At PwC, I monitor enterprise security environments around the clock using Splunk, IBM QRadar, and Microsoft Sentinel, rapidly identifying and responding to threats.
I investigate endpoint, phishing, authentication, malware, and suspicious access incidents using CrowdStrike Falcon, Symantec Endpoint Protection, Trend Micro, and ServiceNow. My work includes log correlation, IOC validation, threat hunting mapped to MITRE ATT&CK, containment actions, root-cause documentation, and SOC reporting.
Previously at TMF Services India, I correlated events across Sentinel, Splunk, CrowdStrike Falcon, firewalls, and cloud platforms to investigate sophisticated attack patterns and reduce response time.
I also prioritized vulnerabilities through Tenable.io, investigated Forcepoint DLP incidents, and tuned SIEM rules, analytics, dashboards, and detection use cases to improve accuracy and reduce false positives.
