Security Researcher

LTI Mindtree

Apr 2021 – Apr 2023

Microsoft Defender for Endpoint · Threat detection · MITRE ATT&CK

  • Worked on Microsoft Defender for Endpoint, investigating customer alerts and checking whether the activity was malicious or a false positive.
  • Used KQL to search and analyze customer events, endpoint activity, and related telemetry during investigations.
  • Handled high-priority security cases with strict SLAs, where investigations had to be completed within a few hours.
  • Created suppression rules in Defender for known legitimate activity to reduce repeated false-positive alerts.
  • Wrote and tested detection rules to identify suspicious activity and generate alerts for specific behaviors.

Technical Trainee

ENH iSecure

Feb 2020 – Oct 2020

Cybersecurity fundamentals · Networking · IAM · Scripting

  • Joined as a Technical Trainee during the final year of B.Tech.
  • Learned networking, including common protocols, ports, and IETF standards.
  • Studied identity and access management (IAM) concepts and practiced scripting.
  • Worked on small web projects as part of the training.