OPEN TO SOC ANALYST L1 ROLES

Nimin Raj SR

Security Operations Center Associate

Hands-on SOC practitioner with Splunk Enterprise SIEM experience, Tier 1 alert triage, log analysis, and IOC identification. Skilled in MITRE ATT&CK TTP mapping and SOC playbook-aligned incident documentation. Available for 24/7 shift operations.

Currently: PG Diploma, Cyber Security — Digital University Kerala
Pursuing: Certified SOC Analyst (CSA) — EC-Council
Kollam, Kerala  ·  Remote Ready  ·  24/7 Shifts OK
3+
SIEM platforms
(Splunk, Wazuh, Sentinel)
T1
Alert triage
analyst level
3
Blue team
lab platforms
24/7
Shift operations
availability

// 01 — Experience

Work history

AUG 2025 – OCT 2025
Secure Sleuth
Mumbai · Remote
SOC Intern — Tier 1 Analyst
  • Monitored and triaged security alerts in Splunk Enterprise SIEM — classified severity, distinguished false positives from confirmed incidents, and escalated with documented evidence to senior analysts.
  • Analysed Windows Event Logs and Linux system logs to detect brute-force attempts, suspicious authentication patterns, and lateral movement indicators.
  • Identified Indicators of Compromise (IOCs) including malicious IPs and URLs; applied blocks and updated SIEM detection rules to prevent recurrence.
  • Investigated phishing attempts and email threats; analysed headers and categorised findings with documented verdicts aligned with SOC escalation workflows.
Splunk EnterpriseLog AnalysisIOC Identification Catalyst TicketingIncident Escalation Phishing AnalysisBrute-force Detection SOC PlaybooksMITRE ATT&CK

// 02 — Skills

Technical toolkit

SIEM & Monitoring
Splunk Enterprise
Splunk Univ. Forwarder
Wazuh
Microsoft Sentinel
Log Analysis
Windows Event Logs
Linux System Logs
Network Device Logs
Application Logs
Threat Detection
Brute-force / Auth Attacks
Phishing Analysis
Lateral Movement
DoS / Malware Execution
Frameworks & SOC Ops
MITRE ATT&CK (TTP mapping)
Cyber Kill Chain
Tier 1 Alert Triage
False Positive Reduction
Networking
TCP/IP
DNS / HTTP / HTTPS
Routing & Switching
Scripting & Endpoint
Python (log parsing)
PowerShell
Microsoft Defender
Endpoint Monitoring

// 03 — Projects

Hands-on builds

01
Centralized SIEM & SOC Lab

Deployed a centralised log forwarding pipeline using Splunk Universal Forwarder to ingest Windows and Linux endpoint telemetry into Splunk Enterprise SIEM. Tuned correlation rules and detection logic to reduce false positives and improve alert accuracy.

Splunk EnterpriseUniversal ForwarderWindows LogsLinux Logs
02
Attack Simulation & MITRE TTP Mapping

Executed controlled attack simulations — brute-force, phishing, and malware execution scenarios — to validate alert generation and detection workflows. Mapped attacker behaviour to MITRE ATT&CK tactics, techniques, and procedures.

Brute-forcePhishing SimMalware ExecMITRE ATT&CK
03
IOC Investigation & Escalation Workflow

Investigated SIEM-generated alerts, analysed related activity logs, identified IOCs, and followed defined escalation and documentation workflows aligned with SOC operational standards and SOPs.

IOC AnalysisSOC SOPsIncident DocsEscalation Flow
04
Blue Team Lab Practice

Active across TryHackMe, defenders.io, and Blue Team Labs Online (BTLO) — practising alert triage, digital forensics, log investigation, and defensive security challenges in realistic SOC-like scenarios.

TryHackMeBTLOdefenders.ioBlue Team

// 04 — Certifications

Credentials & training

IBM
Cyber Security — Advanced Certificate
IBM
Completed
SPL
Splunk Security Operations & Defense Analyst
Splunk · eLearning
Completed
CSA
Certified SOC Analyst (CSA)
EC-Council
In Progress

// 05 — Education

Academic background

PG Diploma in Cyber Security
Digital University Kerala
Oct 2025 – Present

Postgraduate specialisation in cyber security — network defence, incident response, and advanced security operations.

Bachelor of Computer Applications (BCA)
Yenepoya University
Sep 2022 – May 2025

Specialisation in Cyber Security — ethical hacking, network security, operating systems, and information security principles.


// 06 — Contact

Get in touch

Open to SOC Analyst (L1) opportunities — on-site, hybrid, or remote. Available for 24/7 shift operations including nights, weekends, and on-call rotations. Languages: English, Malayalam.

@
Email
niminraj37@gmail.com
Phone
+91 87144 16902
in
LinkedIn
linkedin.com/in/niminrajsr