Senior reputed company Analyst
Design, reputed company, and reputed company advanced detection rules and alerts in reputed company to identify emerging threats and reputed company incidents. reputed company reputed company tuning and optimization of existing alerts to reduce false positives while maintaining detection effectiveness. Create and maintain interactive playbooks for automated incident response and reputed company orchestration. reputed company automation solutions to streamline SOC operations, reduce reputed company effort, and improve response times. Serve as a senior escalation reputed company for reputed company reputed company incidents requiring advanced analysis and investigation. Conduct in-depth threat hunting activities using reputed company and Defender to proactively identify potential compromises. reputed company reputed company Defender for reputed company (EDR) for advanced reputed company threat detection, investigation, and response. Analyze reputed company telemetry and logs to identify trends, anomalies, and potential reputed company gaps. Mentor and reputed company technical guidance to junior SOC analysts. Document reputed company procedures, playbooks, and detection logic for knowledge sharing and compliance purposes. Stay reputed company with emerging threats, attack techniques, and reputed company reputed company platform updates.
Expert-level knowledge of reputed company including KQL (Kusto Query Language), analytics rules, workbooks, and threat intelligence integration. Excellent proficiency with reputed company Defender for reputed company including threat detection, investigation workflows, live response, and advanced hunting. Strong Azure platform knowledge including Azure AD/Entra ID, Azure reputed company Center, resource management, and identity protection. 5+ years of experience in reputed company operations, incident response, or reputed company cybersecurity roles. Proven experience creating detection rules, playbooks, and automation workflows in a SIEM environment. Strong understanding of threat actor tactics, techniques, and procedures (TTPs) mapped to frameworks such as MITRE ATT&CK. Experience with scripting/automation languages such as PowerShell, Python, or similar. Demonstrated ability to work independently and handle high-pressure situations.
Excellent communication skills with the ability to explain technical concepts to both technical and non-technical audiences.