
Ankur Babele
@ankurbabele1
I detect, investigate, and contain enterprise security threats across SOC environments.
What I'm looking for
I've strengthened enterprise SOC operations for AMD Technologies by monitoring and investigating alerts across Splunk, Microsoft Sentinel, CrowdStrike Falcon, and Microsoft Defender for Endpoint. I handle 80+ events per shift, lead L2 investigations, and drive containment through host isolation, account disablement, and IOC blocking.
I build and tune correlation rules, Sigma-based detections, and use cases that reduced false-positive alert volume by approximately 30%. I also conduct hypothesis-driven hunts with SPL and KQL mapped to MITRE ATT&CK, uncovering persistence and credential-access activity missed by existing detections.
Previously at Zsoft Technologies Solution, I managed the end-to-end incident lifecycle for multiple enterprise customers, from real-time monitoring through containment, recovery, and lessons learned. My investigations have covered phishing, malware, C2 beaconing, DNS tunneling, data exfiltration, vulnerability findings, and cloud and identity anomalies.
I've also delivered hands-on cybersecurity training covering phishing awareness, networking, Linux, Wireshark, and Nmap. I bring 5+ years of 24x7 SOC experience, supported by CEH, CompTIA Security+, and CompTIA CySA+ certifications.
Experience
Work history, roles, and key accomplishments
Cybersecurity Analyst
AMD Technologies
Mar 2025 - Present (1 year 6 months)
Monitored, triaged, and investigated security alerts across SIEM and EDR in a 24x7 enterprise SOC, handling 80+ events per shift. Led L2 investigations for malware, phishing, and lateral movement, and built correlation rules to reduce false positives by ~30%.
Cybersecurity Trainer
Saraswathi Vidya Mandhir Residential School
Jul 2024 - Feb 2025 (7 months)
Designed and delivered a hands-on cybersecurity curriculum covering cyber hygiene, phishing awareness, and safe internet practices. Conducted practical lab sessions on networking, Linux, and security tools, and ran awareness workshops for staff.
SOC Analyst
Zsoft Technologies Solution Pvt. Ltd.
Aug 2020 - Jun 2024 (3 years 10 months)
Performed real-time monitoring and L1/L2 analysis of security events using Splunk and IBM QRadar, managing the full incident lifecycle aligned with NIST SP 800-61. Analyzed phishing emails, performed malware analysis, and ran vulnerability scans with Nessus and Qualys.
Education
Degrees, certifications, and relevant coursework
Institute of Engineering & Technology (IET), Devi Ahilya Vishwavidyalaya (DAVV)
Bachelor of Engineering, Electronics and Telecommunication Engineering
Bachelor of Engineering in Electronics and Telecommunication Engineering from the Institute of Engineering & Technology, Devi Ahilya Vishwavidyalaya, Indore.
Tech stack
Software and tools used professionally
Availability
Location
Authorized to work in
Salary expectations
Social media
Job categories
Skills
Interested in hiring Ankur?
You can contact Ankur and 90k+ other talented remote workers on Himalayas.
Message AnkurGet matched with your dream remote job
Sign up now and join over 250,000+ remote workers who receive personalized job alerts, curated job matches, and more for free!
