Back to Developers
Rajesh Biswal

Rajesh Biswal

Cybersecurity Analyst

Mumbai, Maharashtra 2+ yrs exp 84 · Excellent

About

Cybersecurity Analyst with 2 years of hands-on SOC experience in SIEM monitoring, threat detection, detection engineering, and incident response across enterprise environments. Skilled in Elastic SIEM, ManageEngine Log360 & EventLog Analyzer, CrowdStrike Falcon, SentinelOne, and FortiGate Firewall. Strong understanding of MITRE ATT&CK, UEBA concepts, threat intelligence, and alert tuning. Proven track record of reducing false positives, improving detection accuracy, and handling high-volume alert environments.

Skills & Expertise (41)

Elastic SIEM Advanced
8.3/10
2
Years Exp
Log Analysis Advanced
7.8/10
2
Years Exp
Incident Response Lifecycle Advanced
7.5/10
2
Years Exp
Threat Hunting Advanced
7.5/10
2
Years Exp
detection engineering Advanced
7.5/10
2
Years Exp
Alert Triage Advanced
7.5/10
2
Years Exp
CrowdStrike Falcon Advanced
7.0/10
2
Years Exp
SentinelOne Advanced
7.0/10
2
Years Exp
Fortigate Firewall Advanced
7.0/10
2
Years Exp
SQL Advanced
7.0/10
2
Years Exp
Python Advanced
7.0/10
2
Years Exp
HTTPS Tableau Kill Chain Analysis Autopsy FTK Magnet AXIOM TCP IP DNS HTTP WIRESHARK Packet Analysis Excel Power BI MITRE ATT&CK Risk Assessment CVE analysis Nmap Nessus IOC Analysis AlienVault OTX AbuseIPDB VirusTotal SOAR Burp Suite IPS IDS False Positive Reduction Anomaly Detection Alert Tuning

Work Experience

Cybersecurity Analyst - SOC

Comtel Infosystems Pvt. Ltd.

Jan 2025 - Present

Monitored and analyzed 120–180+ security alerts daily using Elastic SIEM and ManageEngine EventLog Analyzer. Reduced false positives by 30% through systematic alert tuning, threshold adjustments, and detection rule optimization. Performed detection engineering: created, tuned, and maintained SIEM correlation rules and behavioral detection logic. Conducted proactive threat hunting using SIEM queries mapped to MITRE ATT&CK TTPs to identify lateral movement and privilege misuse. Investigated security incidents (brute force, malware, unauthorized access) across Windows and Linux systems. Handled EDR using CrowdStrike Falcon and SentinelOne; contained and remediated threats; correlated events across endpoints, servers, and firewalls to detect advanced threats. Analyzed IOCs using VirusTotal, AbuseIPDB, GreyNoise, and AlienVault OTX for threat intelligence enrichment. Blocked 100+ malicious IPs Weekly via FortiGate Firewall; maintained and reviewed firewall policies. Performed vulnerability scans using Nessus and Nmap; tracked CVE remediation with relevant teams. Supported full incident response lifecycle: triage, containment, eradication, recovery, and post-incident documentation; prepared audit/compliance reports and contributed to SOC playbook and SOP development.

Security Data Analyst

360DigiTMG

Jul 2024 - Dec 2024

Data analysis using Python/SQL — supported security metrics and reporting.

Education

B.Tech – Computer Science Engineering (Cybersecurity & Digital Forensics) - Centurion University

2019 - 2023 · Afghanistan

Certifications

No certifications added yet

Interested in this developer?

Profile Score Breakdown

📷 Photo 10/10
📄 Resume 10/10
💼 Job Title 10/10
✍️ Bio 10/10
🛠️ Skills 20/20
🎓 Education 10/10
⏱️ Experience 9/15
💰 Rate 0/5
🏆 Certs 0/5
Verified 5/5
Total Score 84/100

Profile Overview

Member sinceAug 2026

Availability Details

Visa Status

Citizen

Relocation

Open to Relocation