About
Cloud Security Analyst with 3+ years securing enterprise Microsoft Azure environments across identity, network, endpoint, and data layers within SOC operations. Skilled in SIEM (Microsoft Sentinel, Defender for Cloud), threat detection, incident response, IAM, and data protection (Microsoft Purview, DLP). Lifted cloud secure score by ~30%, cleared 100% of access-related audit findings, and cut mean time to detect by ~40%. Microsoft Certified (AZ-104, AZ-900); CompTIA Security+ in progress.
Skills & Expertise (51)
Work Experience
Cloud Security Analyst
HCLTech
Sep 2022 - Present
Securing enterprise Microsoft Azure environments across identity, network, and data-protection layers within SOC operations. Hardened 50+ Azure virtual machines and network resources with secure baselines and disk encryption, lifting the subscription secure score by ~30% against Defender for Cloud and CIS Benchmark recommendations. Architected Zero Trust network segmentation across 10+ application tiers using NSGs and firewall policies, reducing the exposed attack surface and blocking unauthorized lateral movement between workloads. Administered identity and access for 500+ users in Microsoft Entra ID via RBAC, PIM, Conditional Access, and MFA, completing quarterly access reviews that cleared 100% of access-related audit findings. Built 20+ KQL detection rules and dashboards in Microsoft Sentinel and Defender for Cloud mapped to MITRE ATT&CK, cutting mean time to detect (MTTD) by ~40%. Investigated and triaged 30+ security alerts per week within SOC operations, performing threat hunting and escalating confirmed incidents through ServiceNow per defined response runbooks. Deployed Microsoft Purview across Microsoft 365 and Azure workloads, rolling out data classification, sensitivity labeling, and 15+ DLP policies to strengthen protection of regulated and business-sensitive data. Aligned Azure Policy controls, configuration baselines, and audit evidence to ISO 27001, NIST CSF, and CIS Benchmarks, improving compliance posture ahead of annual audit cycles.
Education
B.Tech, Information Technology - Guru Gobind Singh Indraprastha University
2018 - 2022 · Afghanistan
Certifications
No certifications added yet
Interested in this developer?
Profile Score Breakdown
Profile Overview
Availability Details
Visa Status
Need Sponsorship
Relocation
Open to Relocation
Skills (51)
Click a skill to find developers with the same skill