Skip to main content
Sachin BishtSB
Looking for a job

Sachin Bisht

@sachinbisht1

Security Operations Engineer at Ankura Consulting India Pvt. Ltd., handling L2 incident escalations and refining SIEM alerts.

India
Message

At Ankura Consulting India Pvt. Ltd., I handle L2 escalations in a 24/7 SOC environment, investigating high-priority incidents escalated by L1 analysts. I also mentor analysts on investigation method, creating SOPs and playbook creation/execution.

I monitor Azure Sentinel and Obsidian alerts, including UEBA, DLP violations, sign-in anomalies, and business email compromise. I work with detection engineering teams to provide feedback on noisy alerts and help fine-tune SIEM rules.

Previously, at Nokia, I investigated security incidents across endpoint, network, and identity vectors and hunted for indicators of compromise using enterprise log sources. At Real Time Data Services Pvt. Ltd., I supported compliance and risk governance, security opreations, incident response, security engineering and worked on vulnerability management with Nessus.

Experience

Work history, roles, and key accomplishments

AL
Current

Associate, Managed Detection & Response (MDR)

Ankura Consulting India Pvt. Ltd.

May 2025 - Present (1 year 4 months)

Serve as the primary L2 escalation point in a 24/7 rotational shift environment, owning end-to-end investigations for high-priority incidents and mentoring Tier-1 analysts. Monitor and investigate security alerts within Azure Sentinel, specializing in UEBA, DLP, sign-in anomalies, and BEC, while administering SentinelOne and Carbon Black EDR platforms.

Nokia logoNO

Security Operations Engineer

Mar 2024 - May 2025 (1 year 2 months)

Acted as an L2 escalation handler for L1 analysts, independently investigating and resolving moderate-to-complex security incidents across endpoint, network, and identity vectors. Monitored and correlated security events across Splunk SIEM, CrowdStrike Falcon, and SentinelOne EDR platforms, and proactively hunted for indicators of compromise and adversary TTPs.

RL

IT Security Engineer

Real Time Data Services Pvt. Ltd.

Mar 2023 - Mar 2024 (1 year)

Operated within a multi-tenant enterprise MSSP environment, monitoring real-time security events across Azure Sentinel, ELK SIEM, and CrowdStrike EDR, including AWS cloud logs. Supported compliance readiness, evaluated third-party vendor security postures, and managed vulnerability and network security programs using Nessus, Proofpoint, and Cisco Umbrella.

Amazon Development Centre India logoAI

D2AS Associate Gaming Specialist

Dec 2021 - Apr 2022 (4 months)

Conducted continuous security monitoring and anomaly detection for gaming environments, tracking user behavioral patterns to identify policy violations, unauthorized access, and system exploits. Handled initial triage of user reports and security events, escalating confirmed security exploits according to operational protocols.

Education

Degrees, certifications, and relevant coursework

Shivaji College, University of Delhi logoSD

Shivaji College, University of Delhi

Bachelor of Science, Physical Science

2017 - 2020

Completed a Bachelor of Science in Physical Science with a focus on Computer Science from Shivaji College, University of Delhi from 2017 to 2020.

SentinelOne logoSE

SentinelOne

SentinelOne Incident Response Engineer (SIREN), Incident Response

Earned the SentinelOne Incident Response Engineer (SIREN) certification, issued in October 2025 and valid through October 2026.

Get matched with your dream remote job

Sign up now and join over 250,000+ remote workers who receive personalized job alerts, curated job matches, and more for free!

Sign up
Himalayas profile for an example user named Frankie Sullivan