Leading a 20+ member cybersecurity team, driving incident response, threat hunting, and security automation with tools like Microsoft Defender, Azure Sentinel, Sentinel One, and RSA Net Witness
Optimizing security monitoring and threat detection by configuring and managing Azure Sentinel connectors, workbooks, playbooks, and KQL queries for threat detection, and incident response
Integrated Microsoft Defender for Endpoint, Office 365, Identity, Cloud Apps with Azure Sentinel for centralized threat response, with automated remediation
Designing and implementing SIEM dashboards on Splunk, Azure Sentinel, Netwitness to provide real-time monitoring, incident tracking, reduce manual effort, and improve operational efficiency
Leveraging External threat intelligence feeds such as MISP, ThreatConnect, and FireEye to enhance Threat Hunting accuracy and proactive defence strategies
Developing and fine-tuning SIEM detection logic and refining analytics rules and correlation strategies to minimize false positives, enhance threat detection and improve response efficiency
Driving continuous security improvements by reviewing and optimizing analytics rules, playbooks, and workbooks quarterly, boosting SOC performance by 15%
Automated high-fidelity alert containment using Azure Logic Apps, reducing response time by 30%
Automated threat containment with playbooks, reducing manual triaging effort by 30%
Sep 2021 - Oct 2023
2 years 2 months
Noida, India
Cyber Security Advisor
Open System/Ontinue
Led the onboarding process for 20+ customers in the Microsoft security suite, ensuring seamless integration and optimized security configurations
Collaborated with the SOC team to improve SIEM detection logic, refining correlation rules and use cases, resulted in a 20% reduction in false positives
Conducted proactive threat hunting and leveraged threat intelligence feeds, identifying and mitigating emerging vulnerabilities and risks
Prepared and presented SOC metrics, risk assessments, and compliance reports to stakeholders, driving a 20% improvement in risk mitigation strategies
Achievements:
Scaled SOC operations by recruiting & training 20+ SOC Engineers
Led a security awareness program, reducing phishing incidents by 50%
Sep 2018 - Aug 2021
3 years
Gurugram, India
Specialist Security Systems
British Telecommunications
Managed security solutions, deploying and monitoring firewalls and proxy (Checkpoint, Palo Alto, Cisco ASA, Zscaler) for global network security
Conducted root cause analysis for security incidents and recommended risk mitigation measures
Monitored customer network traffic and logs from various sources (e.g., firewalls, IDS/IPS, cloud platforms) to detect and mitigate potential threats
Oct 2016 - Aug 2018
1 year 11 months
Pune, India
Information Security Engineer
CompuCom CSI Ltd
Apr 2016 - Sep 2016
6 months
Gurugram, India
Security Analyst
British Telecommunications
Mar 2014 - Apr 2016
2 years 2 months
Noida, India
Security Specialist
HCL Comnet Pvt. Ltd.
Jun 2011 - Feb 2014
2 years 9 months
Bengaluru, India
Network Security Engineer
Networker's Home
Languages
English
Advanced
Hindi
Advanced
Education
Oct 2021 - Jun 2024
University Of Mysore
Master of computer applications · Computer Applications · India
Oct 2008 - Jun 2011
IGNOU
Bachelor of Computer Science · Computer Science · India
Certifications & licenses
Microsoft 365 Security Administration (MS-500)
Microsoft
Certified Cloud Security Professional (CCSP)
ISC2
Microsoft Azure Security Technologies (AZ-500)
Microsoft
Microsoft Security Operations Analyst (SC-200)
Microsoft
Certified Information Systems Security Professional (CISSP)
ISC2
Microsoft Azure Fundamentals (AZ-900)
Microsoft
Microsoft Cybersecurity Architect Expert (SC-100)
Similar Freelancers
Discover other experts with similar qualifications and experience