About
Proactive and detail-oriented Security Analyst with more than 2.5 years of hands-on experience in threat detection, incident response, and breach mitigation. Skilled in leveraging SIEM platforms and advanced security technologies to identify risks, safeguard critical assets, and enhance overall cybersecurity resilience. Committed to continuous learning and implementing best practices to stay ahead of evolving threats.
Skills & Expertise (23)
Work Experience
Sr. Associate Security Analyst
Securisti Consulting
Nov 2025 - Present
Leading IR activities ensuring timely detection, analysis, and response to security incidents. Working on tools like Imperva DAM, SentinelOne MDR, CloudSEK, iZOOlabs and DLP for threat detection and investigation. Conducting weekly/monthly reviews with clients to discuss incidents and security improvements. Driving process enhancements in MIR operations and strengthening overall security posture. Ensuring proper incident documentation, RCA, reporting, and escalation management. Leveraging AI-based threat intelligence for identifying emerging threats and prioritizing alerts. Implementing automation/AI-driven runbooks to improve incident response efficiency. Developing and optimizing advanced SIEM use cases to enhance detection and reduce false positives.
Security Analyst
ITC Infotech
Apr 2024 - Aug 2025
Monitored and triaged alerts via SIEM tools IBM QRadar for advanced correlation and compliance reporting, and Wazuh for endpoint log analysis and intrusion detection preparing incident reports and providing actionable mitigation steps. Operated in a 24×7 SOC for a leading finance sector client, performing continuous monitoring, incident triage, and proactive threat hunting to protect critical financial systems and sensitive customer data. Conducted phishing email analysis, validating SPF, DKIM, and DMARC records to identify spoofing attempts and malicious campaigns. Used CrowdStrike Falcon for EDR and threat containment, leveraged CloudSEK threat intelligence for deep and dark web monitoring, brand/reputation tracking, and context-driven analysis; acted as first responder for security incidents. Created 50+ MITRE ATT&CK-based runbooks and 10 custom use cases to enhance threat detection and response. Managed vulnerability assessments for Windows OS and applications to reduce exploitable risks. Configured secure remote access via Sophos Connect & FortiClient VPN on FortiGate firewall, including IP whitelisting/blacklisting. Delivered weekly Threat advisories and client reports to stakeholders. Used Freshservice for incident and service request ticketing, tracking, and escalation to ensure timely resolution. Good knowledge of security standards and compliance frameworks including ISO 27001, NIST, HIPAA, GDPR, and PCI DSS.
Security Researcher
Tech Mahindra - (Makers-Lab)
Jul 2023 - Dec 2023
Conducted research on emerging cyber threats, attack techniques, and vulnerabilities using open-source intelligence (OSINT) and threat intelligence platforms. Assisted in analyzing malware samples in a controlled lab to study behavior and extract Indicators of Compromise (IOCs). Supported the creation and testing of detection rules mapped to the MITRE ATT&CK framework for SIEM/EDR platforms. Documented research findings, proof-of-concepts, and security use cases for internal knowledge sharing. Contributed to small security tool/automation scripts in Python to streamline basic threat analysis tasks.
Intern
Cybervidyapeeth Foundation
Jun 2022 - Jul 2022
Assisted senior analysts in basic malware analysis tasks, including collecting samples, verifying file hashes, running automated sandbox scans, and documenting observed behaviors, while gaining hands-on experience in malware behavior, ransomware patterns, and secure lab practices.
Intern
Innotech
Aug 2021 - Sep 2021
Designed and developed a Python-based automated vulnerability scanner integrating Nmap and OWASP ZAP for network and web application security testing. Utilized Bash scripting to automate scan initiation, environment setup, and result management on Linux systems. Generated consolidated vulnerability reports, reducing manual assessment time and improving detection accuracy.
Education
B.Tech CSIT (Cyber Security) - Symbiosis Skills and Professional University
- 2024 · Afghanistan
Certifications
No certifications added yet
Interested in this developer?
Profile Score Breakdown
Profile Overview
Skills (23)
Click a skill to find developers with the same skill