GAURAV KHATRI
Cyber Security Analyst | SOC Analyst – L1
Address:- Naya Bazaar, Sujangarh, India 331507 ✉ Email: gauravkhatri914584@[Link]
Phone:- 9145844190, LinkedIn: [Link]
........................................................................................................................................................................................................
Career Objective
Cybersecurity Analyst with hands-on experience in Security Operations Centre (SOC) and Incident Response. Skilled
in SIEM management, threat detection, incident response, vulnerability management, firewall monitoring, and security
assessments. Demonstrates practical expertise in network security, log analysis, and security monitoring, with a strong
focus on improving organizational security posture. Enthusiastic about staying updated on emerging cyber threats and
implementing proactive solutions to enhance overall cybersecurity resilience.
…..…………………………………………………………………………………………………………………………..
Skills Highlights
• Security Tools & SIEM: Proficient in IBM QRadar (offense analysis, rule tuning, log correlation) and
Microsoft Sentinel (alert monitoring & analysis). Skilled in firewalls (Checkpoint, Cisco ASA), IDS/IPS,
antivirus solutions, and WAF (Imperva).
• Networking: Strong foundation in TCP/IP, DNS, VPN, and firewall configurations; experienced in network
traffic monitoring and analysis.
• Email Security: Experience with Cisco IronPort for email threat detection and phishing analysis.
• Operating Systems: Skilled in Windows, macOS, and Linux environments for log monitoring and security
configuration.
• Incident Response & Analysis: Expertise in investigating security incidents, triaging alerts, analyzing phishing
emails, and performing malware analysis.
•
Soft Skills: Strong analytical thinking, problem-solving, communication, and teamwork abilities; capable of
working in 24/7 SOC operations.
……………………………………………………..………………………………………………………….......................
Experience
Security Operation Centre Analyst – L1
AU Small Finance Bank, Jaipur Rajesthan | April 2025 – Present
• Monitor security alerts and network traffic using SIEM tools, primarily IBM QRadar, to detect suspicious
activities and potential security incidents.
• Perform initial triage of offenses, analyze logs, validate alerts from various security tools, and determine if they
represent True Positive or False Positive events.
• Conduct preliminary investigation by reviewing correlated logs, offense details, asset information, and threat
intelligence to assess incident severity.
• Escalate confirmed True Positive security incidents to L2 Analysts along with complete investigation notes,
evidence, and impact summary.
• Create and manage incident cases, document findings, update status, and ensure proper handover during shift
transitions.
• Participate in 24/7 SOC operations, providing continuous monitoring and timely incident response during shifts.
• Support the tuning and enhancement of SIEM detection rules by identifying false positives and contributing
feedback to improve accuracy.
• Monitor and enforce firewall and access control policies, ensuring secure network communication and
adherence to security standards.
• Assist in incident response activities such as containment steps, user communication, and coordination with IT
teams for remediation.
• Generate daily, weekly, and monthly security reports, summarizing alert trends, incident metrics, and key
observations.
• Stay updated with the latest cyber threats, attack vectors, MITRE ATT&CK techniques, and evolving SOC best
practices.
………..……..................................................................................................................................................................................
Internships
Security Analyst Intern
Alyssum Global Services | Noida, India | Sep 2024 – Dec 2024
• Analysed security logs and network traffic using SIEM tools to detect and mitigate threats.
• Researched cybersecurity trends and vulnerabilities, providing detailed security reports.
• Documented security incidents, remediation steps, and lessons learned for continuous improvement.
Cybersecurity Intern
SECURIS360 INFOTECH PVT. LTD. | Ahmedabad, India | June 2024 – Aug 2024
• Performed VAPT for networks, APIs, and web applications using Burp Suite and Metasploit.
• Conducted penetration testing leveraging Nmap and SQL map
...………………………………………………………………………………………………………………………………
Projects:
Text Stenganography New Approach To Information Hiding
• Developed an innovative method to conceal messages using letter spacing and special characters.
RFID- Business Plan of Sensor Trolly
• Engineered an automated shopping system leveraging RFID technology, enhancing customer experience.
...………………………………………………………………………………………………………………………………
Education
Master of Computer Applications (MCA)-Information Security & Management Services, Jain University,
Bangalore (2023)
Bachelor of Computer Applications (BCA)-Computer Applications, BTU, Bikaner (2021)
…...……………………………………………………………………………………………………………………………
Declaration
• I hereby declare that the information provided is accurate and true to the best of my knowledge.
Date: [ ] Gaurav Khatri