Category
Tool Name
Relevant Experience
Last Used
SIEM Tools
Opentext Arcsight,Seceon Aisiem, Gurucul Siem, Innspark,Nitwitness RSA, ELK
9
Working
SOAR Tools
Opentext Arcsight & Seceon Aisiem
4
Working
Threat Hunting Tools
Opentext Arcsight,Seceon Aisiem, Gurucul Siem, Innspark,Nitwitness RSA, ELK
9
Working
Detection Frameworks
Opentext Arcsight,Seceon Aisiem, Gurucul Siem, Innspark,Nitwitness RSA, ELK
9
Working
ANIL KUMAR
************@****.** Delhi, India
INFORMATION SECURITY MANAGER SOC L3
PROFESSIONAL SUMMARY
Information Security professional with 15+ years of IT experience, including 9+ years in SOC operations (L1–L3). Strong expertise in SOC operations management, incident response, SIEM engineering, threat hunting, and security governance. Hands-on experience with ArcSight, RSA NetWitness, Gurucul SIEM, Seceon AI SIEM, ELK, PAM, EDR, and firewall technologies. Proven track record in SLA management, audits, client engagement, and building highperforming SOC teams, aligned with the MITRE ATT&CK and Cyber Kill Chain frameworks.
CERTIFICATIONS
•Cisco Certified Network Professional (CCNP – Switch 300-115)
•Cisco Certified Network Associate (CCNA)
•Microsoft Certified Systems Administrator (MCSA)
•Certified Ethical Hacker (CEH v12)
•CSFPC
•Fortinet NSE 1 & 2
TECHNICAL SKILLS
SIEM
ArcSight, RSA NetWitness, Gurucul UEBA, Seceon AI SIEM, ELK Stack
PAM
NetIQ (Micro Focus), ARCON, Sectona
EDR
Trend Micro, CrowdStrike, Elastic EDR
Threat Intelligence
VirusTotal, Cisco Talos, IBM X-Force
Security Infrastructure
Fortinet Firewalls, IDS/IPS, WAF, Proxies, Mail Gateways
Core Competencies
Incident Response, Threat Hunting, SLA Management, SOC Governance, CTI, Compliance Reporting, Malware Analysis
PROFESSIONAL EXPERIENCE
Tata Advanced Systems Limited - Manager – SOC L3
Noida Aug 2025 – Present
•Lead SOC operations in an MSSP environment, managing L1–L3 teams and client deliverables.
•Ensure SLA compliance, conduct audits, and implement process improvements.
•Design and tune correlation rules, dashboards, and detection metrics across Gurucul, ArcSight, and Seceon AI SIEM.
•Integrate threat intelligence feeds to improve detection accuracy and reduce false positives.
•Oversee administration of firewalls, proxies, and mail gateways.
•Onboard customers under Build & Run and Build & Handover models.
•Present weekly and monthly security reports to clients and senior leadership.
•Lead complex incident investigations, malware analysis, and proactive threat hunting.
•Act as the primary escalation point for advanced security incidents.
CDAC – Soc Consultant
Pune Jun 2023 – Aug 2025
•Operated and managed Secom AI SIEM and Web SIEM platforms.
•Monitored, triaged, and investigated SIEM alerts and security incidents.
•Prepared audit and compliance reports.
•Briefed clients on security posture and risk assessments.
•Conducted threat analysis and incident response activities.
•Worked extensively with Fortinet Firewalls, Forti Analyzer, McAfee DLP, EPO, and Elastic EDR.
•Utilized threat intelligence tools for malware and IOC analysis.
•Hire, train, and mentor SOC analysts (L1–L3)
•Define shift models and workload balancing
•Ensure analysts understand
•ArcSight queries and rules
•UEBA behaviour interpretation
•AI-driven alert validation
•Run table top exercises and purple-team simulations
Senior Engineer – Systems
Sify Technologies Ltd., New Delhi Oct 2022 – Jun 2023
Delivered L3 SOC support through advanced log analysis and incident response using Innspark SIEM.
Investigated high-severity and complex incidents including targeted phishing, credential-based attacks, network reconnaissance, and malware infections.
Performed root cause analysis, threat validation, and containment actions while mentoring L1/L2 analysts during escalations.
Tuned detection rules and optimized alert workflows by identifying false positives and improving correlation logic.
Prepared executive-level daily and monthly security incident reports and ensured effective cross-team incident handovers..
Senior SOC Analyst
Inspira Enterprise India Pvt. Ltd. May 2021 – Oct 2022 Client: HUDCO
L3 SOC Analyst responsible for advanced monitoring, investigation, and incident response using ArcSight SIEM, WAF, and PAM.
Administration and management of Trend Micro DDI, DDAN, IMSVA security platforms.
Configuration and maintenance of Barracuda WAF and ARCON PAM.
Security reporting, RCA documentation, and critical client escalation management.
SOC Analyst
Motherson Sumi Infotech Design Ltd. Jul 2018 – Apr 2021
•Monitored ELK Stack and Graylog SIEM platforms.
•Performed device health checks, onboarding, alert configuration, and reporting.
•Supported POCs for HP ArcSight and IBM QRadar.
•Worked on CERT operations, threat intelligence, compliance, and asset management.
Senior Engineer
HCL Comnet Ltd. Apr 2014 – Jul 2018
Client: Oriental Bank of Commerce
•Implemented and managed security infrastructure including RSA NetWitness SIEM, Cisco Firepower IDS/IPS, ARCON IAM, Symantec DLP, and Cisco AMP.
•Supported SOC setup and incident management using RSA IT-GRC.
•Conducted day-to-day security monitoring and threat investigations.
EUS Engineer
Microland Ltd. Oct 2009 – Apr 2014
•Provided enterprise desktop and application support for Honeywell and Bank of America subsidiaries.
•Managed AD, VPN, endpoint security, Outlook, SCCM, and hardware troubleshooting.
Field Engineer iGATE (IMS Ltd.) May 2008 – Sep 2009
•End-user support, system deployment, AD, DNS, DHCP, and network troubleshooting.
EDUCATION
Qualification Institution University Year Division
MCA
Soft Dot Hi-Tech Institute, Delhi Sikkim Manipal University 2012 II
BCA
Guru Nanak Institute of Management GGSIP University 2004 I
10+2
S.K.R Sr. Sec. Public School AISSCE 2001 II
Qualification Institution
University
Year Division
High School S.K.R Sr. Sec. Public School
CBSE
1998 III
STRENGTHS
•Strong leadership and team collaboration skills
•High ownership and accountability
•Process-driven and detail-oriented
•Flexible and adaptable to demanding environments
AWARDS & TRAINING
•Best Performer Award – HCL Comnet (FM Meet 2015, North)
•Gem Sport Award – Microland
•Spot Award – Microland
•ISO 20000 Awareness & Implementation – iGATE
•Customer ARCON PIM Training
PERSONAL DETAILS
•Father’s Name: Sh. Rajendra Kumar
•Languages: English, Hindi
•Marital Status: Married
•Notice Period: 30 Days