Information security professional with 10+ years of experience having expertise in SecOps and Security Operations Center. Dedicated professional with an excellent work ethic. Experienced in a wide range of security technologies with the ability to learn quickly and adapt to new environment.
• Currently working as a SOC manager with responsibility to manage security operations center that performs real time monitoring and incident handling.
• Guiding team for excellence in handling Incidents, Alerts, Operational issues, Procedures, and on different tools & technologies being used in Amdocs.
• Responsible to investigate and manage potential critical security incidents as an IR manager.
• Defining the Incident Management process and publishing the IR report.
• Defining IR process for end-to-end investigation, containment & Eradication of persistence & zero-day malware also the other critical type of incidents.
• Establish process for Threat Hunting and Threat Intelligence.
• Develop playbooks for threat hunting hypotheses.
• Managing SIEM & SOAR administration team.
• Identify security gaps and get it fixed.
• Threat Intelligence Strategy & Planning, Proposing future maturity & Cyber readiness plan.
• Performing analysis on logs and rules to provide recommendations to SIEM admin.
• Responsible to work on rules finetuning and use case defining.
• Responsible to create/review IMFs/Playbooks.
• Responsible to ensure monthly SOC reporting is delivered to required standards and on time.
• Responsible to work with SOAR admin to achieve orchestration and automation on SOAR.
• Define security triage and SLA.
• Conducting Cyber Drill for Red Teaming and Blue teaming.
• Managed different security solutions as a part of SecOps/Infra Security team.
• Deployment and administration of different email security solutions like Messaging Gateway, Email ATP and Scanmail.
• Deployment and administration of data security solutions like DLP and DAM.
• Defined and implemented DLP polices for the customer environment.
• Deployment and administration of Trend Micro DSM solution.
• Managed different security solutions as a part of SecOps/Infra Security team.
• Deployment and administration of data masking solutions like TDM and DDM.
• Managed different security solutions as a part of SecOps/Infra Security team.
• Deployment and administration of data security and email security solutions.
Client: IBM India Private Limited
• Managed IAM operatins like primary controls and secondary controls for User IDs.
• Database user id management.
SIEM/SOAR
IR & Forensic
Threat Intelligence & Threat Hunting
Cloud Security
Data Security
Network Security
Endpoint Security
• Received award from CISO for the outstanding performance and professionalism in the year 2022.
• Received Certificate of Excellency by Amdocs management for the year 2021.
• Received appreciation award by IBM for dedication and efforts at work for year 2016.
• Received Solutions Excellence Award (EA) from IBM for outstanding work performance for the year 2018.