Back to Developers
Mouli kotha

Mouli kotha

Security Analyst

Hyderabad
80
Profile Score

About

Cyber Security professional with 5 years of experience in SOC operations, system troubleshooting, incident response, and threat mitigation. Skilled in real-time monitoring, SIEM (Splunk, QRadar, Microsoft Sentinel), endpoint security (CrowdStrike Falcon, SentinelOne), SOAR (Splunk SOAR, Cortex XSOAR), malware analysis, cloud security monitoring (AWS, Azure), and phishing mitigation. Experienced in 24×7 SOC operations, analyzing alerts, investigating threats, performing root cause analysis, and collaborating with IT and compliance teams. Adept at optimizing SOC processes, reducing false positives, mentoring junior analysts, and maintaining strong organizational security posture.

Skills & Expertise (39)

SOC Expert
9.0/10
5
Years Exp
Root Cause Analysis Expert
9.0/10
5
Years Exp
Eradication Expert
9.0/10
5
Years Exp
EDR/XDR Tools Expert
9.0/10
5
Years Exp
Containment Expert
9.0/10
5
Years Exp
Triage Expert
9.0/10
5
Years Exp
Incident Response Expert
9.0/10
5
Years Exp
Threat Intelligence Expert
9.0/10
5
Years Exp
SIEM tools Expert
8.8/10
5
Years Exp
Phishing Mitigation Expert
8.8/10
5
Years Exp
Phishing Handling Expert
8.8/10
5
Years Exp
Cloud Security Expert
8.8/10
5
Years Exp
MITRE ATT&CK Expert
8.8/10
5
Years Exp
SOAR Tools Expert
8.8/10
5
Years Exp
Malware Analysis Expert
8.8/10
5
Years Exp
CloudTrail Advanced
8.5/10
4
Years Exp
Splunk Enterprise Security Advanced
8.5/10
4
Years Exp
IBM QRadar Advanced
8.5/10
4
Years Exp
Microsoft Sentinel Advanced
8.5/10
4
Years Exp
CrowdStrike Falcon Advanced
8.5/10
4
Years Exp
SentinelOne Advanced
8.5/10
4
Years Exp
Microsoft Defender for Endpoint Advanced
8.5/10
4
Years Exp
Defender for cloud Advanced
8.5/10
4
Years Exp
Azure Security Center Advanced
8.5/10
4
Years Exp
AWS GuardDuty Advanced
8.5/10
4
Years Exp
Splunk SOAR Advanced
8.5/10
4
Years Exp
Any.Run sandbox Advanced
8.5/10
4
Years Exp
Hybrid Analysis Advanced
8.5/10
4
Years Exp
VirusTotal Advanced
8.5/10
4
Years Exp
Cortex XSOAR Advanced
8.5/10
4
Years Exp
ticketing tools Advanced
8.0/10
4
Years Exp
ServiceNow Advanced
8.0/10
4
Years Exp
Remedy Advanced
8.0/10
4
Years Exp
Endpoint Support Advanced
7.5/10
3
Years Exp
patch management Advanced
7.5/10
3
Years Exp
Active Directory Advanced
7.5/10
3
Years Exp
LINUX Advanced
7.5/10
3
Years Exp
Windows Server Advanced
7.5/10
3
Years Exp
System Administration Advanced
7.5/10
3
Years Exp

Work Experience

System Engineer

Divis Laboratories Pvt Ltd

Oct 2020 - Jan 2022

Provided system troubleshooting and administration for Windows and Linux servers. Managed user accounts, permissions, and Active Directory administration. Installed and maintained software, patches, and updates across enterprise systems. Monitored system performance, event logs, and endpoint health to ensure operational stability. Supported endpoint security measures, including antivirus deployment and updates. Generated reports on system performance, incidents, and resolutions. Assisted in basic security incident response and vulnerability remediation. Provided end-user support for hardware and software issues.

Security Analyst

Tata Consultancy Services (TCS)

Mar 2022 - Jan 2026

Monitor enterprise security alerts in 24×7 SOC environment using SIEM tools: Splunk, QRadar, Microsoft Azure Sentinel. Investigate endpoint threats using EDR/XDR solutions: CrowdStrike Falcon, SentinelOne, Microsoft Defender for Endpoint. Conduct incident response, including triage, containment, eradication, post-incident reporting, and root cause analysis. Perform proactive threat hunting leveraging MITRE ATT&CK framework and threat intelligence feeds. Detect, analyze, and mitigate phishing attacks, malicious emails, and suspicious links. Analyze endpoint and application logs, firewall alerts, and threat intelligence feeds for anomalies. Utilize SOAR tools (Splunk SOAR, Cortex XSOAR) to automate incident workflows and improve SOC efficiency. Conduct malware analysis using VirusTotal, Hybrid Analysis, Any.Run Sandbox. Monitor cloud security environments (AWS GuardDuty, CloudTrail, Azure Security Center, Defender for Cloud). Collaborate with IT, risk, and compliance teams to remediate vulnerabilities and misconfigurations. Generate SOC dashboards, KPIs, metrics, and reports for management and compliance. Tune SIEM correlation rules to reduce false positives and improve detection accuracy. Participate in threat intelligence sharing, vulnerability assessments, and internal audits. Investigate advanced persistent threats (APTs), ransomware, and zero-day exploits. Conduct root cause analysis and post-incident reviews, implementing preventive measures. Assist in phishing simulations and awareness campaigns to educate employees. Support cloud and endpoint security monitoring, ensuring compliance with organizational policies. Identify gaps and recommend SOC process improvements, enhancing detection and response efficiency. Mentor junior analysts on alert investigation, incident handling, and SOC best practices. Monitored alerts and created/managed tickets in ServiceNow based on severity, ensuring timely escalation and closure.

Education

B.Tech (Mech) - Srinivasa Institute of Engineering and Technology (JNTUK)

- 2020 · Afghanistan

Interested in this developer?

Profile Score Breakdown

📷 Photo 10/10
📄 Resume 10/10
💼 Job Title 10/10
✍️ Bio 10/10
🛠️ Skills 20/20
🎓 Education 10/10
⏱️ Experience 5/15
💰 Rate 0/5
🏆 Certs 0/5
Verified 5/5
Total Score 80/100

Profile Overview

Member sinceMar 2026

Availability Details

Visa Status

Need Sponsorship

Relocation

Depends on Offer

Skills (39)

SOC Root Cause Analysis Eradication EDR/XDR Tools Containment Triage Incident Response Threat Intelligence SIEM tools Phishing Mitigation +29 more