Yadagiri Vinod
Senior SOC Analyst
About
SOC analyst with 6 years handling incident response, threat hunting, and 24x7 monitoring, including 2+ years on a service-provider model supporting multiple external clients at once. Day to day I triage and lead investigations end to end — correlating log data across SIEM, EDR, firewall, and email sources, tracing root cause, and coordinating containment with internal teams and client stakeholders on live incident calls. I tune and troubleshoot the SIEM/EDR stack itself rather than just working alerts inside it, run MITRE ATT&CK-based threat hunts and phishing investigations, and mentor junior analysts by walking them through live incidents rather than off a script. I also carry the vulnerability management and compliance side of the job (CVSS-based risk prioritization, SOC 2/ISO 27001/NIST/CIS evidence and documentation), and write Python/PowerShell to keep repetitive investigation and reporting work off my plate.
Skills & Expertise (36)
Work Experience
Senior Cyber Security Analyst
Mizuho Global Services India Pvt. Ltd.
Apr 2024 - Present
On a 24x7 rotation handling L2/L3 triage and escalation across 100+ incidents; lead investigations end to end — containment, root cause, and a fix that goes back into the rule or config so it doesn't recur. Investigate suspicious activity and confirmed incidents by correlating log data across EDR, firewall, email, VPN/SASE, and cloud sources to separate real threats from noise. Monitor and tune detection across the SIEM/EDR stack itself, not just the alerts inside it; this ongoing tuning has cut false positives 30–40%. Lead MITRE ATT&CK-based threat hunting and investigate phishing cases via Proofpoint/M365 Defender, working with IR and threat intel to close out root cause. Mentor roughly 10 junior analysts, mostly by walking them through live incidents as they happen rather than off a script. Run vulnerability management with Qualys and Nessus, including CVSS-based risk prioritization and SLA reporting to stakeholders. Built a Sentinel-to-ServiceNow automation (PowerShell playbooks) that cut manual ticket work roughly 70% and reduced MTTR by about 50%. Administer identity and access controls across a hybrid environment — Entra ID, Conditional Access, MFA rollout, and periodic access reviews for 500+ endpoints. Support SOC 2, ISO 27001, NIST 800-53, and CIS Benchmarks compliance work, including audit evidence collection and gap assessments.
Information Security Analyst
Microland Limited
Jan 2020 - Jan 2024
Monitored and investigated security events in QRadar and Splunk across firewalls, endpoints, servers, and cloud for multiple clients simultaneously, correlating indicators across AWS, Azure, and GCP in a service-provider environment. Ran vulnerability assessments (Qualys, Rapid7, Nessus) across client environments and tracked remediation through closure, working directly with client-side stakeholders on findings. Managed Microsoft 365 Defender and Entra ID Conditional Access, including MFA rollouts and periodic access reviews. Wrote RCA and post-incident documentation for client-facing incidents and supported SOC 2, ISO 27001, NIST 800-53, and CIS Benchmarks audit work. Automated log parsing and threat data extraction with Python and Bash to reduce manual analysis time.
Education
BSc Computer Science - Pacific Institute of Engineering and Management (PIEM)
- · Afghanistan
Certifications
No certifications added yet
Interested in this developer?
Profile Score Breakdown
Profile Overview
Availability Details
Visa Status
Citizen
Relocation
Open to Relocation
Skills (36)
Click a skill to find developers with the same skill