SOC Analyst @ Amvion Labs · Chennai, IN

Securing the digital perimeter.

Ashwanth Saran JC — turning SIEM telemetry into decisions. Focused on threat detection, incident response, and security operations with Wazuh, FortiSIEM, SentinelOne, Sophos and Palo Alto.

▶ Monitoring: Endpoint Telemetry
! Status: Active Defense
Ashwanth Saran JC
SOC
NETWORKSECURITY
Cyber Defender Active
TRK_ID: 992-BSYS_STATUS: OPTIMAL

About

I'm an MCA graduate currently serving as a SOC Analyst at Amvion Labs, specializing in real-time security monitoring, threat analysis, and incident response. I use SIEM platforms — Wazuh and FortiSIEM — to correlate system logs, EDR alerts, and firewall telemetry into actionable detections.

Hands-on experience spans Palo Alto and Sophos firewalls and SentinelOne EDR. Outside of work, I build threat-intel enrichment tools and automation projects — shared on GitHub and LinkedIn — to sharpen my detection and investigation skills. My focus: SOC operations, threat intelligence, and detection engineering — contributing to cybersecurity posture and incident response.

▶Real-time threat monitoring
▶Incident response & escalation
▶Malware analysis & containment
▶MITRE ATT&CK, Zero Trust, Kill Chain

Technical Stack

Networking

  • OSI & TCP/IP
  • Subnetting
  • VLANs
  • DHCP / DNS
  • NAT
  • Routing

Cybersecurity

  • SIEM (Wazuh, FortiSIEM)
  • EDR (SentinelOne)
  • Firewalls (Palo Alto, Sophos)
  • MITRE ATT&CK
  • Zero Trust
  • Threat Intel
  • Log Correlation
  • Cyber Kill Chain

Languages

  • Python
  • PowerShell
  • SQL
  • HTML/CSS
  • JavaScript

Tools

  • Wazuh
  • FortiSIEM
  • SentinelOne
  • Palo Alto
  • Wireshark
  • Nmap
  • Jupyter

Systems

  • Windows / Linux
  • PC Assembly
  • OS Deployment
  • Disk Management

Service Log

Work experience

SOC Analyst

Feb 2026 — Present

Amvion Labs Pvt Ltd

  • /Monitor and correlate logs from FortiSIEM and Wazuh SIEM platforms in real time to detect suspicious activity and threat patterns.
  • /Configure and administer Wazuh, including rule customization, log forwarding, and integration tuning across firewall and O365 data sources.
  • /Investigate and escalate potential security incidents, coordinating incident response with the security team through containment and resolution.
  • /Document incidents and maintain response records to strengthen future detection and containment.

SOC Analyst Intern

Oct 2025 — Feb 2026

Necurity Solutions Network Security Pvt Ltd

  • /Performed initial triage of SIEM alerts using Wazuh and analyzed anomalies in network traffic.
  • /Investigated malicious activity and endpoint threats using SentinelOne and Sophos EDR, correlated with Palo Alto firewall logs.
  • /Deployed and maintained 800+ Wazuh agents across the client environment, contributing to detection tuning and incident response procedures.

Hardware Support Technician

2019 — 2024

Freelance

  • /Assembled custom PCs, installed and tuned operating systems for reliability.
  • /Diagnosed BSODs and hardware/software failures across desktops and laptops.

Credentials

Verified certifications and learning milestones

MI
Microsoft · SC-200

Security Operations Analyst Associate

Featured
SOC Analyst Essentials

Threat detection, investigation, and response using Microsoft Sentinel, Defender XDR, and Defender for Cloud — including KQL hunting, incident management, and SOAR automation.

Issued: June 2026 | Expires: June 2027
Microsoft — Security Operations Analyst Associate
Verify Credential↗
CI
Cisco

Security Operations Center — SOC Analyst Essentials

SOC Analyst Essentials

Learned SOC operations, threat detection, and incident response fundamentals through Cisco's professional security training program.

Issued: Sep 2025 | Expires: No Expiry
Cisco — Security Operations Center — SOC Analyst Essentials
Verify Credential↗
IB
IBM

Introduction to Cybersecurity Careers

Cybersecurity Foundations

Explored cybersecurity career paths, core concepts, and foundational tools used in protecting digital infrastructure.

Issued: Sep 2025 | Expires: No Expiry
IBM — Introduction to Cybersecurity Careers
Verify Credential↗
GO
Google

Introduction to Generative AI Studio

Generative AI Fundamentals

Gained an understanding of Generative AI principles, tools, and applications using Google Cloud's AI Studio platform.

Issued: Mar 2025 | Expires: No Expiry
Google — Introduction to Generative AI Studio
Verify Credential↗
TR
TryHackMe

Pre-Security Certificate

Security Fundamentals

Completed hands-on training in cybersecurity fundamentals, including networking, system administration, and foundational security concepts through TryHackMe's comprehensive pre-security course.

Issued: Dec 2025 | Expires: No Expiry
TryHackMe — Pre-Security Certificate
Verify Credential↗
FO
Fortinet

Introduction to the Threat Landscape 3.0

Threat Landscape Fundamentals

Earned recognition for understanding the current threat landscape, including emerging threats, threat actors, and defensive strategies through Fortinet's training program.

Issued: Nov 2025 | Expires: No Expiry
Fortinet — Introduction to the Threat Landscape 3.0
Verify Credential↗

Achievements

Hands-on training, ranks, and recognition

Top 8%
TryHackMe Global Rank
61
Rooms Completed
14
Badges Earned
6+
Verified Certifications
CTF
CyberDefenders · June 2026

ClawHavoc

Team: JAYRank: 83Score: 350
Solved Challenges
TH01TH02CLOUD17
View LinkedIn Post↗
★
SC-200 Certified
Completed Microsoft Security Operations Analyst Associate in June 2026.
★
Top 8% on TryHackMe
Ranked in the global top 8% with 14 badges across offensive & defensive rooms.
★
SOC Analyst @ Amvion Labs
Promoted from intern to full-time SOC Analyst within 4 months.
★
Published Author
Writing security walk-throughs and analysis on Medium.

Education

2023 – 2025

Master of Computer Applications (MCA)

B.S. Abdur Rahman Crescent University, Chennai

CGPA 7.0 / 10
2020 – 2023

Bachelor of Computer Applications (BCA)

Vels Institute of Science, Technology & Advanced Studies, Chennai

CGPA 7.1 / 10