Back to Developers
Sravani Naidu

Sravani Naidu

Cyber Security Analyst

India
80
Profile Score

About

Cybersecurity Analyst with nearly 3 years of experience in IT security operations, specializing in real-time monitoring, log analysis, and incident response. Proven ability to analyze logs from SIEM tools including Splunk, QRadar, and Microsoft Sentinel, and troubleshoot logging issues. Experienced in handling and investigating alerts from EDR tools such as Microsoft Defender, SentinelOne, and CrowdStrike. Expertise in incident handling, threat detection, network traffic monitoring, identifying and classifying attempted compromises, and applying the MITRE ATT&CK framework to understand attacker behavior. Responsible for escalating security incidents to L2/L3 analysts and ensuring timely closure, contributing to effective threat hunting and security posture enhancement.

Skills & Expertise (27)

Security Monitoring & Incident Response Advanced
8.8/10
3
Years Exp
Threat Detection & Analysis Advanced
8.6/10
3
Years Exp
SIEM Operations (Splunk, IBM QRadar) Advanced
8.5/10
3
Years Exp
Vulnerability Assessment & Remediation Advanced
8.4/10
3
Years Exp
Network Security (TCP/IP, DNS, VPN, Firewalls) Advanced
8.3/10
3
Years Exp
Operating Systems: Windows, Linux Scripting(Knowledge): Python, PowerShell, Bash Networking: TCP/IP, DNS, HTTP, SMTP, LDAP, Firewalls, VPN, OSI Models, WAN, LAN Security Frameworks: MITRE ATT&CK, ISO 27001 Threat Intelligence: Virus Total, AbuseIPDB, IPinfo, Cisco Talos Vulnerability Management: Nessus Ticketing Systems: ServiceNow Cloud Security: Microsoft Azure Email Security: Mimecast, O365 Defender EDR/Endpoint Security: Microsoft Defender, SentinelOne, CrowdStrike SIEM: IBM QRadar, Splunk, Microsoft Sentinel Scripting Basics (Python, PowerShell, Bash) Compliance (ISO 27001, SOC 2) EDR/XDR Tools Cloud Security (AWS/Azure/GCP) Windows/Linux Security Penetration Testing Support Security Controls & Policy Implementation IDS/IPS & Endpoint Security Log Analysis & Root Cause Analysis Vulnerability Scanning incident reporting

Work Experience

Data Security Analyst

Alorica

Mar 2023 - Dec 2025

Performed real-time monitoring, investigation, analysis, reporting, and escalation of security events across SIEM tools including IBM QRadar, Splunk, and Microsoft Sentinel within a 24/7 SOC environment, contributing to threat hunting and vulnerability assessments. Escalated security incidents based on client SLAs, providing detailed analysis and actionable recommendations to enhance customer security posture and mitigate threats. Performed initial triage of security incidents, identifying and categorizing threats for further investigation using analytical and problem-solving skills with meticulous attention to detail. Analyzed crucial alerts and performed in-depth log analysis using SIEM tools, identifying malicious URLs and suspicious IPs from IDS events, and blocking malicious websites on proxies to prevent virus downloads. Prepared daily, weekly, and monthly security reports as per client requirements, ensuring clear communication of security status and adherence to SLAs. Investigated and created cases for security threats, forwarding them to the Onsite SOC team for further action, demonstrating strong case management skills. Handled and investigated alerts from EDR tools such as Microsoft Defender, SentinelOne, and CrowdStrike, performing detailed threat analysis and contributing to vulnerability management. Monitored and analyzed network traffic and events generated by various security and network tools including Firewalls, Proxy servers, AV, IPS/IDS, Cloud platforms (Amazon, Azure, Google), Windows, and Linux servers, demonstrating strong networking fundamentals and Operating Systems knowledge. Utilized ServiceNow for recording and managing security investigations and incidents, ensuring efficient case management and adherence to Playbooks. Managed the escalation of security incidents to L2/L3 teams, ensuring follow-up for timely closure and adherence to security operations protocols and continuous improvement. Coordinated with Network and Server teams regarding security activities and technical issues, creating vulnerability and remedy reports for users, and troubleshooting technical issues. Reduced false positives by 20% and improved overall response time through meticulous log analysis and SIEM tuning, enhancing operational efficiency and supporting root cause analysis. Executed containment actions, including endpoint isolation, account disabling, and blocking malicious domains and IP ranges, to neutralize threats and support incident response. Managed security incidents end-to-end, encompassing preparation, detection, containment, eradication, recovery, and documenting lessons learned for continuous improvement and SOC evolution. Followed end-to-end Incident Investigation and Incident Response processes, ensuring investigations were closed within defined SLAs and contributing to security operations. Adhered to SOC playbooks and response procedures, supporting threat hunting activities during investigations and leveraging analytical skills for threat analysis. Reduced response time by 30% by leveraging SOAR automation for streamlined incident handling and efficient security operations, demonstrating advanced technical skills.

Education

Bachelor's Degree - Kakinada Institute of Engineering and Technology

- 2021 · Afghanistan

Interested in this developer?

Profile Score Breakdown

📷 Photo 10/10
📄 Resume 10/10
💼 Job Title 10/10
✍️ Bio 10/10
🛠️ Skills 20/20
🎓 Education 10/10
⏱️ Experience 5/15
💰 Rate 0/5
🏆 Certs 0/5
Verified 5/5
Total Score 80/100

Profile Overview

Member sinceFeb 2026

Availability Details

Visa Status

Citizen

Relocation

Open to Relocation

Skills (27)

Security Monitoring & Incident Response Threat Detection & Analysis SIEM Operations (Splunk, IBM QRadar) Vulnerability Assessment & Remediation Network Security (TCP/IP, DNS, VPN, Firewalls) Operating Systems: Windows, Linux Scripting(Knowledge): Python, PowerShell, Bash Networking: TCP/IP, DNS, HTTP, SMTP, LDAP, Firewalls, VPN, OSI Models, WAN, LAN Security Frameworks: MITRE ATT&CK, ISO 27001 Threat Intelligence: Virus Total, AbuseIPDB, IPinfo, Cisco Talos +17 more