At TechDefence Lab Solutions Limited, I monitor and investigate security alerts across SIEM and EDR platforms in a 24/7 MSSP environment. I validate true and false positives, classify incidents, and escalate confirmed incidents with analysis and response guidance.
I investigate phishing and email threats by analyzing headers and payloads, and I prepare RCA reports with findings and remediation. I also analyze indicators of compromise and map findings to MITRE ATT&CK.
I develop and refine incident response playbooks and SOAR workflows, contributing to a 20% gain in SOC efficiency. I also supported detection-use-case tuning that reduced false positives by 30%, and hold Securonix and Seceon OEM SIEM certifications.

