Soc Analyst
Current- Utilized XSOAR, a multi-tenanted SOAR platform, to monitor and respond to rule-triggered events for multiple clients, ensuring effective security orchestration and automation.- Conducted event triaging using IBM QRadar and facilitated escalations to the appropriate stakeholders.- Possessed expertise in monitoring security events utilizing the Splunk SOAR, coupled with adept event triaging using the Splunk Security Information and Event Management (SIEM) tool.- Worked closely with clients to understand their needs and priorities, and translating those requirements into clear guidance for the team, ensuring delivery of high-quality results to meet expectations.- Developed comprehensive instructional guides, enabling colleagues to execute processes efficiently.- Optimized Splunk search queries, enhancing efficiency and streamlining daily operational activities, resulting in improved performance and productivity.- Refined and resolved playbook processes and errors on XSOAR, improving efficiency, and streamlining processes.