Saif Ullah Khan

Saif Ullah Khan

Followers of Saif Ullah Khan2000 followers
location of Saif Ullah KhanRiyadh, Saudi Arabia

Connect with Saif Ullah Khan to Send Message

Connect

Connect with Saif Ullah Khan to Send Message

Connect
  • Timeline

  • About me

    SOC Analyst L2

  • Education

    • University of Engineering and Technology, Lahore

      2018 - 2022
      Bachelor's degree Computer Science 3.349

      Activities and Societies: Society events, Blood drives, Coding competitions, Cricket

  • Experience

    • Confidential

      Jan 2020 - Apr 2022

      Working as cloud Security Engineer, my role was to monitor and secure the cloud infrastructure byidentifying and mitigating security risks and implement counter measure for these threats.Responsibilities:- Configuring AWS security tools like AWS WAF to mitigate different kinds of Web attacks.- Implementing new use cases at SIEM, IDS, and EDR levels to detect security incidents.- Gathering and Analysis of forensic artifacts from compromised resources.- Analyzing and hardening of access policies like IAM, AWS & Azure Roles, and S3 policies.- Integrating AWS log sources with Azure sentinel- Maintaining and scanning AWS resources for any security risks. Show less

      • Cloud Security Engineer | Security Operations Center Analyst

        Mar 2020 - Apr 2022
      • Trainee Security Engineer

        Jan 2020 - Mar 2020
    • Ebryx (Pvt.) Ltd.

      Jun 2022 - Mar 2025
      Security Operations Center Analyst

      - 24/7/365 Monitoring using SIEMs, EDRs & other security monitoring tools. - Investigating and Escalating Security incidents, creating remediation plans.- Provide Incident response and threat hunting.- Created SIEM and EDR use cases and tuned false positives, reducing the noise by 60%.- Designing alerting rules and dashboards for threat hunting.- Conducted purple teaming exercises and IR drills to create new use cases having a TP ratio of 80%.- Compiling and Presenting Weekly/monthly threat reports.- SIEM & EDR Administrations and MDR services to multiple clients.- Expertise in cloud security for AWS, Azure, and GCP.- Leveraging automation to enhance efficiency. Show less

    • IT Security Training & Solutions - I(TS)²

      Dec 2024 - now
      SOC Analyst L2 (Al-Rajhi Bank)

      SOC Analyst L2 at Al-Rajhi Bank Project- Conduct 24/7/365 monitoring using SIEMs, EDRs, and other security tools.- Analyze and respond to phishing emails to mitigate threats.- Provide SIEM use-case tuning recommendations to enhance detection accuracy.- Created reports for security incidents.

  • Licenses & Certifications

    • Certified AppSec Practitioner (CAP)

      The SecOps Group
      Feb 2023
      View certificate certificate
    • Microsoft Certified: Security, Compliance, and Identity Fundamentals

      Microsoft
      Jun 2023
      View certificate certificate
    • Microsoft Certified: Security Operations Analyst Associate

      Microsoft
      Feb 2023
      View certificate certificate
    • AWS Certified Solutions Architect – Associate

      Amazon Web Services (AWS)
      Jul 2023
      View certificate certificate
    • Microsoft Certified: Azure Fundamentals

      Microsoft
      Jun 2023
      View certificate certificate
    • Foundation Level Threat intelligence Analyst

      ArcX
      Mar 2023
      View certificate certificate
    • Microsoft Certified: Security, Compliance, and Identity Fundamentals

      Microsoft
      Jun 2023
      View certificate certificate
    • Microsoft 365 Certified: Fundamentals

      Microsoft
      Jun 2023
      View certificate certificate