Security Operations Center Analyst
Current• Analyzed security events and alerts from diverse sources including AV, EDR, firewalls, IDS/IPS, and SIEM systems, ensuring comprehensive threat detection for more than 135+ Clients.• Conducted proactive threat hunting within the environment, proactively seeking out potential threats and vulnerabilities, a practice highly valued by clients for its proactive approach to security.• Recognized by management for innovative thinking and out-of-the-box problem-solving, particularly in prioritizing and reporting security incidents with heightened urgency, contributing to enhanced incident response and mitigation efforts.•Identified and assessed security incidents, vulnerabilities, and exposures, leveraging data analytics to quantify risks and prioritize mitigation efforts.• Triage and classification of security incidents based on severity and potential impact, adhering to SLA SOP for timely resolution.• Gathered essential data and context for Level 2 escalation, facilitating swift and effective incident management.• Proactively engaged in threat hunting activities to detect and mitigate emerging threats, bolstering organizational defenses.• Maintained accurate and detailed documentation of security incidents, vulnerabilities, and exposures, supporting ongoing analysis and improvement efforts.• Experience in deploying and managing the ELK Stack (Elasticsearch, Logstash, Kibana) to centralize log aggregation, monitoring, and analysis. Successfully integrated diverse data sources, including endpoints, IDS/IPS systems, and network devices, to enhance visibility and streamline incident detection and response.