Vivek Singh

Assistant Manager- SOC ||SIEM (RSA, ArcSight & QRadar) || XDR (Cortx & Crowdstrike) || Email Security || AWS || WAF, DDoS|| NBAD|| GRC || Incident Response || Malware Analysis || Netskope ||Threat Hunter ||

Role
Assistant Manager - Global Security (Specialist i, Endpoint Security and Architecture) at Concentrix
Location
Gurugram, HR, IN
LinkedIn followers
500 followers

About Vivek Singh

A technocrat with 6 years of total experience as a Security Professional in Threat Detection and Response, Threat Hunting, Cyber Risk Analysis, GRC. Being a Security Professional, working in the information security and privacy field for protecting client networks from the external and internal threats.* Presently associated with Concentrix as Assistant Manager.* Comprehensive understanding of SIEM tools & analyzing tools like RSA, ARCsight and IBM QRadar.* Experience on NBAD/SNA (Cisco Stealthwatch) and Zscaler Deception (Decoys).* Experience on WAF, DDOS & APSolute vision (RadwareAlteon).* Comprehensive understanding of end point and perform in depth analysis on Cortex XDR & Crowdstrike EDR, Symantec AV and McAfee DLP.* Experience in email analysis with tool Cisco Agari & Cisco Iron Port and Anomali for Sandboxing and malware analysis.* Email Analysis for reported emails, red flag emails by the emails Security Tools recommend proper blocking of IP\'s, URL\'s and Domains, Header based on analysis.* Experience in Next-Gen SWG, public cloud security, CASB with tool Netskope.* Visibility into cloud services and usages, allowing organizations to manage web/URL\'s filtering. Use Netskope\'s data protection solutions and DLP techniques to identify and protect sensitive data.* Experience in Vulnerability assessment on Tenable Nessus* Good understanding of the phase of IOCs, IOA, attack and tactics, technique and procedure (TTPs) used by Attacker.* Adequate understanding of Protocols, Cyber-kill chain, CIA Triad, OSI layer, MITRE ATT & CK®, OWASP Top 10, Threat hunting & Malware Analysis.* Real time log analysis from different network devices such as firewalls, IDS, IPS, Operating systems like windows, Proxy servers, system application, and networking devices & Investigation of security alert sin order to determine suspicious and false positive.* Log source Integration and implementation of windows & Linux platforms for both windows, applications, Sys-Logs, and DB.* Adequate understanding of GRC(Governance, Risk and Compliance) for PCI & HIPPA FIM alerts.

Experience

  1. Assistant Manager - Global Security (Specialist i, Endpoint Security and Architecture)

    Concentrix

    Sep 2023 — Present · Gurugram, IN

    Utilize SIEM, EDR/XDR (Cortex & CrowdStrike) capabilities to correlate endpoint, network, and application-level events for comprehensive threat detection.•Research & analyze threat intelligence data to identify current and emerging threats, perform pivoting analysis to determine impact and recommend mitigations.•Conduct hypothesis-driven and data-driven threat hunts using advanced XDR telemetry and MITRE ATT & CK techniques.•Perform deep-dive analysis on endpoint telemetry and behavioral patterns to detect advanced persistent threats (APTs), zero-day attacks, lateral movement and privilege Escalation.•Conducted ancestry analysis to trace the origin and execution ow of threats, coordinated with end teams to gather relevant information and release legitimate les from quarantine, and performed root cause analysis with in-depth investigation of true positive alerts using EDR tools.•Execute threat containment actions such as isolating endpoints, terminating malicious processes, or quarantining suspicious les.•Triage escalated incidents from L1 & L2 teams, ensuring thorough investigation and detailed root cause analysis.•Perform threat review on reported alerts and identifying the estimate (false positive or true positive).•Endpoint troubleshooting when the endpoint stops communicating with XDR console and Upgradation of agent on endpoint for both workstation and server before EOL.•Making steering congurations in Netskope and deciding what kind of data is going to steer to Netskope for real time deep analysis and what kind of trac is getting bypassed. •Conguration of Netskope\'s web ltering solution to enforce consistent security policies and prevent advanced threats across web tracand Manage CASB and enable visibility and control over cloud appss.•Netskope on-boarding of multiple accounts/projects, ensuring a secure browsing experience for all users and Consistent DLP monitoring to restrict data exltration.

Education

  • Lovely Professional University

    Bachelor of Technology (B.Tech.)

    2015 — 2019

Find verified contacts for anyone on LinkedIn

Unifers gives sales teams verified emails and direct dials, enriched profiles, and outreach that lands in the inbox.

Free plan included · No credit card required

This profile is compiled from publicly available professional sources. Unifers is not affiliated with or endorsed by LinkedIn. Request removal of this profile.

Vivek Singh — Assistant Manager - Global Security (Specialist i, Endpoint Security and Architecture) at Concentrix in Gurugram, HR, IN | Unifers