Cyber Security Analyst
CurrentKey responsibilities:Cybersecurity Security Analyst adept at monitoring and responding to security incidents in 24/7 Security Operations Center (SOC) environment. Managed daily shift activities, conducted comprehensive incident response, root cause analysis, and fine-tuned false positives to optimize security operations efficiency.Knowledge in MITRE ATT&CK Framework for threat modeling, detection, and response strategiesDeveloped and upheld CrowdStrike EDR policies for FIM and USB Control, ensuring compliance with security standards and proactive threat mitigation.Executed exclusion and blocking procedures for IPs, domains, and URLs within the Web Gateway to enhance security posture and mitigate potential threats.Performed thorough analysis of client-reported phishing emails, leveraging diverse online resources including MS-O365 for obtaining audit/message trace logs to enhance detection and response capabilities.Implemented robust monitoring and protection measures to safeguard user data and files against ransomware attacks.Threat intelligence involves gathering, analyzing, and interpreting data to proactively identify and mitigate cybersecurity threats.Implementing proactive measures to safeguard user accounts against data breaches and ensuring swift response to mitigate potential risks.