About
Results-driven Cyber Security Analyst with 5+ years of experience in Security Operations Center (SOC) environments specializing in threat detection, incident response, threat hunting, and security monitoring. Experienced in investigating phishing attacks, ransomware incidents, account compromise events, endpoint threats, and authentication-related security incidents across enterprise environments. Hands-on expertise with Microsoft Defender XDR, Microsoft Sentinel, CrowdStrike Falcon, Sentinel One, Splunk and Stellar Cyber for security monitoring, incident triage, threat analysis, and endpoint investigations. Skilled in SIEM monitoring, EDR/ XDR technologies, log analysis, IOC investigation, security event correlation, and MITRE ATT&CK-based threat analysis. Proven ability to analyze, contain, and remediate security incidents while collaborating with cross-functional teams to strengthen organizational security posture. Adept at managing the complete incident lifecycle including detection, analysis, containment, eradication, recovery, and post-incident documentation. Passionate about cybersecurity, continuous learning, and improving enterprise security operations against evolving cyber threats.
Skills & Expertise (30)
Work Experience
SOC Analyst
RFA
Feb 2023 - Jun 2026
Investigate and respond to security alerts using Microsoft Defender, SentinelOne, Splunk, Reco.ai, Seceon and Stellar Cyber platforms. Perform incident triage and threat analysis for endpoint, authentication, and suspicious activity alerts within enterprise SOC environment. Investigate phishing campaigns, suspicious logins, account compromise incidents, and ransomware-related alerts. Support incident containment activities including endpoint isolation, IOC blocking, password reset coordination, and session revocation. Utilize AI-assisted SOC platform features for alert prioritization and investigation support. Collaborate with internal teams during high-severity security incidents and escalation scenarios. Prepare investigation summaries and operational documentation for incident tracking and remediation support.
Security Engineer
HTC Global Services
Jun 2022 - Dec 2022
Supported enterprise SOC operations through continuous monitoring and investigation of security alerts and suspicious activities. Investigated phishing attacks, malware alerts, credential compromise incidents, and authentication-related security events. Performed alert triage, threat validation, incident documentation, and escalation in accordance with established SOC procedures. Assisted Incident Response teams during security investigations and containment activities. Contributed to security reporting, incident tracking, and operational improvement initiatives.
SOC Analyst
Mphasis
Jan 2021 - Jun 2022
Monitored and analyzed security events across network, endpoint, server, and email environments within a 24x7 Security Operations Center (SOC). Utilized Wazuh SIEM platform for log monitoring, security event analysis, threat detection, and incident investigation. Investigated security alerts generated from IDS/IPS, endpoint protection, firewall, antivirus, and email security solutions. Performed initial alert triage, event validation, and escalation of security incidents based on severity and business impact. Conducted vulnerability assessments and coordinated remediation tracking with infrastructure and system administration teams. Assisted in threat hunting activities to identify malicious behaviors, abnormal user activities, and potential indicators of compromise. Created and maintained security incident reports, investigation documentation, and operational runbooks. Monitored endpoint security events and supported malware investigation and containment activities. Contributed to reducing phishing click rates by 35% through awareness initiatives and continuous security education efforts. Assisted in compliance-related security reviews, audit support activities, and security control validation exercises.
Education
Bachelor of Commerce (B.Com) - Adikavi Nannaya University
- 2017 · Afghanistan
CA Intermediate (IPCC) – Group 1 Cleared - Institute of Chartered Accountants of India (ICAI)
- 2016 · Afghanistan
Certifications
No certifications added yet
Interested in this developer?
Profile Score Breakdown
Profile Overview
Skills (30)
Click a skill to find developers with the same skill