Jafar sadhik Shaik
Senior Security Consultant
About
Cybersecurity professional with 6 years of experience in SOC operations, currently working as a Senior Security Consultant at EY GDS. Experienced in managing 24/7 security monitoring, leading analyst teams, handling incident response, and driving operational excellence. Strong expertise in incident investigation, root cause analysis, stakeholder communication, and SOC process improvement including false positive reduction and Run book creations.
Skills & Expertise (21)
Work Experience
Senior Security Consultant
EY GDS LLP
Aug 2025 - Present
Responsible for 24/7 security monitoring in rotational shifts, including preparing and managing shift rosters to ensure continuous coverage. Supporting team members in incident analysis and guiding them in handling security alerts effectively. Handling true positive incidents by performing deep analysis, identifying root cause, and remediation actions.
Associate Specialist-Security Engineer
ISSQUARED INDIA PVT. LTD.
Mar 2022 - Jul 2025
Perform next level analysis by reviewing alerts escalated from L1 SOC analysts and validating whether they represent genuine security threats. Carry out detailed investigations on suspicious activities such as malware infections, phishing incidents, endpoint anomalies, and unauthorized access attempts. Initiating bridge calls during critical incidents to ensure proper coordination and timely resolution. Performing quality reviews (QA) on incidents closed by analysts, ensuring accuracy, completeness, and high standards in incident documentation. Execute incident response actions including isolating endpoints, blocking IOCs, containing compromised accounts, and performing remediation as per severity of alert. Created and optimized dashboards in SOAR (Cortex XSOAR) for operational visibility and reporting. Generated weekly and monthly performance reports to analyze analyst productivity and incident handling metrics.
Security Analyst
INTECHFY SOLUTIONS
Nov 2019 - Nov 2021
Collaborate with cross-functional teams, including Endpoint security team, incident response team, Network Operations Center Analysts and Helpdesk to analyze suspicious events to remediate incidents. Monitored data movement through DLP tools to detect and escalate policy violations or suspicious activities involving sensitive data. Analyze user behavioral activities, such as processes executed by users, location changes, failed logins, privilege process executions, TOR IP address communications, Windows event logs, and proxy logs. Use endpoint activity logging tools to conduct endpoint forensics, such as checking for downloaded files through file path, network traffic communications, and process timeline & event search for critical command executions. Conducted daily checks on DLP dashboards and generated incident summaries for security leads. Perform dynamic analysis and triage on suspected malicious samples to confirm malicious behavior and to extract relevant IOCs and other findings. Blocking the IOC at defender and EDR. Escalated true positives with detailed evidence, screenshots, and user activity timelines to L2 or IR teams. Supported email security operations by analyzing quarantined emails, phishing attempts, and user-reported suspicious messages. 24x7 on-call support to collaborating with cross-functional teams to resolve high-severity issues promptly.
Education
B-Tech - JNTU Kakinada
- ยท Afghanistan
Certifications
No certifications added yet
Interested in this developer?
Profile Score Breakdown
Profile Overview
Availability Details
Relocation
Depends on Offer
Skills (21)
Click a skill to find developers with the same skill