About
Result oriented professional with experience in Information technology and proven knowledge of Information security. Aiming to leverage my skills to successfully fill the Security Analyst role at your company.
Skills & Expertise (32)
Work Experience
Information Security Analyst
Deloitte
May 2023 - Present
Working in Security Operation Center (24x7), monitoring of SOC events, detecting and preventing the Intrusion attempts. Monitor security alerts and events from various security tool (SEIM, EDR, IDS/IPS Firewall, etc.). Monitoring real-time events using SIEM tools like Splunk, MS Sentinel. Create and maintain detailed documentation of incidents, action taken and outcomes. Provide input to improve SOC playbooks and detection rules. Stay updated with the latest cyber threats vulnerabilities and threat actor tactics. Monitoring, analyzing and responding to infrastructure threats and vulnerabilities. Investigate the security logs, mitigation strategies and responsible for preparing generic security incident reports. Monitor security alerts and events from cloud-native security tools (like AWS, Azure Security Center, Google Security Command Center) and SIEM integrations. Analyzing daily, weekly and monthly reports. Creating the tickets in ticketing tool. Acted as a security incident handler for advanced attack following Cyber Kill Chain Methodology and MITRE ATT&CK Framework. Having Good communication skills, both verbal and written, with the ability to express complex. Ability to collaborate and communicate effectively and respectfully with both business-oriented. Skilled in managing CrowdStrike, MS Defender and other enterprise-grade security tools. Performs cyber threat hunting on Indicators of Compromise (IoC’s) through our security tools (EDR, SIEM, SOAR, etc.) to detect prior compromise. Hands on experience on designing, implementing Use Cases (Rules, Reports, Dashboard) on SIEM solution. Experience of performing security monitoring and incident response activities in an advanced Security Practical expertise in network traffic analysis (TCP/UDP, Routing, Switching, Protocols)to identify anomalies and detect intrusion attempts. Analyze on request the maliciousness of packages and files in our sandbox and formalize synthesis. operation centers (SOC) environment (log analysis, event analysis, incident investigation, reporting) Experience and knowledge in investigating incidents, remediation, tracking and follow-up for incident closure with concerned team Having Strong knowledge of cybersecurity frameworks and compliance standards. Collecting the logs of all the network devices and analyze the logs to find the suspicious activities. Classify incidents based on criticality and impact to business operation.
Education
Bachelor of Computer Science - Shivaji University Kolhapur
- · Afghanistan
Interested in this developer?
Profile Score Breakdown
Profile Overview
Availability Details
Visa Status
Need Sponsorship
Relocation
Depends on Offer