About
SOC Analyst with 1+ year of hands-on experience in security monitoring, alert triage, and incident response across enterprise environments. Skilled in working with SIEM and EDR tools including CrowdStrike Falcon and Crowdstrike NEXT-GEN SIEM to detect, analyze, and respond to security incidents. Experienced in investigating phishing, malware, brute force attacks, and identity-based threats such as credential abuse and privilege escalation. Strong knowledge of log analysis, event correlation, with a proven ability to reduce false positives and improve detection efficiency.
Skills & Expertise (26)
Work Experience
Consultant – Cybersecurity
CyberNXT Solutions LLP
Jan 2025 - Present
Monitored and analyzed security alerts and events using SIEM and EDR tools to identify potential threats in real-time. Performed L1 alert triage and initial investigation for high, medium, and low severity incidents. Conducted log analysis across endpoints, Windows event logs, authentication logs, and network logs. Identified and investigated Indicators of Compromise (IOCs) such as suspicious IPs, domains, hashes, and processes. Executed incident response actions including containment, endpoint isolation, and threat mitigation. Investigated phishing alerts, malware infections, brute force attacks, and unauthorized access attempts. Analyzed process trees, command-line activity, and network connections during investigations. Worked on SIEM alert correlation, rule tuning, and false positive reduction. Monitored and protected 500+ enterprise endpoints using CrowdStrike Falcon EDR, ensuring continuous threat detection and response. Executed real-time response actions including host isolation, process termination, and USB device control to contain threats. Deployed and maintained CrowdStrike Falcon sensors across Windows environments, resolving deployment and compatibility issues. Created and followed runbooks and playbooks for consistent incident handling. Documented incidents, prepared RCA reports, and maintained proper case records. Escalated incidents to L2/L3 teams with complete analysis and supporting evidence. Ensured adherence to SOC SLAs, incident response timelines, and security best practices.
Education
Bachelor of Electronics & Computer Science - Mumbai University
2021 - 2024 · Afghanistan
Diploma – Electrical & Power System - Mumbai University
2018 - 2021 · Afghanistan