Skip to main content
Tag RamTR
Open to opportunities

Tag Ram

@tagram

I build and operate SIEM detections and investigate security incidents.

Czechia
Message

I've built and operated SIEM monitoring and detection capabilities across ArcSight, Splunk, QRadar, and ELK, with hands-on experience investigating endpoint and email threats.

At CIBCGlobal-AnewzTV, I conduct threat hunting and investigate CrowdStrike Falcon alerts, endpoint telemetry, phishing attempts, malicious files, URLs, hashes, and email attachments. I document findings and support triage, escalation, containment, remediation, and recovery activities.

At Vodafone Prague, I deployed and maintained ArcSight ESM and Splunk, onboarded and normalized security logs, and developed correlation rules, dashboards, searches, and detection use cases mapped to MITRE ATT&CK.

My background also includes CrowdStrike EDR/XDR monitoring at Marelli Magneti Automotive Lighting, FortiMail and FortiSandbox administration at Fortinet, and ArcSight SIEM engineering at ING-NN Bank Group.

Experience

Work history, roles, and key accomplishments

CI
Current

SOC Analyst

CIBCGlobal-AnewzTV channel International

Aug 2024 - Present (2 years 1 month)

Performed threat hunting and endpoint behavior analysis to identify suspicious activity and potential indicators of compromise. Investigated security alerts and incidents in CrowdStrike Falcon, including DLP-related alerts and endpoint detections.

Education

Degrees, certifications, and relevant coursework

CY

Cydeo

Security Operations Center (SOC) Training and Practice Program, Security Operations

Successfully completed Security Operations Center (SOC) training and practice program.

Tech stack

Software and tools used professionally

Get matched with your dream remote job

Sign up now and join over 250,000+ remote workers who receive personalized job alerts, curated job matches, and more for free!

Sign up
Himalayas profile for an example user named Frankie Sullivan