This is Mahesh having 4+ years experience in SOC, Infrastructure Security and cloud security looking for similar role.
Thanks in advance.
Experience
Infosys
Jul 2022 – Jan 2023
Hyderabad
Senior Associate Consultant
The Primary function as a SOC Analyst is to analyze any incidents escalated by
the SIEM and Carbon black cloud and undertake a detailed validation of that
security event by coordinating with the customer IT and security team for
resolution of the Security Incidents.
Investigating Level 1 escalated incidents by performing initial investigation and
triage of potential incidents and escalate or close incidents as applicable.
Administrating various incidents/security alerts triggered in SIEM tool & CB
Cloud.
Performing Real-Time Monitoring, Investigation, Analysis, Reporting and
Escalations of Security Events from multiple log sources.
Technical expertise in analyzing threat event data, evaluating malicious activity,
documenting unusual files and data and identifying tactics, techniques and
procedures used by attackers.
Security event analysis and intrusion detection by review and analysis of events
generated by various components including IDS/IPS, firewalls, Routers, DB, OS
and various types of security devices.
Served as SOC Analyst on Investigating of alerts in Splunk by checking their
Source host/IP, Destination Host/IP, Location, IP reputation and Domain
reputation to investigate further process.
Contacting the customers directly in case of high priority incidents and
Blacklisting/Whitelisting, Creating Incidents and Change Orders in CA Service
Desk for Client Approval.
Design, develop and create correlation rules, Dashboards, Finetuning within the
Security Information and Event Management SIEM platform.
Implement and operate the vulnerability Management tools and processes at a
program level ensuring weekly scans and remediation per SLO.
Inavantage solutions pvt ltd
Jul 2019 – Jul 2022
Banglore
Security Analyst
3 years worked as a security analyst sound knowledge on networking concepts and SOC Infrastructure Security concepts experience on Splunk Enterprise Security
Education
Lendi Institute of engineering and technology
Jun 2013 – Jul 2017
Bachelor's of Technology, Computer science and engineering