SIEM Engineering
IBM QRadar, Splunk, Perchybana, log source management, parsing rules, event mapping, correlation and SIEM health.
L2 SECURITY ENGINEER
Results-driven Security Engineer with 7+ years of experience in SOC operations, SIEM engineering, EDR/XDR monitoring, vulnerability management, incident response, threat hunting, and OT/ICS cybersecurity.
ABOUT ME
I am a results-driven Security Engineer with 7+ years of experience across Security Operations Center (SOC), SIEM engineering, EDR/XDR monitoring, vulnerability management, incident response, and OT/ICS cybersecurity.
I specialize in threat detection, log correlation, malware analysis, phishing investigation, and automating security workflows to strengthen enterprise security posture and improve response efficiency.
CORE EXPERTISE
IBM QRadar, Splunk, Perchybana, log source management, parsing rules, event mapping, correlation and SIEM health.
CrowdStrike, Microsoft Defender ATP, Cisco AMP, RedCloak, McAfee and Taegis monitoring.
Threat hunting, incident response, alert triage, phishing investigation, malware analysis and IOC enrichment.
Rapid7 InsightVM, Nessus, Nmap, Burp Suite, risk assessment and patch management.
Palo Alto, Fortigate, Zscaler, OpenDNS, firewall management and Wireshark.
Claroty CTD, Claroty SRA, industrial cybersecurity and OT security monitoring.
Azure Security Center, Windows and Linux administration, security monitoring and system hardening.
Bash, PowerShell, security automation, log ingestion automation and workflow optimization.
PROFESSIONAL EXPERIENCE
SELECTED SECURITY WORK
Optimized SIEM use cases, event correlation rules, log sources and alert workflows to improve detection and visibility.
Led security tooling migration across 1200+ devices while minimizing operational downtime.
Designed automated vulnerability scan reports integrated with ticketing workflows to improve remediation operations.
Performed phishing investigations, endpoint threat analysis, IOC enrichment, malware analysis and critical-event triage.
Worked with industrial cybersecurity technologies and monitored OT/ICS environments.
CERTIFICATIONS
EDUCATION
Sir Chhotu Ram Institute of Engineering and Technology, Meerut
CDAC ACTS, Pune
LET'S CONNECT
Open to conversations around cybersecurity engineering, SOC operations, SIEM, EDR/XDR, vulnerability management and enterprise security.
receive.satyajeet@gmail.com →