Rahul Sharma
Senior Security Analyst
About
Cybersecurity professional with 6.6+ years of relevant experience, currently serving as a Senior Security Analyst. Possesses a strong understanding of various SOC processes, including monitoring, analysis playbooks, incident escalation, documentation, quality checks, SLAs, bridge calls, and client review meetings.
Skills & Expertise (21)
Work Experience
Senior Security Analyst/Shift Lead
Interspence Solutions LLP
May 2021 - Mar 2026
Monitor and analyze critical and major security incidents using the SIEM tools to ensure timely identification and response to potential threats that could impact client operations. Implement trending and customer-specific use cases through correlation rules, alarms, and reports tailored to client needs, leading to a significant increase in threat detection capabilities. Led and managed the Security Operations Center (SOC) team to ensure effective security monitoring and response. Working with IDS (SecureWorks/Fortinet), monitoring all alerts related to systems and networks. Working with IPS/IDS (Darktrace), Real-time monitoring and troubleshooting all alerts related to systems and network. Administered and maintained Cyberheaven Data Loss Prevention solution, safeguarding sensitive information and preventing unauthorized data exfiltration. Implemented and rolled out Varonis tools, enhancing data security and ensuring compliance with data protection regulations. Review and fine-tune active/inactive use cases for customers, analyzing existing cases to minimize false positives and enhance alert accuracy, thereby increasing operational efficiency. Monitored and managed CrowdStrike Falcon Endpoint Protection across 8,000+ endpoints ensuring continuous protection and security compliance. Developed and optimized custom IOA/IOC rules in CrowdStrike to detect and block malicious processes, executables, and unauthorized activities. Developed and directed the design of security operations documentation and automation Plans. Managed vulnerability scanning and risk assessment using Rapid7 InsightVM and Tenable.
Security Analyst (MSSP)
Inspira Enterprise India Pvt Ltd
Sep 2019 - Apr 2021
Successfully conducted SIEM (McAfee) POC for financial customers. Monitored, analyzed, and investigated critical security incidents, ensuring timely detection, containment, and remediation of potential threats. Manage SOC operations in a 24x7 environment within a Managed Security Service Provider (MSSP) setting, coordinating a team of analysts to maintain high levels of situational awareness and responsiveness to security events. Conduct SIEM Proof of Concept (POC) evaluations for clients, aligning solutions with their specific success criteria, and demonstrating the value of the SIEM capabilities in addressing their security challenges. Collaborate with diverse clientele, both foreign and domestic, to understand their unique security requirements, tailoring incident response strategies to align with their operational and regulatory needs. Respond to emails and phone calls of our clients regarding notifications and any cyber incidents. Perform quick analysis of attacks and threat based on real time monitoring and follow the predefined process to address the associated risks. Monitor, manage, and configure security tools, review incidents to assess their urgency, and escalate incidents, if necessary, Perform After Actions Reviews and participate in Root Cause Analysis. Work with the Security Incident Management team to respond to and resolve security incidents effectively and also troubleshooting SIEM issues with help from TAC. Creation of dashboards, watchlist’s, Alarms, reports, Analyze Indicators of Compromise (IoCs) for various cyber-attacks, sharing advisories with clients to enhance their understanding of potential threats and reinforce their security strategies. Removing redundancy in SIEM with respect to use cases such as alerts, reports, dashboards, Addition of different data sources into SIEM (Window and Linux server, Firewall etc) on customer requirements, Perform Data Deletion and Modification. Generating and making daily, weekly reports, Initiate and oversee the monthly full SIEM backup process, ensuring data integrity and availability for forensic analysis and compliance purposes. Experience in handling client requests and questions received via phone/ email and detailed investigation to resolve informational security incidents and alerts.
Education
BE in Computer Engineering - YTCEM, Mumbai University
- 2018 · Afghanistan
Diploma in Computer Engineering - NYT Polytechnic, Mumbai
- 2014 · Afghanistan
HSC - R.K. TALREJA College, Ulhasnagar
- 2010 · Afghanistan
SSC - St’Joseph Bethany Convent High School, Ulhasnagar
- 2008 · Afghanistan
Certifications
No certifications added yet
Interested in this developer?
Profile Score Breakdown
Profile Overview
Skills (21)
Click a skill to find developers with the same skill