Back to Developers
balaji balla

balaji balla

Security Analyst

Bengaluru
80
Profile Score

About

Security Analyst with 5 years of expertise in Acko in incident response and forensics. Skilled at leading investigations, mitigating threats, and securing systems against attacks. Proven ability to collaborate with executives to develop and implement effective security strategies.

Skills & Expertise (59)

Splunk Advanced
8.8/10
5
Years Exp
Azure Active Directory Advanced
8.5/10
5
Years Exp
Defender Atp Advanced
8.3/10
5
Years Exp
KQL Advanced
8.0/10
5
Years Exp
Privilege Escalation AIR policies MITRE ATT&CK Frameworks NIST Lateral Movement Defence evasion Automation rules Persistence Root Cause Analysis Security Operations SOPs Runbooks Microsoft Defender ATP Splunk SIEM Enterprise Anti-Virus Security alerts Configuration Manager Host isolation Advanced threat analysis Endpoint Agents Active Directory integrations Windows Event Logs Group Policy Objects Active Directory Security Logic Apps Playbooks Microsoft Sentinel SOAR Endpoint Protection Email security threats MS Defender 365 Azure Sentinel MCAS Office 365 Rapid 7 Symantec MS Intune Administrator Endpoint security engineer MS Purview Central logging Log Management Azure MFA Conditional Access Network and Host-based firewalls Security Controls Vulnerability Assessment McAfee EPO Endpoint Compliance Security Information And Event Management IDS IPS Data loss prevention Proxy Web Application Firewall Crowd strike Sandboxing

Work Experience

Security Analyst

Acko

Feb 2021 - Present

Good knowledge and working experience in central logging, log management, and Splunk SIEM architecture. Good understanding of Azure Active Directory, Azure MFA, and conditional access. Experience in writing correlation rules and monitoring the Enterprise Security Application. Good hands-on experience in managing the P1 bridge call, involving the stakeholders, and experience in creating the incident response report for critical incidents. Experience in handling and deploying the Defender agents onto servers to onboard into Defender, and troubleshooting agent connectivity issues using the MDE Client Analyzer. Knowledge of email security threats and security controls, including experience in analysing email headers. Prepare and deliver reports and metrics on vulnerability assessment outcomes, remediation progress, and the overall vulnerability landscape to senior management and other relevant stakeholders. Hands-on experience in analysing the device timeline logs and pulling reports by using advanced hunting in KQL. Managing the reporting of AV migration and compliance reports. Experienced in migrating the agents and tools from McAfee EPO to Defender ATP. Prepare Endpoint Compliance reports and initiate the remediation activities wherever required. Designed, implemented, and maintained security systems and controls. Experienced in handling true positive incidents, remediating in a timely manner, and preparing the Incident Response (IR) reports. Knowledge of a breadth of security technologies and topics such as Security Information and Event Management (SIEM), IDS/IPS, Data Loss Prevention (DLP), Proxy, Web Application Firewall (WAF), Enterprise Anti-Virus, Sandboxing, and network and host-based firewalls. Experienced in creating log analytics rules based on the client's requirements by configuring different data tables using KQL language.

Education

B.Tech: CIVIL - DNR College of engineering and technology

- 2019 · Afghanistan

Certifications

No certifications added yet

Interested in this developer?

Profile Score Breakdown

📷 Photo 10/10
📄 Resume 10/10
💼 Job Title 10/10
✍️ Bio 10/10
🛠️ Skills 20/20
🎓 Education 10/10
⏱️ Experience 5/15
💰 Rate 0/5
🏆 Certs 0/5
Verified 5/5
Total Score 80/100

Profile Overview

Member sinceMar 2026

Availability Details

Visa Status

Citizen

Relocation

Open to Relocation