Rahul Bhople

About Candidate

Experienced and dedicated SOC Analyst with 4 years of experience in
the Security Operation Center. Skilled in monitoring and triage of
security events identifying, analyzing, and responding to security threats
using tools like SIEM, IDS/IPS, Firewall, EDR, Email Gateway, Web Proxy and
vulnerability scanners. Strong knowledge of security policies,
procedures, and best practices. Proficient in incident triage and
response procedures and collaborating with other security professionals
to improve overall security posture of organization. Seeking a
challenging position in a dynamic organization where I can utilize my
technical skills and experience to identify and respond to security
threats.

Education

B
BCs
Bamu University

Work & Experience

S
SOC Analyst Nov 2021 - Present
Aarna Technologies Pvt Ltd

Conduct proactive monitoring and triage of security events. Investigate all security alerts received by making use of all tools and log files possible to determine if the alert is a false positive or security incident. Recognize potential, successful, and unsuccessful intrusion attempts and compromises thorough reviews and analyses of relevant event detail and summary information. Monitor security events and logs such as Proxy, IPS/IDS, Firewall, Email, Anti-Malware events, Endpoints Security, Web Application Firewall to maintain situational awareness. Investigate all reported suspicious emails and determine whether the emails are malicious, non-malicious or legitimate and reply to the user who reported the suspicious email with a message reporting the findings and any recommendations. Collect threat intelligence feeds like IOCs from different Intelligence platforms and review IOCs, investigate on identified potential indicators of compromise (IOCs). Identify and ingest indicators of compromise (IOCs) into applicable security controls. Review detection coverage of IOCs and if no coverage then submit it for coverage to relevant vendor/Internal Teams. Writing SOC monitoring use cases to detect new threats. Fine-tune SIEM rules to reduce false positive and remove false negatives. Monitors health of security sensors and SIEM infrastructure. Worked in a 24x7 Security Operations Center.

Be the first to review “Rahul Bhople”