Bhupender Singh

SOC Technical Lead

New Delhi, Indien

Erfahrungen

Dez. 2023 - Bis heute
1 Jahr 6 Monaten
Noida, Indien

SOC Technical Lead

ASI Cyber Security India Pvt Ltd

  • Leading a 20+ member cybersecurity team, driving incident response, threat hunting, and security automation with tools like Microsoft Defender, Azure Sentinel, Sentinel One, and RSA Net Witness
  • Optimizing security monitoring and threat detection by configuring and managing Azure Sentinel connectors, workbooks, playbooks, and KQL queries for threat detection, and incident response
  • Integrated Microsoft Defender for Endpoint, Office 365, Identity, Cloud Apps with Azure Sentinel for centralized threat response, with automated remediation
  • Designing and implementing SIEM dashboards on Splunk, Azure Sentinel, Netwitness to provide real-time monitoring, incident tracking, reduce manual effort, and improve operational efficiency
  • Leveraging External threat intelligence feeds such as MISP, ThreatConnect, and FireEye to enhance Threat Hunting accuracy and proactive defence strategies
  • Developing and fine-tuning SIEM detection logic and refining analytics rules and correlation strategies to minimize false positives, enhance threat detection and improve response efficiency
  • Driving continuous security improvements by reviewing and optimizing analytics rules, playbooks, and workbooks quarterly, boosting SOC performance by 15%
  • Automated high-fidelity alert containment using Azure Logic Apps, reducing response time by 30%

Achievements:

  • Optimized SIEM rules & correlation log cutting false positives by 40%, improving SOC efficiency
  • Automated threat containment with playbooks, reducing manual triaging effort by 30%
Sept. 2021 - Okt. 2023
2 Jahren 2 Monaten
Noida, Indien

Cyber Security Advisor

Open System/Ontinue

  • Led the onboarding process for 20+ customers in the Microsoft security suite, ensuring seamless integration and optimized security configurations
  • Collaborated with the SOC team to improve SIEM detection logic, refining correlation rules and use cases, resulted in a 20% reduction in false positives
  • Conducted proactive threat hunting and leveraged threat intelligence feeds, identifying and mitigating emerging vulnerabilities and risks
  • Prepared and presented SOC metrics, risk assessments, and compliance reports to stakeholders, driving a 20% improvement in risk mitigation strategies

Achievements:

  • Scaled SOC operations by recruiting & training 20+ SOC Engineers
  • Led a security awareness program, reducing phishing incidents by 50%
Sept. 2018 - Aug. 2021
3 Jahren
Gurugram, Indien

Specialist Security Systems

British Telecommunications

  • Managed security solutions, deploying and monitoring firewalls and proxy (Checkpoint, Palo Alto, Cisco ASA, Zscaler) for global network security
  • Conducted root cause analysis for security incidents and recommended risk mitigation measures
  • Monitored customer network traffic and logs from various sources (e.g., firewalls, IDS/IPS, cloud platforms) to detect and mitigate potential threats
Okt. 2016 - Aug. 2018
1 Jahr 11 Monaten
Pune, Indien

Information Security Engineer

CompuCom CSI Ltd

Apr. 2016 - Sept. 2016
6 Monaten
Gurugram, Indien

Security Analyst

British Telecommunications

März 2014 - Apr. 2016
2 Jahren 2 Monaten
Noida, Indien

Security Specialist

HCL Comnet Pvt. Ltd.

Juni 2011 - Feb. 2014
2 Jahren 9 Monaten
Bengaluru, Indien

Network Security Engineer

Networker's Home

Sprachen

Englisch
Verhandlungssicher
Hindi
Verhandlungssicher

Ausbildung

Okt. 2021 - Juni 2024

University Of Mysore

Master of computer applications · Computer Applications · Indien

Okt. 2008 - Juni 2011

IGNOU

Bachelor of Computer Science · Computer Science · Indien

Zertifikate & Bescheinigungen

Microsoft 365 Security Administration (MS-500)

Microsoft

Certified Cloud Security Professional (CCSP)

ISC2

Microsoft Azure Security Technologies (AZ-500)

Microsoft

Microsoft Security Operations Analyst (SC-200)

Microsoft

Certified Information Systems Security Professional (CISSP)

ISC2

Microsoft Azure Fundamentals (AZ-900)

Microsoft

Microsoft Cybersecurity Architect Expert (SC-100)