About
Dynamic and detail-oriented Security Operations Specialist with over 4.3 years of experience in IT infrastructure support and cybersecurity operations. Expertise in incident response, security monitoring, threat analysis, phishing investigation, and malware analysis. Adept at handling EDR alerts, network traffic anomalies, and authentication-related security incidents. Skilled in leveraging SIEM, EDR, firewalls, and email security solutions to proactively identify and mitigate threats. Passionate about cybersecurity best practices and staying updated on evolving threats.
Work Experience
Security Operations Specialist L1
LTI MindTree
01-2021 - Present
Investigated EDR alerts (CrowdStrike) to detect malicious activities. Conducted malware analysis, performed real-time forensic analysis, and removed suspicious files. Created ServiceNow tickets for tracking, reporting, and follow-ups. Monitored suspicious sign-ins, MFA failures, and impossible travel alerts. Analyzed Active Directory and Defender logs to validate authentication anomalies. Contacted users for verification, collected legitimacy confirmation, and documented responses. Investigated network traffic alerts using Palo Alto firewall and Splunk. Monitored inbound/outbound traffic, detected anomalies, and blocked malicious IP addresses. Analyzed firewall logs to identify potential data exfiltration attempts. Conducted email analysis, email content review, and URL sandboxing. Used Microsoft 365 Defender to analyze phishing emails and remove malicious messages. Blocked domains, IPs, and hash values at the perimeter level. Created detailed incident reports outlining detection, containment, root cause analysis, and remediation. Conducted proactive security monitoring using IoCs and IoAs. Kept updated with latest threats via threat intelligence feeds and security advisories. Prepared weekly security operations reports and shift handovers. Documented lessons learned, containment steps, and post-incident analysis.
Education
B.Tech
2016 - 2020 · India
Interested in this developer?
Profile Score Breakdown
Profile Overview
Availability Details
Visa Status
No Visa
Relocation
Open to Relocation