Engineer SOC (L2)– Security Operations Centre (SOC) : December 2025 - Present
Leading SOC operations for a critical enterprise environment serving CESC (RPSG Group).
Serving as the operational SPOC between the SOC team and management for technical coordination and decision-making.
Driving proactive threat detection and continuous security monitoring through enterprise SIEM and EDR technologies.
Contributing to operational improvements by enhancing detection capabilities, streamlining investigations, and strengthening incident response processes.
SIEM: IBM QRadar
EDR: CrowdStrike Falcon
Domains: Security Operations (SecOps), Blue Team, Incident Response, Threat Detection & Investigation, Threat Intelligence, Security Monitoring, Log Analysis, Endpoint Security
Lead a 4-member SOC team, overseeing daily security operations, workload distribution, analyst coordination, and incident response activities.
Serve as the primary SOC SPOC, reporting directly to management while coordinating with technical leads, infrastructure teams, and business stakeholders to ensure effective security operations.
Drive SOC operational management by prioritising incidents, monitoring service delivery, maintaining response timelines, and ensuring compliance with established security processes and SLAs.
Mentor and guide SOC analysts by providing technical direction, reviewing investigations, validating incident handling procedures, and promoting continuous knowledge sharing within the team.
Monitor, analyse, and investigate security events using IBM QRadar SIEM, identifying potential threats, suspicious activities, and security incidents.
Manage and administer CrowdStrike Falcon EDR, including endpoint monitoring, threat containment, malware investigation, response coordination, and endpoint security posture improvement.
Perform threat monitoring, log correlation, event analysis, and incident triage to minimise organisational security risks.
Conduct detailed investigations using Indicators of Compromise (IOCs), threat intelligence, and forensic evidence to determine attack scope, impact, and remediation requirements.
Develop, optimise, and fine-tune SIEM use cases, detection rules, and correlation logic to improve detection capabilities while reducing false positives.
Coordinate incident escalation, root cause analysis, post-incident reviews, and continuous improvement initiatives to enhance SOC maturity and operational resilience.
Collaborate with infrastructure, network, and IT teams to remediate security issues, strengthen defensive controls, and improve the organisation's overall security posture.
Prepare operational reports, security metrics, and incident summaries for management, supporting informed decision-making and continuous service improvement.
Contribute to SOC process standardisation, documentation, playbook development, and operational governance to improve consistency, efficiency, and incident response readiness.
Participate in security solution evaluations, architecture discussions, and security solution scoping to align operational capabilities with business and security objectives.
Dievas Technologies Private Limited
SOC Analyst - June 2024 - December 2025
I’m a CEH-certified Cybersecurity Specialist with a proven track record of executing multi-layered defense strategies and implementing core security controls across enterprise-grade infrastructures. At the core of my experience lies my contribution to Security Operations Centre (SOC) environments, where I’ve played an instrumental role in monitoring, analyzing, and responding to real-time threats using industry-grade tools like SECEON SIEM.
In my role, I’ve developed a sharp instinct for separating false positives from high-priority alerts, enabling faster threat triage and proactive mitigation of MITRE ATT&CK framework-aligned tactics and techniques. As an authorised escalation point under the SOC Manager, I’ve worked closely with cross-functional teams to ensure timely remediation, policy enforcement, and security compliance.
My expertise goes beyond event response. I’ve actively contributed to IAM/PAM architecture, Data Loss Prevention (DLP) policy rollouts, and endpoint security enforcement, ensuring that both human and machine identities are protected across diverse IT environments.
I thrive at the intersection of technology and business. From delivering impactful Proof of Concepts (POCs) to translating technical solutions into business outcomes, I’ve regularly interfaced with clients, senior managers, and OEM partners. Demonstrating cybersecurity solutions to prospects and tailoring them to specific use-cases has been both a challenge and a rewarding part of my role.
I’ve contributed to Vulnerability Assessment and Penetration Testing (VAPT) initiatives aligned with CERT-In guidelines, helping harden both internal and client infrastructures. My contributions included:
Performing security audits and drafting detailed vulnerability reports.
Creating HLD/LLD diagrams to explain system architectures and threat surfaces.
Automating parts of the assessment process to improve team efficiency.
Conducting on-ground site surveys for network and cybersecurity infrastructure allowed me to connect real-world constraints with optimal solution design. Mapping client environments ensured we could deliver custom-fit, scalable deployments.
I authored client-ready documentation and proposals for complex cybersecurity deployments. Whether it was designing solution architectures or co-developing RFP submissions, my focus has always been on clarity, alignment with client needs, and delivering high-quality deliverables that drive decisions.
I bridge the gap between technical expertise and business value. From demonstrating SIEM and Zero Trust architectures to clients, to developing presales documentation, RFP responses, and solution design proposals, I’ve helped align client needs with tailored security frameworks. My collaborative work with OEMs and partner teams has earned positive feedback from clients and senior leadership alike.
Branding & Communication Strategy
Not just limited to cybersecurity, I also lead initiatives in visual communication and corporate branding. I’ve standardized reporting formats, designed internal media assets, and created impactful presentation decks that elevate the brand’s visibility and professionalism in every client interaction.
Passionate about continuous learning, I’m constantly exploring areas such as Active Directory hardening, Threat Intelligence, and Identity Access Governance. I aim to pursue advanced certifications like CISSP and CISO, with the vision of leading enterprise-level security transformations in the future.