Post Job Free
Sign in

SOC Analyst - Threat Detection & Incident Response

Location:
Seattle, WA
Posted:
October 05, 2026

Contact this candidate

Resume:

Teja Potugari

***********@*****.*** +1-407-***-**** Linkedin United States

SUMMARY

• Over 3 years of experience in cybersecurity and SOC operations, specializing in threat detection, incident response, and vulnerability management across enterprise and cloud environments.

• Monitored and analyzed security events using SIEM tools (Splunk, Qradar, ArcSight), reducing false positives by 25% and proactively identifying potential threats.

• Investigated and mitigated 50+ security incidents monthly, including malware, phishing, and unauthorized access attempts, ensuring zero major data breaches.

• Conducted real-time threat analysis and root cause investigations, implementing proactive remediation to prevent recurring vulnerabilities and improve system resilience.

• Developed and maintained SOC playbooks, SOPs, and security policies, streamlining incident response and improving overall operational efficiency.

• Delivered cybersecurity awareness training and collaborated with IT teams to implement preventive security measures, strengthening organizational security posture. EDUCATION

Florida Institute of Technology-Melbourne, USA GPA: 3.8/4.0 Dec 2025 Masters in computer information systems

Relevant Coursework: Networks and Protocols, Cybersecurity Management, Computer Networks, Database Systems, Data Structures, Project Management.

Anna University, Prathyusha Engineering College - Chennai, India GPA:3.67/4.0 May 2023 Bachelor of Engineering in Electronic and Communication Engineering WORK EXPERIENCE

SOC Analyst DTCC, Florida, USA March 2025- Present

• Monitored and analyzed security events across endpoints, networks, and cloud environments using SIEM tools

(Splunk, Qradar, ArcSight) to detect anomalies and potential threats.

• Triaged and investigated security alerts, escalating critical incidents with minimal business disruption.

• Conducted real-time threat analysis and root cause investigations to prevent recurring vulnerabilities.

• Collaborated with IT, application, and network teams to implement proactive remediation strategies.

• Developed and maintained SOC playbooks and SOPs for efficient incident response.

• Performed threat hunting using intelligence feeds and log analytics to detect emerging threats.

• Maintained and optimized security monitoring tools, dashboards, and automated alerts.

• Stayed up-to-date with latest cybersecurity threats, vulnerabilities, and industry best practices, applying knowledge to improve SOC operations.

• Participated in post-incident reviews, documenting lessons learned and updating procedures.

• Generated and presented security reports to management and compliance teams for audits.

• Utilized endpoint detection tools (CrowdStrike, Carbon Black) and network IDS/IPS systems to investigate malware, suspicious activity, and policy violations.

• Reduced false positive alerts by 25% through fine-tuning SIEM rules and correlating logs from multiple sources.

• Investigated and mitigated 50+ security incidents monthly, ensuring zero major data breaches and maintaining operational continuity.

Cyber Security Analyst CyberVie, Hyderabad, India Feb 2022 – Dec 2023

• Monitored and triaged over 500 daily security alerts using SIEM tools such as Splunk and AlienVault, proactively identifying threats and reducing potential risks by 30%.

• Conducted comprehensive vulnerability assessments across servers and network devices, identifying critical security gaps and ensuring timely remediation within SLA timelines.

• Investigated and responded to more than 30 security incidents each month, including phishing attacks and malware infections, minimizing system downtime, and protecting sensitive data.

• Maintained firewalls, IDS/IPS, and endpoints, improving threat detection by 25%.

• Assisted in penetration testing and red-team exercises, identifying and remediating vulnerabilities.

• Developed and enforced security policies and SOPs, ensuring ISO 27001 and GDPR compliance.

• Analyzed malware and phishing incidents, creating reports that improved future response efficiency.

• Collaborated with teams to implement AWS and Azure cloud security controls, protecting sensitive data.

• Delivered employee security awareness training, reducing phishing click rates through realistic simulations.

• Stayed current with emerging cyber threats, tools, and frameworks, contributing to quarterly risk assessment reports that guided proactive defense strategies.

KEY PROJECTS & LEADERSHIP

SOC Alert Triage & Incident Responses

• Performed SIEM-based alert triage by analyzing authentication, firewall, and endpoint logs to identify brute-force attempts, suspicious login activity, and malware indicators; executed initial incident response actions including alert validation, impact assessment, containment support, and detailed incident documentation in accordance with the NIST Incident Response framework.

Phishing Email Analysis

• Conducted in-depth phishing investigations by examining email headers, sender reputation, embedded URLs, and attachment metadata; identified indicators of compromise (IOCs), assessed user exposure, and recommended mitigation actions such as URL blocking, account resets, and security awareness measures to reduce social- engineering risk.

TryHackMe & Hacker One – Cybersecurity Practice & Bug Bounties

• Successfully completed over 50 hands-on cybersecurity labs on TryHackMe, earning a top 5% global ranking. Identified and responsibly disclosed three confirmed security vulnerabilities through the Hacker One bug bounty platform. Gained strong practical experience in web application security, network penetration testing, and digital forensics by analyzing real-world attack scenarios, exploiting vulnerabilities, and applying remediation techniques aligned with industry best practices.

ACHIEVMENTS

Cybersecurity Domain Head at PEC May 2023

President of Antenna and satellite club, PEC Oct 2021 CERTIFICATIONS

• (ISC)2 Certified in Cybersecurity

• SOC level 1 TryHackMe (Labs)

• Introduction to Cybersecurity (Cisco)

• CompTIA Security+ (In Progress)

TECHNICAL SKILLS

Cybersecurity Skills: SIEM (IBM Qradar, Splunk), Security Monitoring, Incident Response, Threat Detection & Analysis, Threat Hunting, Log Analysis, Network Security, Endpoint Security (EDR), IDS/IPS (Snort), DLP, Access Control Systems, Identity & Access Management (IAM), Firewall Management, Vulnerability Management (Tenable), Risk Assessment, Phishing Analysis, Malware Analysis, Threat Intelligence, IOC Analysis & Correlation, MITRE ATT&CK Framework, NIST Cybersecurity Framework, Security Operations Center (SOC), Regulatory Compliance, Security Frameworks Offensive Tools and Technology: Nmap, Metasploit, OWASP Top 10, Web Application Security Testing, Vulnerability Assessment, Exploitation Techniques, Reconnaissance & Enumeration Defensive Tools and Technology: Splunk, IBM Qradar, Wireshark, CrowdStrike Falcon, Zscaler, Mimecast, Palo Alto Cortex XSOAR, Tenable, Snort, Autopsy, FTK Analyzer, Volatility, EDR/XDR Tools, SOAR Platforms, Network Traffic Analysis, Packet Analysis, Email Security Tools, Endpoint Protection, Security Automation Tools Vulnerability Management: Nessus, OpenVAS, Qualys

Cloud Security: AWS Guard Duty, CSPM (Prisma, Wiz), AWS IAM, S3 Operating Systems: Windows, Linux (Ubuntu, Kali), macOS Programming/Scripting: Python, PowerShell, Bash, YaRA, JavaScript Soft Skills: Analytical Thinking, Problem-Solving, Critical Thinking, Attention to Detail, Incident Documentation, Communication Skills, Collaboration & Teamwork, Time Management, Adaptability, Self-Motivated, Continuous Learning



Contact this candidate