Bhupender Singh

SOC Technical Lead

Bhupender Singh
New Delhi, India

Experience

Dec 2023 - Present
1 year 6 months
Noida, India

SOC Technical Lead

ASI Cyber Security India Pvt Ltd

  • Leading a 20+ member cybersecurity team, driving incident response, threat hunting, and security automation with tools like Microsoft Defender, Azure Sentinel, Sentinel One, and RSA Net Witness
  • Optimizing security monitoring and threat detection by configuring and managing Azure Sentinel connectors, workbooks, playbooks, and KQL queries for threat detection, and incident response
  • Integrated Microsoft Defender for Endpoint, Office 365, Identity, Cloud Apps with Azure Sentinel for centralized threat response, with automated remediation
  • Designing and implementing SIEM dashboards on Splunk, Azure Sentinel, Netwitness to provide real-time monitoring, incident tracking, reduce manual effort, and improve operational efficiency
  • Leveraging External threat intelligence feeds such as MISP, ThreatConnect, and FireEye to enhance Threat Hunting accuracy and proactive defence strategies
  • Developing and fine-tuning SIEM detection logic and refining analytics rules and correlation strategies to minimize false positives, enhance threat detection and improve response efficiency
  • Driving continuous security improvements by reviewing and optimizing analytics rules, playbooks, and workbooks quarterly, boosting SOC performance by 15%
  • Automated high-fidelity alert containment using Azure Logic Apps, reducing response time by 30%

Achievements:

  • Optimized SIEM rules & correlation log cutting false positives by 40%, improving SOC efficiency
  • Automated threat containment with playbooks, reducing manual triaging effort by 30%
Sep 2021 - Oct 2023
2 years 2 months
Noida, India

Cyber Security Advisor

Open System/Ontinue

  • Led the onboarding process for 20+ customers in the Microsoft security suite, ensuring seamless integration and optimized security configurations
  • Collaborated with the SOC team to improve SIEM detection logic, refining correlation rules and use cases, resulted in a 20% reduction in false positives
  • Conducted proactive threat hunting and leveraged threat intelligence feeds, identifying and mitigating emerging vulnerabilities and risks
  • Prepared and presented SOC metrics, risk assessments, and compliance reports to stakeholders, driving a 20% improvement in risk mitigation strategies

Achievements:

  • Scaled SOC operations by recruiting & training 20+ SOC Engineers
  • Led a security awareness program, reducing phishing incidents by 50%
Sep 2018 - Aug 2021
3 years
Gurugram, India

Specialist Security Systems

British Telecommunications

  • Managed security solutions, deploying and monitoring firewalls and proxy (Checkpoint, Palo Alto, Cisco ASA, Zscaler) for global network security
  • Conducted root cause analysis for security incidents and recommended risk mitigation measures
  • Monitored customer network traffic and logs from various sources (e.g., firewalls, IDS/IPS, cloud platforms) to detect and mitigate potential threats
Oct 2016 - Aug 2018
1 year 11 months
Pune, India

Information Security Engineer

CompuCom CSI Ltd

Apr 2016 - Sep 2016
6 months
Gurugram, India

Security Analyst

British Telecommunications

Mar 2014 - Apr 2016
2 years 2 months
Noida, India

Security Specialist

HCL Comnet Pvt. Ltd.

Jun 2011 - Feb 2014
2 years 9 months
Bengaluru, India

Network Security Engineer

Networker's Home

Languages

English
Advanced
Hindi
Advanced

Education

Oct 2021 - Jun 2024

University Of Mysore

Master of computer applications · Computer Applications · India

Oct 2008 - Jun 2011

IGNOU

Bachelor of Computer Science · Computer Science · India

Certifications & licenses

Microsoft 365 Security Administration (MS-500)

Microsoft

Certified Cloud Security Professional (CCSP)

ISC2

Microsoft Azure Security Technologies (AZ-500)

Microsoft

Microsoft Security Operations Analyst (SC-200)

Microsoft

Certified Information Systems Security Professional (CISSP)

ISC2

Microsoft Azure Fundamentals (AZ-900)

Microsoft

Microsoft Cybersecurity Architect Expert (SC-100)