Relying on instructions and pre-established guidelines to perform the functions of the job. Providing technical assistance and support for incoming queries and issues related to computer systems, software, and hardware. Resolving technical problems with Local Area Networks (LAN), Networks.

Technical Support II

TVS ELECTRONICS on the pay role of Compuworld Automation

Feb 2021 - Aug 2022

Customer Support Engineer onsite with various Clients. Handle daily technical support activities on desktop support, data network and server management. Setup desktop computers and peripherals and test network connections. Install and test desktop software applications and internet browsers. Test computers to ensure proper functioning of computer systems. Train end users on usage of computer hardware and software. Adhere to policies as per corporate manuals and directives. Resolving technical problems with Local Area Networks (LAN), Wide area Networks (WAN), and other systems.

Technical Support

KARVY INNOTECH

Dec 2019 - Jan 2020

Monitored and responded to operating and error messages. Entered commands at a computer terminal and set controls on computer and peripheral devices. Entered commands, using a computer terminal and active controls on computer and peripheral equipment to integrate and operate equipment. Monitored the system for equipment failure or errors in performance. Responded to the program error messages by finding and correcting problems or terminating the program. In charge of generating helpdesk tickets in the ticketing system and assigning the tickets to appropriate group. Solving computer related problems, troubleshooting hardware, and software issues.

Education

BSC - RML Awadh University

- · Afghanistan

LCHM - Haji Saboo Siddik Polytechnic

- · Afghanistan

MCA in Cyber Security & Cloud computing - Manipal University

- · Afghanistan

Interested in this developer?

Profile Score Breakdown

📷 Photo 10/10
📄 Resume 10/10
💼 Job Title 10/10
✍️ Bio 10/10
🛠️ Skills 20/20
🎓 Education 10/10
⏱️ Experience 5/15
💰 Rate 0/5
🏆 Certs 0/5
Verified 5/5
Total Score 80/100

Profile Overview

Member sinceMar 2026

Availability Details

Visa Status

Citizen

Relocation

Open to Relocation

Skills (26)

Security Operations SIEM Azure Sentinel Splunk CrowdStrike Security Incident and Event Management Security monitoring Malware Analysis Firewalls Routers +16 more