About
Security Operations Analyst with 3+ years of experience in monitoring, detecting, and responding to cyber threats across enterprise environments. Strong expertise in SIEM analysis, incident response, threat hunting, and vulnerability management. Proven ability to analyze complex security alerts, reduce false positives, and improve detection capabilities. Hands-on experience with endpoint security tools, log analysis, and security automation.
Skills & Expertise (17)
Work Experience
SOC Analyst
Tata Consultancy Services (TCS)
Mar 2022 - Sep 2025
Supported 24x7 SOC operations by monitoring and responding to 50–60 daily security alerts while ensuring timely triage and escalation of critical incidents and maintaining 100 % SLA. Performed triage and investigation of incidents including phishing, malware, FileLess Malware, brute-force attacks, DOS, DDOS Attacks and unauthorized access. Monitored and analyzed identity-based alerts in Azure Active Directory, including risky sign-ins, impossible travel, and brute-force attempts, to identify potential account compromises and initiate incident response. Conducted in-depth log analysis across endpoints, network devices, and applications to identify anomalies and IOCs. Correlated events from multiple data sources to detect attack patterns and improve threat detection accuracy. Investigated endpoint threats using Microsoft Defender for Endpoint and performed containment actions. Performed IOC enrichment using threat intelligence platforms such as VirusTotal to validate malicious indicators. Conducted root cause analysis of security incidents and recommended containment and remediation actions. Reduced false positives by 25–30% through SIEM rule tuning and alert optimization. Participated in threat hunting activities using known IOCs and behavioral analysis techniques. Developed SIEM use cases and detection rules for suspicious PowerShell activity and brute-force attacks. Identified lateral movement and persistence techniques through log correlation and attack pattern analysis. Mapped attacker techniques to MITRE ATT&CK framework and analyzed incidents across CyberKill Chain stages. Escalated critical incidents to L2/L3 teams with detailed investigation reports and impact assessment.
Education
No education history added yet
Certifications
Introduction to AI for Cybersecurity
Simplilearn skillup · 2026
Interested in this developer?
Profile Score Breakdown
Profile Overview
Availability Details
Visa Status
Need Sponsorship
Relocation
Open to Relocation
Skills (17)
Click a skill to find developers with the same skill