SOC Analyst Aspirant · Blue Team · Threat Detection & Incident Response
I'm a postgraduate student (MCA) at St. Philomena College (Autonomous), Puttur, with a focused interest in Blue Team security operations. My work centers on log analysis, SIEM workflows, phishing investigation, and endpoint security — the practical, day-to-day craft of a SOC analyst.
I build projects that simulate real-world SOC scenarios: from detecting login anomalies to documenting structured incident reports. I'm actively sharpening my skills through platforms like TryHackMe and picoCTF.
Cybersecurity
- SIEM: Splunk, Wazuh
- Tools: Wireshark, Nmap, VirusTotal, Shodan
- Domains: Phishing Analysis · Log Correlation · Incident Response · Anomaly Detection · Endpoint Security
Programming
- Python · Java
Networking
- TCP/IP · DNS · HTTP/HTTPS
Databases
- MongoDB · Redis
Email forensics · IOC identification · SOC-style reporting
Analysed a multi-stage phishing and ad-fraud campaign targeting job seekers. Performed email header and URL analysis to identify Indicators of Compromise (IOCs), and produced a structured SOC incident report covering findings, impact assessment, and mitigation steps.
Behavioural analysis · Threat detection · Python
Built a system to flag unusual login activity by analysing patterns across time, location, and frequency. Designed to reflect a real-world SOC use case: detecting account compromise through behavioural baselines rather than signature-based rules.
Endpoint investigation · Microsoft Defender · Incident documentation
Investigated a suspicious executable flagged by Microsoft Defender. Analysed alert details, assessed potential system impact, and documented containment and remediation steps in a structured incident format aligned with SOC workflows.
Secure authentication · Python
Developed a tool that evaluates password security across multiple criteria — length, complexity, and common patterns — to help enforce stronger credential practices.
| Certificate | Issuer |
|---|---|
| Cybersecurity Fundamentals | IBM |
| Blockchain and Applications | NPTEL |
| Computer Networks and Internet Protocol | NPTEL |
| Introduction to Cybersecurity | Cisco |
- TryHackMe → tryhackme.com/p/pooja974
- Deepening SIEM skills (Splunk & Wazuh use cases)
- Expanding hands-on CTF and lab experience
- Building towards a SOC Tier 1 analyst role
Open to entry-level SOC roles, internships, and cybersecurity collaborations.