AI Security Engineer | Information Security Analyst | Cloud Security | Threat Detection & Response
π Contact:
- Email: veerababu@myworkmails.com
- Phone: (203) 833-0889
- Location: USA
- LinkedIn | GitHub
I am a detail-oriented and proactive Information Security Analyst with over 4 years of experience monitoring, detecting, and responding to cybersecurity threats across cloud and on-premises environments. My expertise lies in analyzing security events with SIEM tools, developing detection rules, reducing false positives, and collaborating with cross-functional teams to enhance security posture and streamline incident response.
- SIEM & Log Management: Splunk (SPL, Universal Forwarder), Azure Sentinel (KQL), AWS CloudWatch Logs Insights, AWS Security Hub, AWS Config
- Cloud Platforms & Tools: AWS (CloudTrail, GuardDuty, VPC Flow Logs, EventBridge, Lambda, Athena, Security Hub), Azure Monitor, Defender for Cloud
- Detection & Analysis: Signature-based & Anomaly-based Detection, MITRE ATT&CK Framework, Threat Intelligence Integration (IBM X-Force, MISP, AbuseIPDB)
- Security Tools: Snort IDS, Syslog, Windows Event Forwarding, ServiceNow (Ticketing), SOAR Platforms
- Dashboarding & Reporting: Power BI, Tableau, Splunk Dashboards
- Collaboration & Methodologies: Agile, Cross-team Coordination (IAM, DevOps, Networking), Incident Triage & Escalation
- Other: Microsoft Excel, Cloud Log Pipeline Configuration, Incident Response Workflow
- Promoted to lead AI-driven security operations focusing on autonomous detection systems.
- Designed and deployed 6 AI SOC Agents using Python, Lang Chain, and AWS Lambda by Integrating Vector DB Pinecone. Built LLM sandbox using Lang Chain to test agent workflows and prompt injection vectors.
- Developed internal triage dashboard using Django integrated with Splunk and ServiceNow. Rolled out MASTERO agentic AI framework for detection and decision automation. Implemented OSWAP for LLMs to protect 10+ models from adversarial misuse.
- Created AI threat maps aligned with MITRE ATLAS for detection strategies and Integrated Cortex XSOAR to automate response playbooks and reduce response time by 35%
- Led deployment of AWS logging architecture for real-time visibility across production and dev environments.
- Monitored and triaged security events with AWS CloudTrail, GuardDuty, VPC Flow Logs, applying detection methods for identifying threats.
- Built and maintained SIEM alerting logic, escalating confirmed threats to Tier 2 SOC analysts.
- Collaborated with IAM, DevOps, and cloud teams to ensure 100% log coverage and continuous monitoring.
- Reduced false positives by 50% and improved SOC triage speed through alert tuning and threat validation.
- Delivered weekly Power BI dashboards on detection trends and incident outcomes.
- Developed Splunk SIEM deployment for real-time log ingestion from firewalls, Snort IDS, and endpoints.
- Built correlation rules and detection logic using SPL, improving threat detection accuracy.
- Configured data pipelines and integrated logs from multiple sources under Agile practices.
- Reduced false positives by 50% using threat intelligence from IBM X-Force and MISP.
- Created executive dashboards visualizing SOC KPIs in Tableau and Splunk.
- Monitored security alerts via Splunk, triaging low/medium severity events and escalating critical incidents.
- Performed initial alert analysis and maintained documentation in ServiceNow.
- Ensured log availability and generated weekly status reports for team leads.
-
Master of Science in Cybersecurity and Networks
University of New Haven, Connecticut, USA (08/2023 β 05/2025) -
Bachelor of Technology in Electrical and Electronics Engineering
Jawaharlal Nehru Technological University, Kakinada, India (06/2018 β 06/2021)
Feel free to reach out if you'd like to discuss cybersecurity, cloud security, SIEM, or just connect professionally!