Back to Developers
Sanjay Kotabagi

Sanjay Kotabagi

SOC Analyst L2

Bengaluru, Karnataka 3+ yrs exp 88 · Excellent

About

SOC Analyst L2 with 3.5+ years of experience across PwC and Deloitte, specializing in 24x7 security operations, incident response, and threat detection for enterprise environments. Experienced in handling high-severity alerts, deep-dive investigations, and acting as escalation point for L1 teams. Strong hands-on expertise across SIEM, EDR, cloud security, and identity systems. Proven track record of improving alert triage efficiency through Python-based automation, reducing investigation time from 20 minutes to under 3 minutes while maintaining zero SLA breaches.

Skills & Expertise (24)

Threat Hunting Advanced
8.0/10
3.5
Years Exp
Phishing triage Advanced
8.0/10
3.5
Years Exp
Microsoft Sentinel Advanced
8.0/10
3.5
Years Exp
Root Cause Analysis Advanced
8.0/10
3.5
Years Exp
escalation Advanced
8.0/10
3.5
Years Exp
Investigation Advanced
8.0/10
3.5
Years Exp
Microsoft Defender XDR Advanced
8.0/10
3.5
Years Exp
Alert Triage Advanced
8.0/10
3.5
Years Exp
Splunk Advanced
7.5/10
3.5
Years Exp
SentinelOne Advanced
7.5/10
3.5
Years Exp
Anomaly Detection Advanced
7.5/10
3.5
Years Exp
Python Advanced
7.5/10
3.5
Years Exp
Microsoft Defender for Cloud Apps Intermediate
7.0/10
3.5
Years Exp
IOC Enrichment Intermediate
7.0/10
3.5
Years Exp
Azure AD Intermediate
7.0/10
3.5
Years Exp
AWS GuardDuty Intermediate
7.0/10
3.5
Years Exp
MITRE ATT&CK Mapping Intermediate
7.0/10
3.5
Years Exp
Prisma Cloud Intermediate
6.5/10
3.5
Years Exp
IDS Intermediate
6.5/10
3.5
Years Exp
IPS Intermediate
6.5/10
3.5
Years Exp
ProofPoint Intermediate
6.5/10
3.5
Years Exp
IronPort Intermediate
6.5/10
3.5
Years Exp
IBM QRadar Intermediate
6.5/10
3.5
Years Exp
Carbon Black Intermediate
6.5/10
3.5
Years Exp

Work Experience

SOC Analyst L2 - Primary Escalation Point

PwC

May 2025 - Present

Act as primary escalation point for high-severity alerts across SIEM, EDR, and cloud environments. Perform deep-dive investigations including log correlation, IOC validation, and root cause analysis. Manage end-to-end incident lifecycle with zero SLA breaches. Implement automation-assisted triage workflows to reduce analyst effort and response time. Conduct proactive threat hunting activities to identify suspicious patterns and gaps in existing detections. Collaborate with IR and threat hunting teams for incident containment and response.

SOC Analyst - L1 to L2 Escalation Support

Deloitte USI

Feb 2023 - Apr 2025

Monitored and analyzed alerts across SIEM, EDR, firewall, and cloud platforms in a 24x7 SOC environment. Performed initial triage and investigation of malware alerts, suspicious logins, and network anomalies. Built Python-based phishing triage automation - reduced investigation time from ~20 minutes to under 3 minutes. Escalated incidents with detailed analysis and contextual evidence to L2/IR teams. Developed detection use cases for Okta account compromise, Azure account takeover, and cloud misuse. Recognized for accuracy, SLA adherence, and incident handling quality.

Cloud Security Analyst L1

Orbit Technologies

Jun 2022 - Dec 2022

Monitored cloud security alerts in Microsoft Defender for Cloud. Investigated anomalies and supported incident triage and escalation.

Education

Master of Computer Applications (MCA) - Jain University

- · Afghanistan

Bachelor of Computer Applications (BCA) - KLE's PC Jabin College

- · Afghanistan

Certifications

No certifications added yet

Interested in this developer?

Profile Score Breakdown

📷 Photo 10/10
📄 Resume 10/10
💼 Job Title 10/10
✍️ Bio 10/10
🛠️ Skills 20/20
🎓 Education 10/10
⏱️ Experience 13/15
💰 Rate 0/5
🏆 Certs 0/5
Verified 5/5
Total Score 88/100

Profile Overview

Member sinceJun 2026