Security Analyst
Current• Monitoring the logs which are coming from different log sources from organization network such as IDS, IPS, AD, firewall, DNS, DHCP, proxy servers using SIEM.• Analyze the suspicious activity based on correlation rule alert raised• Decide whether the incidence is true positive or false positive and raising the ticket . If is true positive Raise a ticket to the concerned team to remediate it.• Follow up the concerned teams for which the… Show more • Monitoring the logs which are coming from different log sources from organization network such as IDS, IPS, AD, firewall, DNS, DHCP, proxy servers using SIEM.• Analyze the suspicious activity based on correlation rule alert raised• Decide whether the incidence is true positive or false positive and raising the ticket . If is true positive Raise a ticket to the concerned team to remediate it.• Follow up the concerned teams for which the ticket is raised.• Drafting the shift handover by shift handover documentation.• Basic troubleshooting of log sources.• Analyze and respond to undisclosed software and hardware vulnerabilities using Nessus. Show less