Leading a 20+ member cybersecurity team, driving incident response, threat hunting, and security automation with tools like Microsoft Defender, Azure Sentinel, Sentinel One, and RSA Net Witness
Optimizing security monitoring and threat detection by configuring and managing Azure Sentinel connectors, workbooks, playbooks, and KQL queries for threat detection, and incident response
Integrated Microsoft Defender for Endpoint, Office 365, Identity, Cloud Apps with Azure Sentinel for centralized threat response, with automated remediation
Designing and implementing SIEM dashboards on Splunk, Azure Sentinel, Netwitness to provide real-time monitoring, incident tracking, reduce manual effort, and improve operational efficiency
Leveraging External threat intelligence feeds such as MISP, ThreatConnect, and FireEye to enhance Threat Hunting accuracy and proactive defence strategies
Developing and fine-tuning SIEM detection logic and refining analytics rules and correlation strategies to minimize false positives, enhance threat detection and improve response efficiency
Driving continuous security improvements by reviewing and optimizing analytics rules, playbooks, and workbooks quarterly, boosting SOC performance by 15%
Automated high-fidelity alert containment using Azure Logic Apps, reducing response time by 30%
Automated threat containment with playbooks, reducing manual triaging effort by 30%
Sept. 2021 - Okt. 2023
2 Jahren 2 Monaten
Noida, Indien
Cyber Security Advisor
Open System/Ontinue
Led the onboarding process for 20+ customers in the Microsoft security suite, ensuring seamless integration and optimized security configurations
Collaborated with the SOC team to improve SIEM detection logic, refining correlation rules and use cases, resulted in a 20% reduction in false positives
Conducted proactive threat hunting and leveraged threat intelligence feeds, identifying and mitigating emerging vulnerabilities and risks
Prepared and presented SOC metrics, risk assessments, and compliance reports to stakeholders, driving a 20% improvement in risk mitigation strategies
Achievements:
Scaled SOC operations by recruiting & training 20+ SOC Engineers
Led a security awareness program, reducing phishing incidents by 50%
Sept. 2018 - Aug. 2021
3 Jahren
Gurugram, Indien
Specialist Security Systems
British Telecommunications
Managed security solutions, deploying and monitoring firewalls and proxy (Checkpoint, Palo Alto, Cisco ASA, Zscaler) for global network security
Conducted root cause analysis for security incidents and recommended risk mitigation measures
Monitored customer network traffic and logs from various sources (e.g., firewalls, IDS/IPS, cloud platforms) to detect and mitigate potential threats
Okt. 2016 - Aug. 2018
1 Jahr 11 Monaten
Pune, Indien
Information Security Engineer
CompuCom CSI Ltd
Apr. 2016 - Sept. 2016
6 Monaten
Gurugram, Indien
Security Analyst
British Telecommunications
März 2014 - Apr. 2016
2 Jahren 2 Monaten
Noida, Indien
Security Specialist
HCL Comnet Pvt. Ltd.
Juni 2011 - Feb. 2014
2 Jahren 9 Monaten
Bengaluru, Indien
Network Security Engineer
Networker's Home
Sprachen
Englisch
Verhandlungssicher
Hindi
Verhandlungssicher
Ausbildung
Okt. 2021 - Juni 2024
University Of Mysore
Master of computer applications · Computer Applications · Indien
Okt. 2008 - Juni 2011
IGNOU
Bachelor of Computer Science · Computer Science · Indien
Zertifikate & Bescheinigungen
Microsoft 365 Security Administration (MS-500)
Microsoft
Certified Cloud Security Professional (CCSP)
ISC2
Microsoft Azure Security Technologies (AZ-500)
Microsoft
Microsoft Security Operations Analyst (SC-200)
Microsoft
Certified Information Systems Security Professional (CISSP)
ISC2
Microsoft Azure Fundamentals (AZ-900)
Microsoft
Microsoft Cybersecurity Architect Expert (SC-100)
Ähnliche Freelancer
Entdecken Sie andere Experten mit ähnlichen Qualifikationen und Erfahrungen.