Soc Analyst
Current- Working in Tier-less Model Team and Part of work team 24*7.
- Working with SIEM on QRadar.
- Monitoring and analyzing security events to identify unusual activities.
- investigate anomalies in daily reports.
- Automate repetitive tasks such as ticketing system generation and deal with repeated false positives.
- Investigate malicious Phishing emails, Domains and IPS using open source tools and recommend proper blocking based on analysis.