At ANKURA CONSULTING GROUP, I lead SOC and cloud-security delivery across an MSSP/client environment, managing SOC and engineering teams. I strengthen Microsoft Sentinel coverage by integrating firewall, proxy, DNS, and Windows telemetry.
I build and maintain detection-use-case libraries aligned with available log sources, threats, and client requirements. I also reduce manual work through Azure Logic Apps and workflow integrations with ServiceNow and Jira.
At DELOITTE, I led cloud SOC operations and security-service delivery, managed a SOC team, and operationalized Microsoft Sentinel detection capabilities, threat hunting, SOPs, and playbooks. I automated reporting and repetitive activities using Azure Automation and Microsoft Sentinel Playbooks.
Earlier, I handled L2 SOC operations at DELOITTE and security operations at HCL TECHNOLOGIES, including escalated-event analysis, incident response, threat hunting, and custom detection rules. I hold Microsoft Azure AZ-900 and AZ-104 certifications, and am pursuing CISM.

