Lead - SOC Analyst
- Observed security solutions like firewall appliances, SIEM tools, Intrusion prevention systems, log aggregation tools analysis tools, data loss prevention systems.
- Provided network intrusion detection expertise to support timely and effective decision making of when to declare an incident.
- Proficiency in using cloud security tools and services, such as AWS CloudTrail, Azure Security Center, and Google Cloud Security Command Center, for monitoring and securing cloud environments.
- Knowledge of cloud security best practices, including configuring and securing cloud resources, implementing access controls, and managing identities and permissions in the cloud.
- Familiarity with compliance frameworks and regulations relevant to cloud security, such as GDPR, HIPAA, and industry-specific compliance requirements.
- Proficiency with IDS/IPS technologies, such as Snort, Sourcefire and working knowledge of Linux and Windows systems administration (Includes ACTIVE DIRECTORY)
- Analyzed network flow data for anomalies and detect malicious network activity and report appropriately.
- Provided information and relevant mitigation plan regarding intrusion events, security incidents, and threat indications and warning information.