Details
Skills
• SIEM Engineering & Security Content Development (LogRhythm, QRadar)
• XDR & Advanced Threat Detection (CrowdStrike, Trend Macro)
• Data Loss Prevention (Forcepoint)
• Next-Generation Firewalls (Fortinet-VPN, Cisco ASA, Palo Alto)
• SOC Operations & Incident Response (24x7 Monitoring)
• Root Cause Analysis (RCA) & Post-Incident Reporting
• Threat Intelligence & APT Correlation (MITRE ATT&CK, IOC Feeds, NBA, PAM)
• Security Automation (Python, API Integration, SmartResponse)
• Vulnerability & Risk Assessment (Qualys VM, Nessus, Rapid7, NIST, ISO 27001, PCI-DSS)
• Ransomware Detection, Response & Recovery Coordination.
• Led 24/7 SOC operations, integrating SIEM (LogRhythm, QRadar), XDR, and DLP for real-time detection and response.
• Developed and fine-tuned MITRE-aligned security content and correlation rules to detect lateral movement, privilege abuse, and data exfiltration.
• Led ransomware incident detection, RCA, and recovery, coordinating with infrastructure teams to isolate systems, restore services, and strengthen endpoint defenses.
• Collaborated with Big Four firms (PwC, Deloitte, EY) on cybersecurity assessments including network vulnerability and application reviews.
• Integrated DLP and APT alerts into SIEM dashboards, improving threat visibility and response precision.
About
Cybersecurity and Threat Operations professional with over 15 years of experience in SOC, SIEM, DLP, NGFW, XDR, NBA, APT and incident detection and response across financial institutions. Proven success in developing MITRE ATT&CK–based detection content and performing Root Cause Analysis (RCA) for complex security incidents. Demonstrated leadership during BRAC Bank’s ransomware alert and recovery, driving post-incident improvements and enhancing detection maturity across the organization. Currently completing an MSc in Computational Science at a Canadian university, further strengthening my technical and analytical expertise to align with global cybersecurity standards. Actively seeking opportunities in Cybersecurity Management, SOC Operations, GRC, and Security Architecture roles.