Summary
Overview
Work history
Education
Skills
Certification
Languages
Personal Information
PERSONAL INFORMATION
Timeline
Generic
WASEEM MANSOOR

WASEEM MANSOOR

Al Ain,UAE

Summary

Senior Cyber security specialist with 13+ years of experience in SOC Engineering, threat detection, incident response and SOC leadership seeking challenging role.

Overview

14
14
years of professional experience
2011
2011
years of post-secondary education
1
1
Certification

Work history

Senior Security Engineer

ALEC
Dubai
2025.11 - Current

●Investigate deep on security incidents escalated by SOC Team.

●Deploy and manage Microsoft Defender XDR and Crowdstrike.

● Perform proactive threat hunting to identify undetected threats.

● Review customer security infrastructure and Identify gaps in security monitoring and suggest new use cases or security solutions to mitigate the gaps.

● Coordinate with relevant stakeholders to ensure escalated security incidents are actioned based on SLA.

● Suggest new use creation and rule fine tuning in SIEM System as per requirement.

● Work on documentation enhancement related to Incident Management & SOC operation.

Cybersecurity Engineer

HELP AG
2022.08 - 2025.07
  • Deploy and manage Microsoft Sentinel and Defender.
  • Perform capacity planning, system optimization and high availability configuration of IT Security systems.
  • Create and Finetune correlation rules in SIEM.
  • Identify and mitigate threats observed from various security solutions such as F5 ASM, Arbor, Fireeye, Microsoft Defender, Carbon Black.
  • Develop playbooks for automation for incident response and TI integration.
  • Integrate various log sources to Sentinel.
  • Review customer security infrastructure and Identify gaps in security monitoring and suggest new use cases or security solutions to mitigate the gaps.
  • Coordinate with relevant stakeholders to ensure escalated security incidents are actioned based on SLA.

SOC T2 Analyst

CISCO
2021.09 - 2022.03

● Fine tune correlation rules in SIEM System to reduce False positives.

● Coordinate with relevant stakeholders to ensure escalated security incidents are actioned based on SLA.

● Creating Daily, Monthly reports and Ad-hoc reports of various devices as per the requirement.

● Analyze and correlate logs to identify security incidents.

● Investigate deep on incidents escalated from L1,L2 to identify real time threats and attacks.

Information Security Senior Administrator (L3)

Etisalat
2016.09 - 2021.09
  • Design implement and manage IT Security infrastructure.
  • Perform capacity planning, system optimization and high availability configuration of IT Security systems.
  • Integrate Network/Endpoint/Application /Security solution logs to SIEM system.
  • Deploy and manage Arcsight, Microsoft Sentinel and Defender.

Information Security analyst

EY - India
2012.05 - 2016.08
  • Worked as a Information security analyst Level 2 on Real time threat management using SIEM tools like Splunk & ArcSight, HIDS/HIPS devices like Fidelis XPS, Carbon Black & NIDS/NIPS devices like Proventia IPS, SourceFire IPS, Mcafee IPS.
  • Investigated on the escalated incidents to detect real time threats and attacks from the Logs obtained from different network devices such as Firewalls, IDS, IPS, Operating Systems like Windows, UNIX, Proxy Servers, Windows Servers, System Application, Databases, Web Servers and Networking Devices.
  • Correlating alerts obtained from SourceFire IPS, Proventi IPS, Fidelis XPS NIPS, Carbon Black and Falcon Host, HIDS, to identify network attacks and intrusion detections.
  • Creating and managing Usecases, dashboards, reports, searches and system administration tasks in Splunk.
  • Performs Connector Installation, Case management, Asset and Network modeling, Creating Rules, Active channel, Dashboard, Filters, Reports, Queries etc in ArcSight and to track incidents.
  • Fine tune Real time rules in Arcsight & Splunk so as to minimise the number of false positive alerts.
  • Creating Daily, Monthly reports and Adhoc reports of various devices for different clients.

Education

Bachelor of Technology (B.TECH) - Electronics and Communication Engineering (ECE)

Toc-H Institute of science & Technology

Higher Secondary Education (HSE) - Science

Tagore Vidyaniketan Higher Secondary School

Secondary School Leveling Certificate Examination (SSLC) - undefined

Chinmaya Vidyalaya

Skills

  • SIEM Tools administration (Sentinel, Splunk, Arcsight)
  • Expertise in incident analysis and response
  • Experience with F5 ASM, CISCO ASA, CISCO ISE, Arbor, Microsoft Defender, Kaspersky EDR, Fidelis, Carbon Black, Crowdstrike
  • Custom log integration using Regular expression (Sentinel, Arcsight, Splunk)
  • Automation using Sentinel playbook
  • Use case creation and finetuning

Certification

  • CISSP, 649553
  • MicroFocus Arcsight Advanced Analyst
  • Splunk Core Certified Power User
  • CCNA (Cisco Certified Network Associate)

Languages

English: C2 Proficient
Hindi: C2 Proficient
Malayalam: Proficient

Personal Information

  • Title: Senior Cyber security specialist
  • Date of birth: 1989-04-18
  • Gender: Male
  • Nationality: Indian
  • Marital status: Married

PERSONAL INFORMATION

  • Date of birth: 1989-04-18
  • Gender: Male
  • Nationality: Indian
  • Marital status: Married

Timeline

Senior Security Engineer

ALEC
2025.11 - Current

Cybersecurity Engineer

HELP AG
2022.08 - 2025.07

SOC T2 Analyst

CISCO
2021.09 - 2022.03

Information Security Senior Administrator (L3)

Etisalat
2016.09 - 2021.09

Information Security analyst

EY - India
2012.05 - 2016.08

Higher Secondary Education (HSE) - Science

Tagore Vidyaniketan Higher Secondary School

Secondary School Leveling Certificate Examination (SSLC) - undefined

Chinmaya Vidyalaya

Bachelor of Technology (B.TECH) - Electronics and Communication Engineering (ECE)

Toc-H Institute of science & Technology
WASEEM MANSOOR