About
Results-driven SOC Analyst with 3+ years of hands-on experience in 24x7 security operations, incident detection, and response. Proficient in Splunk SIEM, Microsoft Defender for Endpoint (EDR/XDR), Zscaler web proxy, and Barracuda email gateway. Experienced in static/dynamic malware analysis, false-positive tuning, playbook development, and threat intelligence using MITRE ATT&CK. Adept at log onboarding, custom correlation rule development, and multi-team incident coordination. Currently preparing for SC-200 (Microsoft Security Operations Analyst) certification.
Skills & Expertise (27)
Work Experience
Security Analyst
Amazon Development Centre (India) Pvt. Ltd.
Mar 2022 - May 2025
Monitored and triaged security alerts in a 24x7 SOC environment using Splunk SIEM; analyzed logs, correlated events, and classified true positives from false positives to reduce alert fatigue. Performed static and dynamic malware analysis using Any.run sandbox — extracted metadata, observed runtime behavior, and assessed threat severity to support incident containment. Led incident investigation and response lifecycle: detection, analysis, containment, eradication, and recovery; documented all incidents in ServiceNow with RCA and closure reports. Investigated and closed false positives; raised validated incident tickets for phishing, malware, and unauthorized access events using Barracuda Email Gateway and Zscaler Web Proxy analysis. Onboarded new log sources into SIEM using multiple collection methods; developed custom parsers, correlation rules, and alerts to improve detection coverage. Monitored Data Loss Prevention (DLP) events using Code42 tool; tracked unauthorized data transfers and implemented security measures aligned to policy. Supported Incident Response Team (IRT) and SMEs during critical incidents by providing data-driven findings and actionable remediation recommendations. Maintained device health monitoring (disk, CPU, virus definitions) across enterprise endpoints using Microsoft Defender for Endpoint (EDR/XDR). Maintained and continuously improved SOC playbooks, runbooks, and incident response processes; participated in SOC shift handovers and management meetings. Generated detailed incident reports and delivered findings to management and stakeholders; supported client meetings and SLA compliance reporting.
Process Associate – Quality & Operations
Amazon Development Centre (India) Pvt. Ltd.
Aug 2020 - Feb 2022
Monitored pricing analytics operations, ensuring accuracy through structured audits and process improvement initiatives. Delivered quality management training to new and existing employees aligned with organizational goals. Identified and implemented process improvement ideas, increasing operational success rates for strategic projects. Drafted production and QA reports; coordinated cross-functional troubleshooting of processing issues.
Education
Bachelor of Engineering (B.E.) - Visvesvaraya Technological University (VTU)
2015 - 2018 · Afghanistan
Certifications
SC-200: Microsoft Security Operations Analyst
· 2026
Interested in this developer?
Profile Score Breakdown
Profile Overview
Skills (27)
Click a skill to find developers with the same skill