SOC L1 - Arwen Tech - Islamabad, Pakistan
(2025-08)
- Monitoring and analyzing security events using the SIEM tool (QRadar).
- Conducted initial triage and investigation of offenses, determining true/false positives based on severity and impact.
- Escalated confirmed incidents to L2/L3 teams.
- Utilized threat intelligence platforms (e.g., VirusTotal) to enrich and validate alerts.
- Performed basic log analysis, packet inspection, and endpoint telemetry review to support incident investigation.
- Responded to phishing reports, malware detections, and unauthorized access attempts following SOPs and playbooks.
- Documented incident response actions and maintained accurate records.
- Assisted in maintaining and monitoring AV/EDR for anomalies and policy violations.
- Reviewed firewall, proxy, and VPN logs to identify suspicious activity and user behavior anomalies.
- Contributed to daily/weekly SOC operations reports and provided input on improving detection rules and use cases.
- Ensured adherence to internal security policies, compliance requirements, and audit readiness.
- Participated in shift handovers, SOC meetings, and knowledge-sharing sessions to improve team awareness.
Field Service Coordinator - NOVAS Incorporation - Remote, USA
(2024-11 - 2025-11)
- Assisting and handling day-to-day tasks across the world.
- Coordination and communication with Clients, responsible for managing network-based projects.
- Scheduling the technicians and providing training according to the task requirements.
- Managed multiple sites around the world for network installation.
- Worked with international network engineers for network and security infrastructure installation.
- Made sure the team had everything they needed regarding supplies and resources to complete work within the deadlines and budget limits.
- Maintain records of all clients, network technicians, and daily tasks records.
Cyber Security Consultant - Frequency Allocation Board (FAB) - Islamabad, Pakistan
(2024-05 - 2024-07)
- FAB's Critical Assets Identification & Categorization
- Cybersecurity policy formulation
- Risk Assessment
- Proposing a Risk Mitigation Plan & ISO 27001 controls application
Technical Project Coordinator - GAICHU Management Services - Bahria Town, Pakistan
(2022-10 - 2023-10)
- Problem identification, analysis, and resolution with an adequate plan of action for rectification.
- Providing 24/7 remote assistance and handling day-to-day tasks across the world.
- Coordination and communication with Clients, responsible for managing network-based projects.
- Scheduling the technicians and providing training according to the task requirements.
- Managed multiple sites around the USA for network installation and remediation sites.
- Worked with international network engineers for network and security infrastructure installation.
- Ensured that the team had supplies and resources to meet the deadlines and budget limitations.
Internship (NOC, SOC, & Implementation department) - High Tech Innovations - Bahria Town, Pakistan
(2022-05 - 2022-09)
- Perch SIEM tool, Sentinel One as EDR for clients, CrowdStrike as XDR for internal network, Qualys for vulnerability management, Webroot as an antivirus, Tiger Paw as CRM.
- IT Administration
- Network Installs (Server 2008, 2012, 2016, 2019)
- Workstation replacement and installation
- Taking care of clients' data and backup (Shadow Protect and CloudBerry)
- Monitoring client machines