Saurabh Suman
Senior Security Engineer @ExpediaGroupCybersecurity Leader | Threat Hunting | Incident Response | SOC Architecture | SIEM / EDR / SOAR | AI & Automation | 14+ Years Experience
- Role
- Senior Security Operation Analyst at Expedia Group
- Location
- Gurugram, HR, IN
- LinkedIn followers
- 500 followers
About Saurabh Suman
Cybersecurity Leader with 14+ years of experience in Threat Hunting, Incident Response, Digital Forensics, and Security Operations across global enterprises including finance, telecom, and technology sectors.I specialize in detecting advanced threats, leading complex investigations, and building modern SOC and detection capabilities. My experience includes designing SOC and threat hunting programs, handling Tier-3 security incidents, and improving enterprise detection using SIEM, EDR, and cloud security platforms.Key Expertise: Threat Hunting & Detection Engineering | Incident Response & Digital Forensics | SIEM (Splunk, Microsoft Sentinel, McAfee Nitro, IBM QRadar)| EDR (CrowdStrike Falcon, Microsoft Defender, Sentinel One, Carbon Black, Symantec AV)| NDR (DarkTrace)| MITRE ATT & CK Detection Strategies | Security Automation (Python)| AI-Driven Security & Investigation AutomationPassionate about building intelligent security operations and proactively defending organizations from modern cyber threats.
Experience
Senior Security Operation Analyst
Apr 2022 — Present · Gurugram, IN
Built and operationalized the enterprise Threat Hunting program, defining processes, workflows, and detection strategies across enterprise environments.Led Tier-3 incident response investigations involving ransomware, advanced persistent threats (APT), and sophisticated attacker techniques.Developed advanced detection use cases across SIEM and EDR platforms including Splunk, Microsoft Sentinel, QRadar, CrowdStrike Falcon, and Microsoft Defender.Conducted proactive threat hunting aligned with MITRE ATT & CK, identifying attacker behaviors and previously undetected threats.Designed and implemented deception architectures and honeypot strategies to analyze attacker techniques and generate actionable threat intelligence.Performed digital forensics and malware analysis to extract indicators of compromise (IOCs) and support enterprise detection capabilities.Developed Python-based automation and AI-driven investigation agents to accelerate incident triage and SOC workflows.Led security technology proof of concepts (POCs) and provided strategic recommendations for enterprise security platforms.Mentored SOC analysts and threat hunters to improve investigation capabilities and operational maturity.
Education
SSGPURC
Bachelor of Engineering (B.E.), Mechanical Engineering
2007 — 2011
Skills
- Unix
- Itil
- Virus
- Symantec Endpoint Protection
- Shell Scripting
- Solution Architecture
- Requirements Analysis
- Scom
- Nnmi
- Vulnerability Assessment
- Sql
- Linux
- Siem
- Vmware
- Security
Find verified contacts for anyone on LinkedIn
Unifers gives sales teams verified emails and direct dials, enriched profiles, and outreach that lands in the inbox.
Free plan included · No credit card required
This profile is compiled from publicly available professional sources. Unifers is not affiliated with or endorsed by LinkedIn. Request removal of this profile.