Santhosh Kumar Bhogadi

Security Operations Analyst at 10x Banking

Role
Security Operations Analyst - L3 at 10x Banking
Location
Hyderabad, TG, IN
LinkedIn followers
500 followers
Public Administration & SafetyView LinkedIn profile

About Santhosh Kumar Bhogadi

Cyber security professional with over 9 years of experience in SOC operations such as threat detection, incident investigation, incident response, threat hunting, endpoint protection, security tool administration along with comprehensive reporting and documentation. Strong technical expertise in analysing security events, performing log and root cause analysis. Experienced in performing end-host analysis to investigate malware infections, lateral movement, and indicators of compromise (IOCs), and taking remediation actions to contain and eliminate threats. Adept at triaging incidents using the Cyber Kill Chain (CKC) and developing incident response runbooks aligned with the NIST framework. Proficient in SecDevOps practices, including the design of security use cases and the development of SOAR playbooks to automate incident triage workflows. Skilled in detecting and analysing advanced threats such as APTs and their associated TTPs, identifying network-based malware, intrusions, and other network attacks, and aligning security controls with the MITRE ATT & CK framework. Actively engaged in researching emerging cyber threats and tactics by leveraging open-source threat intel platforms, providing actionable threat intelligence to internal teams. Proficient in educating cross- functional security teams through tabletop exercises and conducting phishing simulations to raise organizational awareness. Skilled in triaging phishing attacks including spear phishing, ransomware, credential harvesting, and phishing campaigns. Experienced in conducting Proof of Concepts (PoCs) for security tools and integrating log sources into SIEM platforms to enhance visibility and threat detection. Possess a strong background in vulnerability management, with additional expertise in vulnerability assessment and penetration testing (VAPT), python automation. Skilled in developing custom parsers and transformers for SIEM solutions, and in supporting security engineering teams with tool setup, configuration, and integration.

Experience

  1. Security Operations Analyst - L3

    10x Banking

    Jun 2023 — Present · London, GB

    Reviewing security incidents escalated by MDR analysts to determine their validity, and performing end-to-end incident handling for confirmed cases. • Defending against emerging threats and risks that could impact business operations, through proactive threat hunting and strategic mitigation efforts. • Identifying the detection gaps and improve detection efficiency by creating new detection rules/signatures and fine tuning. • Leading proof-of-concept (PoC) initiatives for onboarding new security tools such as Google Chronicle SIEM & SOAR, and Mimecast. • Migrating existing security use cases from Splunk to Google Chronicle, and developing corresponding SOAR playbooks to automate incident response workflows for each use case. • Developing health alerts to detect log ingestion failures and creating corresponding use cases. • Creating custom parsers to resolve log parsing issues, ensuring accurate and consistent data flow into the SIEM platform. • Preparing comprehensive monthly reports for the Information Security Management Committee (ISMC) and the Monthly Client Security Service Review (MCSSR) to provide insights into security posture, incident trends, and key metrics. • Engaging with clients to review their security posture and collaborating with them to develop new detection use cases tailored to their environment and threat landscape. • Supporting security engineering teams to develop custom transformers for onboarding log formats not natively supported by the SIEM platform. • Collaborating with TAMs of security tools and serving as a SME in the administration of security tools such as CrowdStrike, Zscaler, and Rapid7 Insight Connect (ICS), ensuring optimal configuration and performance. • Educating cross-functional security teams through tabletop exercises and conducting phishing simulations to enhance organizational security awareness and preparedness.

Education

  • RGUKT, NUZVID

    B. Tech, Mechanical Engineering

    2012 — 2016

  • ZPHS Govada

    SSC, SSC

    2005 — 2010

  • RGUKT, NUZVID

    PUC, M. Bi. P. C

    2010 — 2012

Find verified contacts for anyone on LinkedIn

Unifers gives sales teams verified emails and direct dials, enriched profiles, and outreach that lands in the inbox.

Free plan included · No credit card required

This profile is compiled from publicly available professional sources. Unifers is not affiliated with or endorsed by LinkedIn. Request removal of this profile.

Santhosh Kumar Bhogadi — Security Operations Analyst - L3 at 10x Banking in Hyderabad, TG, IN | Unifers