About
Results-driven SOC Analyst with 3+ years of experience in Security Operations Center (SOC) environments, specializing in 24x7 security monitoring, incident detection, threat analysis, and incident response. Proficient in SIEM platforms (Splunk, IBM QRadar, Microsoft Sentinel), EDR tools (CrowdStrike, Microsoft Defender for Endpoint), phishing and malware analysis, vulnerability assessment, and threat hunting using the MITRE ATT&CK framework. Skilled in log analysis, IOC identification, incident ticket management (ServiceNow), and SLA-driven escalation. Proven track record of collaborating with global SOC teams to reduce dwell time, strengthen detection capability, and safeguard organizational assets.
Skills & Expertise (38)
Work Experience
Information Security Analyst โ L1
Inspira Enterprise India
Jun 2023 - Present
Monitor and analyze security alerts in real time within a 24x7 Security Operations Center (SOC) using Splunk SIEM. Analyze security logs from Active Directory, firewalls, IDS/IPS, EDR, email security, and web security solutions to detect anomalous activity. Investigate security incidents, validate alerts, and classify True Positive / False Positive events. Perform log analysis, phishing email analysis, and malware analysis as part of initial threat investigation. Create, update, and manage incident tickets in ServiceNow, ensuring SLA compliance throughout the incident lifecycle. Monitor endpoint security alerts using Microsoft Defender (EDR) and CrowdStrike, supporting incident response activities. Identify Indicators of Compromise (IOCs) including malicious IPs, domains, URLs, file hashes, and suspicious processes. Participate in phishing email investigations and contribute to user awareness and preventive controls. Follow incident response procedures and SOPs to ensure consistent and repeatable outcomes. Conduct vulnerability assessments using industry-standard tools to identify weaknesses across endpoints, networks, and applications. Apply the MITRE ATT&CK framework to identify attack patterns and improve SOC detection capabilities. Evaluate EDR tool findings to identify risks and support threat/malware remediation. Collaborate with cross-functional and global SOC teams to support investigations and remediation activities. Maintain accurate documentation of incidents, investigation steps, and security recommendations. Ensure timely detection, analysis, containment, and escalation of cybersecurity incidents in line with client SLAs. Prepare and share daily, weekly, and monthly security reports covering alerts, incident summaries, failed logons, antivirus status, and security trends.
Education
Master of Computer Applications (MCA) - Dr. D. Y. Patil Institute of Technology, Talsande
- ยท Afghanistan
Bachelor of Science (B.Sc.) in Statistics - Shivaji University
- ยท Afghanistan
Certifications
No certifications added yet
Interested in this developer?
Profile Score Breakdown
Profile Overview
Availability Details
Visa Status
Citizen
Relocation
Open to Relocation
Skills (38)
Click a skill to find developers with the same skill