Venkata Aditya Yaswanth prasad Gandu
About Candidate
Having 2 years of experience as Informational Security Analyst. Good understanding of security solutions like SIEM, DLP, monitoring, IPS/IDS, Email Security. Hands-on experience with Splunk for log-monitoring and header/email analysis, Service now ticketing tool. Good knowledge on networking concepts including OSI layers, subnet, TCP/IP, ports, DNS, DHCP, firewall monitoring, content filtering etc. Good knowledge on Endpoint Detection and Response Security plus SIEM (IBM Qradar, Splunk, Malware Analysis), Incident Lifecycle Experience with Defender 365 |
Education
Work & Experience
Served as Analyst in SOC operations for real-time monitoring, analysing logs from various security/Industrial appliances. • Security event analysis and intrusion detection by review and analysis of events generated by various components including IDS/IPS, firewalls, Routers, DB and various types of security devices. • Monitoring of events from Data Loss Prevention (DLP) and other information security tools and determined appropriate next steps using knowledge of Corning businesses or processes. • Monitoring & Troubleshooting the Schedule scan task running status in Qualys Vulnerability Manager Console and latest Signature Updating. • Performed Real-Time Monitoring, Investigation, Analysis, Reporting and Escalations of Security Events from multiple log sources. • Preparing RCA documents and daily/weekly/monthly Reports. • Support security incident response processes in the event of a security breach by providing incident reporting. • Utilized Security Information and Event Management (SIEM), Data Leakage Prevention (DLP), Intrusion Detection and Prevention (IDS / IPS), forensics, sniffers and malware analysis tools. • Troubleshooting basic errors identified in Splunk and fixing those errors. • Monitoring the customer network using SIEM tool– Splunk. • Troubleshooting SIEM dashboard issues when there are no reports getting generated or no data available. • Identify, investigate, or resolve security breaches and incidents.