About
IT Security Operations professional with 3+ years of hands-on experience supporting enterprise environments in a 24x7 SOC setup, ensuring continuous threat monitoring and rapid incident response. Strong experience in log analysis across multiple security layers, including endpoints, network devices, email gateways, and web security tools, to detect anomalies and potential breaches. Performed phishing email analysis, header inspection, URL reputation checks, and malware assessment to mitigate email-based attacks. Familiar with IDS/IPS alerts, vulnerability findings, and malware indicators, assisting in threat validation. Experienced in preparing and maintaining operational reports (daily, weekly, and monthly), delivering actionable insights tailored to client and management requirements. Strong understanding of SOC processes, log analysis, threat investigation, and incident escalation to support the security of enterprise environments.
Skills & Expertise (23)
Work Experience
Information Security Analyst
TCS
Mar 2024 - Present
Worked as a SOC Analyst in a 24ร7 Security Operations Center environment. Monitored security events using SIEM tool (Splunk) and analyzed system logs and network traffic to detect malicious activity. Monitoring and managing Check Point NGFW (R8x) firewall environments. Monitored and analyzed firewall traffic logs to identify suspicious or unauthorized activities. Investigated security alerts generated from Palo Alto firewall logs and escalated incidents as per defined procedures. Collected, managed, and analyzed logs from various sources to ensure comprehensive security monitoring. Experience in L1 support for firewall, VPN, and network connectivity incidents. Proficient in SmartConsole, SmartLog, and SmartEvent for log analysis and monitoring. Investigated security incidents, mitigation strategies, and was responsible for preparing these strategies. Handled alerts from multiple security log sources such as Proxy, Anti-Virus, and EDR. Created and maintained daily, weekly, and monthly operational reports. Monitored and analyzed security events and threats from multiple sources, including different security components (IDS/IPS, firewalls, system logs, antivirus, etc.). Monitored and analyzed DLP alerts to detect potential data leakage incidents involving PII, financial data, and intellectual property. Investigated data exfiltration attempts across email, web, cloud applications, and endpoints. Coordinated with different teams, responded to incidents, and service requests, and gathered additional information to resolve or escalate issues as needed. Identified and triaged potential security issues, and gathered evidence and logs for investigation, analysis, and reporting. Tracked pending incidents and followed up until closure. Prepared daily/monthly reports for the customer review. Managed the lifecycle of all reported security incidents and checked them regularly. Consistently logged and analyzed all crucial alerts on an immediate basis.
Education
Bachelor's Of Computer Science - Shivaji University
2022 - 2025 ยท Afghanistan
Certifications
No certifications added yet
Interested in this developer?
Profile Score Breakdown
Profile Overview
Skills (23)
Click a skill to find developers with the same skill