Motivated SOC Analyst (L1) with foundational knowledge in security operations, threat detection, and incident handling. Hands-on experience with SIEM tools, log analysis, and security monitoring. Strong understanding of MITRE ATT&CK, firewalls, IDS/IPS, and endpoint security. Quick learner with strong analytical skills, eager to contribute to a dynamic SOC team and grow in the field of cybersecurity.
Overview
2
2
years of professional experience
Work History
L1 SOC Analyst
SATTRIX INFORMATION SECURITY Ltd
06.2024 - 12.2024
Monitored real-time security alerts using SIEM tools.
Analyzed security logs from firewalls, endpoints, and network devices.
Investigated potential security incidents and threats.
Classified security events based on severity and risk assessment.
Escalated critical incidents to L2/L3 analysts and incident response teams.
Analysing & identifying false positive incidents. Bringing them into superior's notice. Suggesting appropriate action needs to be taken to reduce false positive rate.
Generated security reports and documented findings for audit compliance.
Followed predefined playbooks and SOPs for security incidents.
Coordinated with IT and security teams to mitigate threats.
Implemented IP blacklisting on firewalls to block malicious traffic and prevent unauthorized access.
Performed daily health checks on security devices (SIEM, firewalls, IDS/IPS, endpoint security) to ensure optimal functionality and log integrity.
Conducted routine system health checks on SOC infrastructure, identifying and in logs and alerts.
Checked and validated the availability and performance of SIEM dashboards, threat intelligence feeds, and security tools.
Reviewed and validated IP whitelisting requests, following security policies to prevent unauthorized access.
SOC Analyst
BHARTI AIRTEL
05.2023 - 03.2024
Monitored real-time security alerts using SIEM tools.
Analyzed security logs from firewalls, endpoints, and network devices.
Investigated potential security incidents and threats.
Classified security events based on severity and risk assessment.
Escalated critical incidents to L2/L3 analysts and incident response teams.
Analysing & identifying false positive incidents. Bringing them into superior's notice. Suggesting appropriate action needs to be taken to reduce false positive rate.
Generated security reports and documented findings for audit compliance.
Followed predefined playbooks and SOPs for security incidents.
Assisted in incident response efforts, including log retrieval, malware analysis, and initial containment.
Coordinated with IT and security teams to mitigate threats.
Implemented IP blacklisting on firewalls to block malicious traffic and prevent unauthorized access.
Developed and optimized firewall policies to balance security and business needs while minimizing attack surfaces.
Monitored and fine-tuned firewall rules to prevent unauthorized access and enhance network performance.
Collaborated with IT and security teams to define firewall policies for secure application and service communication.
Updating the security patches over the Fortinet firewall.
Education
Bsc Honours in Anthropology -
University of Calcutta
Skills
SIEM: Arcsight, IBM QRadar
EDR: Microsoft Defender
Firewall: Fortinet, Check Point, Palo Alto, Forcepoint
Experience Duration
1 years 3 months
Disclaimer
I hereby confirm that the information stated above is true to the best of my knowledge and belief.
Associate General Manager – Procurement at AMPIN Energy Transition Pvt. Ltd.Associate General Manager – Procurement at AMPIN Energy Transition Pvt. Ltd.