Pune Division, Maharashtra, India
Cybersecurity Professional with 7+ years of experience in handling end-to-end security operations across in-house and MSSP-based SOC environments. Proven expertise in implementing and managing a wide range of SIEM solutions, including IBM QRadar and Splunk. 🔧 Core Competencies: SIEM server installation for standalone and distributed environments Use case creation, correlation rule configuration, and fine-tuning Event monitoring, log analysis, and incident detection Handling IT security incidents, investigations, and escalations Detection of account anomalies, privilege misuse, and audit log reviews Coordinating with SOC teams for vulnerability management and threat response 🛠️ Technical Expertise: IBM QRadar | Splunk | DNIF | Sentinel | logrythm SIEM deployments and upgrades and Operations Ticketing tools and workflow systems Device integration and log ingestion Compliance reporting and security audits I take pride in delivering proactive threat detection, strong incident response capabilities, and maintaining high efficiency in security operations. I'm always open to learning new technologies and collaborating with professionals to enhance organizational security posture.
Experienced SOC L3 Analyst specializing in advanced threat detection, Phishing Mail Analysis,incident response, and proactive threat hunting across cloud and on-prem environments. Skilled in handling complex security incidents, root cause analysis, and tuning detection rules to reduce false positives and enhance threat visibility. Proficient in multiple enterprise-grade security tools including Microsoft Defender XDR (MDE, MDI, MDO, MDC), Splunk, Carbon Black, CrowdStrike Falcon, Claroty XDome for industrial environment, Microsoft Azure Security Center, and Realiqust Gray Matter. Experienced in KQL and SPL query writing, custom rule creation, and SIEM correlation for continuous monitoring. Strong expertise in incident handling, digital forensics, threat intelligence analysis, MITRE ATT&CK mapping, and SOAR automation. Adept at scripting with PowerShell and Python, leading investigations, and improving SOC processes for faster detection and response. Microsoft Defender XDR | Splunk | Carbon Black | CrowdStrike Falcon | Microsoft Azure Security | Clarity XDome | Realiqust Gray Matter | Threat Hunting | Incident Response | KQL | SPL | MITRE ATT&CK | SOC Operations | Digital Forensics | SIEM Engineering | Threat Intelligence | Security Monitoring | Azure Sentinel | Endpoint Detection and Response (EDR)
Cyber Security Solution Architect, Presale, Project Management, Consultants, SIEM Architect, Planning,design, execution, MDD, HLD, LLD Preparation, Data sources Onboarding. end to end delivery of Siem Project, Soc Implementation.
Soc Admin at SecurView with hands on experince in SIEM tools installation, Integration,IBM Qradar, Nagios,Securityhub365, application integration, log source troubleshooting & onboarding, Firewall Integration,DSM, parsing,ESxi VMware, use case manager,
installation, commissioning of IT security devices, such as routers, switches for IT infrastructure and security project for various clients etc, also I have work for the implementation of Qradar siem solution for various customer,Migration of SIEM from on-prim to Cloud,device onboarding in siem for log analysis. experience in solarwind tools for device monitoring etc,
Infrastructure Security Projects.installation, commissioning of IT security devices, such as routers, switches for IT infrastructure handling their patches,CVE's etc.