At Accenture, I monitor and investigate security events in a 24x7 SOC using Microsoft Sentinel and CrowdStrike Next-Gen SIEM. I also develop and fine-tune KQL queries and analytics rules to improve detection quality and reduce false positives.
I investigate endpoint incidents involving malware, ransomware, persistence, and lateral movement, and support containment through endpoint isolation, IOC sweeping, forensic triage, and remediation coordination. I also analyze phishing alerts with Proofpoint and monitor DLP alerts for potential data-exfiltration attempts.
At FIS Global, I responded to incidents within defined SLAs and investigated endpoint, network, and phishing alerts using platforms including CrowdStrike, Trend Micro, Zscaler, and Abnormal. I configured firewall policies and prepared client-facing security reports.
Earlier, I monitored alerts at Avantha Technologies using Microsoft Sentinel, Splunk, and IBM QRadar, and handled Level 1 triage and escalation. At IBM India, I supported Windows and Linux systems, administered Microsoft 365 services, and managed user accounts and access permissions.

