Talent's Information
-
Location
Noida, India
-
Rate
$12.0 per Hour
-
Experience
9 Year
-
Languages Known
English,Hindi
Available for
Background Verification
40 Hr/Week
About Tushar
Served as an Elasticsearch Engineer, SIEM Engineer, Application Support Architect, Network Security Analyst for customers in various industries including Mobility, Tele-Communication, Gambling, Banking and other industries over last 9 years Strong analytical skills and a quick learner. Creative problem solving and troubleshooting skills complemented by meticulous attention to detail that results in success of organization.
Tech Stack Expertise
-
Microsoft .Net
Fleck,Metrics-Net
2 Years
Work Experience
Elastic Search
- January 2015 - February 2023 - 8 Year
- India
Projects
Senior Security App. Support Architect
- January 2020 - February 2023 - 38 Months
Technologies
Role & Responsibility
-
Handle the overall functioning of the security events and log handling solutions including all related components.
Coordinate internal service providers to ensure accurate functioning of the infrastructure where the applications are installed.
Participate within new log sources onboarding project to deliver accurate integration and content parsing.
Perform senior support technical lead duties in collaboration with other security support experts.
Writing playbooks in ansible to automate processes like upgrading 80+ node clusters.
Implementing Filebeat instead of rsyslog or Nifi to onboard logs from different sources.
Generate self - signed certs for TLS communication in ELK.
End to End architecture of ELK ECE on prem.
Deploy cloud and on prem cluster and monitor using metricbeat.
Create dashboards and canvas for KPIs for management.
Design and implementation of highly scalable solutions on-premise.
Applied expert knowledge on Grok scripting, Elastic indices, mappings, ILM policies, templates, shards and segments.
Showcased proficiency with Logstash pipeline and configuring file beats to feed to Elasticsearch.
Experience with Kibana data visualization dashboards for making reports.
BNP PARIBAS VIA ONEPOINTGROUPE
- April 2018 - January 2020 - 22 Months
Technologies
Role & Responsibility
-
Design roadmap, Architect/Engineer/Implement Security tools to be used by other Security teams.Automate Health check procedures to minimize unavailability of security tools.Design use cases for detection teams on various platforms including SIEM, IDS, ETL
RESPONSIBILITIES:
Implementing Elastic in Production Environment with Logstash and Kibana capabilities
Implement SOAR (Security Orchestration and Automation Response) in Production Environment.
Design use cases in Pentaho to be linked with Incident Manager.
Ingesting logs on ArcSight SIEM and elastic from various team tools and devices.
Secureops Inc
- November 2016 - April 2018 - 18 Months
Technologies
Role & Responsibility
-
Manage a team of 12 Level 1 analysts.
Content Author in QRadar and ArcSight. Contributed towards creating new use cases.
Active monitoring on SIEM to seek out indicators of compromise via threat hunting.
Automating daily tasks to provide more focused approach for analysts.
Validating escalated tickets from Level 1 Analysts.
Testing new tools to incorporate them in daily operations of SOC.
Maintaining up to date procedures and runbook for SOC.
Log survey to identify key fields to use in use cases.
Gap Analysis using MITRE ATT&CK framework to identify need of more use cases.
Automating daily tasks for smooth running of SOC.
Auditing Machine learning module in QRadar and creating use cases according to clients need.
Ford Motor Company
- July 2014 - August 2016 - 26 Months
Technologies
Role & Responsibility
-
Hired under graduate program by FORD, I was trained by Industry professionals in different security fields as a part of hiring program.
Detection Team
Prevention Team
Vulnerability Management
Forensics Team
Soft Skills
Industry Expertise
Education
in M.Tech
Noida University- June 2016 - June 2018