SOC

ANALYST

About  I'm a Computer Science undergrad based in Palakkad, India, focused on SOC operations, detection engineering and malware analysis. I work with Splunk, Wazuh, ELK and Shuffle SOAR, mapping adversary TTPs to MITRE ATT&CK.

Scroll down

FEATURED
PROJECTS (4)

Detection & Malware
Analysis

CURRENT STATUS

Building detections in Splunk, analyzing malware traffic, and expanding a Home SOC Lab with honeypots, network segmentation, and threat monitoring. Most recent work includes Bandook RAT and TrickBot investigations, Windows event detections, and detection engineering projects documented on GitHub.

EXPERIENCE X
CERTIFICATIONS

SOC Analyst Intern — Gardiyan System Security Tech, Turkey (Remote) · 2025–2026
5 Splunk correlation rules — brute force, PowerShell (4104), priv-esc (4728), service (7036)
WannaCry lifecycle mapped to MITRE ATT&CK & Cyber Kill Chain
Shuffle SOAR — Tier-1 triage playbooks for phishing, brute force, lateral movement
SOC Analyst Training — Gardiyan Sec. (4 months, Jan 2026)
TryHackMe — SOC Level 1 path (in progress)
B.Tech CSE — Poornima University, Jaipur · Expected 2028

Stack & Interests

Splunk, Wazuh, ELK, Shuffle SOAR, Python (concurrent.futures, requests), Bash, Java, Kali Linux. MITRE ATT&CK, Cyber Kill Chain, OWASP Top 10, CIS Benchmarks. Malware traffic analysis, DFIR, threat hunting.
See my Github

WHAT YOU'LL FIND HERE

Real investigations, detection rules, malware analysis write-ups, and lab documentation. No tutorial copy-paste projects just the work, lessons learned, and the occasional troubleshooting nightmare that somehow becomes a learning experience. If you're hiring or just want to chat about anything related to SOC, DFIR or detection engineering, — happy to share notes.

Got a role, project, or just want to trade detection ideas? Pull the thread.

LET'S TALK — LET'S COLLABORATE — SAY HELLO — TRADE DETECTIONS — LET'S TALK — LET'S COLLABORATE — SAY HELLO — TRADE DETECTIONS —