Shivendra Kumar SIngh

SOC Analyst (L1)

Faridabad, HaryanaCybersecurity
2roles
27skills
1education
3credentials

About

Computer Science undergraduate specializing in Security Operations and Blue Team defense, with hands-on experience deploying a Wazuh SIEM home lab and building Python-based SOC automation tools.

Experience

Personal Project

Wazuh SIEM Home Lab

Deployed a full Wazuh SIEM environment via Docker with a Linux endpoint agent for centralized log collection and monitoring. Simulated reconnaissance activity with Nmap, analyzed generated alerts, and correlated endpoint and authentication logs for triage.

Security Operations and Splunk Security Monitoring Practitioner

TryHackMe

Completed 73+ hands-on labs across Security Operations, Windows/Linux investigations, networking, malware analysis, and incident response. Ran SPL searches in Splunk to investigate security events, filter logs, and identify suspicious activity across host and source data. Earned Adversarial Defence Operations and Network Security badges and achieved a Top 6% global ranking.

Education

Rawal Institute of Engineering and Technology (RIET)

Bachelor of Technology (B.Tech), Computer Science and Engineering

Expected July 2027

Relevant coursework: Computer Networks, Operating Systems, Cyber Security, Database Management Systems, Data Structures & Algorithms, Python Programming

Skills

Alert TriageIncident Investigation & DocumentationThreat DetectionIOC AnalysisFalse Positive AnalysisSecurity MonitoringWazuh SIEMSplunk (SPL)Log AnalysisLinux Authentication LogsWindows Event Log InvestigationPythonRegular Expressions (Regex)TCP/IPDNSHTTPSSHNetwork Traffic AnalysisNmapKali LinuxUbuntuWindowsDockerOracle VirtualBoxTryHackMeGitHubMachine Learning Fundamentals

Projects

SOC Security Monitoring Platform

Built a Python platform simulating SOC L1 workflows, including log parsing, alert generation, and incident documentation. Automated brute-force login detection from Linux authentication logs using regex pattern matching and added modules to flag reverse-shell and privilege-escalation command patterns. Designed a modular alert-reporting system to standardize investigation and support future detection expansion.

AI Malware Classification Prototype

Developed a proof-of-concept machine learning model to classify malicious process behavior from extracted system features, applying data preprocessing and feature engineering to improve accuracy.

Wazuh SIEM Home Lab

Deployed a Wazuh SIEM environment via Docker with a Linux endpoint agent for centralized log collection and monitoring; simulated Nmap reconnaissance activity and investigated generated alerts.