Vishal K.
Cloud Security Engineer | Azure | AWS | Sentinel | MSP | SOC
#MicrosoftSentinel #DefenderXDR #SOC #ThreatHunting #IncidentResponse #AzureSecurity #AWSSecurity #EntraID #CrowdStrike #Darktrace #SOAR #KQL #MSP #24x7SOC #L1L2L3Support PROFESSIONAL SYNOPSIS I help MSPs and mid-size businesses run tighter, faster Security Operations โ building and tuning Microsoft Sentinel, cutting alert noise in Defender XDR, and closing incidents before they become breaches. I work comfortably across the full support stack, from L1/L2 triage and ticket escalation to L3 threat hunting and incident response, so MSPs can plug me into wherever their SOC needs coverage. Over the past 6+ years, I've supported 24ร7 SOC operations for US and UK-based MSPs across Azure, AWS, and Microsoft 365 environments. Recent work includes: Built and tuned Microsoft Sentinel analytics rules, reducing false-positive alerts by 40โ60% Reduced Mean Time to Respond (MTTR) on P1 security incidents by ~50% through SOAR playbooks, PowerShell automation, and optimized L1โL3 escalation workflows Strengthened Microsoft Entra ID and Conditional Access across 20+ client tenants, remediating 95%+ of critical identity and cloud security findings identified by Microsoft Defender for Cloud Managed vulnerability remediation programs that reduced critical vulnerabilities by over 70% using Tenable, Rapid7, and ConnectSecure Automated security operations and patching tasks, saving MSP teams 10โ15 hours of manual effort per week How I work: I slot into your existing ticketing and escalation process (ConnectWise, Datto RMM, ServiceNow, Jira) โ handling day-to-day L1/L2 alert triage and client tickets, while also owning the deeper SOC work: Sentinel rule-tuning, threat hunting, and incident response when things escalate to L3. That means you're not hiring separate people for routine coverage and complex investigations. If you need an engineer who can cover 24ร7 SOC monitoring, MSP ticket escalation, or hands-on Sentinel/Defender work without a ramp-up period, let's talk about your environment. SKILLS Microsoft Sentinel, KQL, Microsoft Defender XDR, Defender for Cloud, Threat Hunting, Incident Response, Azure Security, AWS Security, Entra ID, SOAR, SIEM, CrowdStrike Falcon, Darktrace, Vulnerability Management, MSP Ticket Escalation (L1-L3), Terraform, PowerShell, Azure DevOps, Microsoft 365 Security, Conditional Access