At Tata Consultancy Services, I monitor and perform L1 triage for 15+ security alerts per shift across 200+ security use cases in a 24x7 SOC.
I investigate and correlate events in Splunk Enterprise, review CrowdStrike Falcon detections, and identify suspicious activity and indicators of compromise.
I handle P1 through P4 incidents end to end in ServiceNow, separating false positives from genuine threats and documenting clear investigation records.
I also support cloud security monitoring and investigations using AWS services including IAM, CloudTrail, GuardDuty, WAF, and Shield while collaborating on containment and remediation.

