About
Results-driven SOC Analyst (L1) with 2+ years of hands-on experience in SIEM monitoring, incident response, DLP investigations across enterprise hybrid environments. Proficient in Splunk, Microsoft Sentinel, Cortex XSOAR, Symantec DLP and ServiceNow with proven expertise in collaborating with DFIR and Threat Intelligence teams to contain threats and reduce risk. Skilled in developing detection rules, scripting automated alert enrichment in Python, and reducing MTTR and false positives to enhance SOC efficiency. Strong knowledge of MITRE ATTCK, IOC/TTP triage, KQL, regex, and Azure Security, with a track record of driving SLA-compliant.
Skills & Expertise (22)
Work Experience
SOC Analyst
EY
Aug 2023 - Present
Triaged 20 to 30 daily SIEM alerts in Splunk and Microsoft Sentinel, prioritized true positives, and escalated critical incidents while maintaining >90% SLA compliance. Led L1 DLP investigations across endpoint, email, and web channels; resolved 30 to 40 incidents per month with documented containment actions and end-user coaching. Designed and optimized 15+ SIEM correlation rules and KQL queries, reducing false positives by 25% and strengthening detection of insider data movement. Developed and maintained Cortex XSOAR playbooks for phishing and DLP triage, streamlining response workflows and ensuring consistent audit trails. Conducted advanced threat hunting to identify and mitigate emerging risks. Engineered Python-based enrichment scripts (WHOIS, URL/IP reputation, user context) and standardized case templates, reducing manual effort by 12 minutes per alert and saving 6+ hours weekly. Resolved data-blocking and security-related tickets through ServiceNow and enterprise mailbox systems, ensuring timely communication and issue closure. Produced detailed security reports using Microsoft Defender and related tools, delivering actionable insights to enhance risk management.
Education
Bachelor of Technology in Computer Science and Engineering - GL Bajaj Institute of Technology & Management
2019 - 2023 · Afghanistan
Certifications
No certifications added yet
Interested in this developer?
Profile Score Breakdown
Profile Overview
Availability Details
Visa Status
Need Sponsorship
Relocation
Open to Relocation
Skills (22)
Click a skill to find developers with the same skill