Ashwanth Saran JC — turning SIEM telemetry into decisions. Focused on threat detection, incident response, and security operations with Wazuh, FortiSIEM, SentinelOne, Sophos and Palo Alto.

I'm an MCA graduate currently serving as a SOC Analyst at Amvion Labs, specializing in real-time security monitoring, threat analysis, and incident response. I use SIEM platforms — Wazuh and FortiSIEM — to correlate system logs, EDR alerts, and firewall telemetry into actionable detections.
Hands-on experience spans Palo Alto and Sophos firewalls and SentinelOne EDR. Outside of work, I build threat-intel enrichment tools and automation projects — shared on GitHub and LinkedIn — to sharpen my detection and investigation skills. My focus: SOC operations, threat intelligence, and detection engineering — contributing to cybersecurity posture and incident response.
Work experience
Amvion Labs Pvt Ltd
Necurity Solutions Network Security Pvt Ltd
Freelance
Selected security engineering projects

Real-time investigation tool that pulls geolocation, threat reputation, and risk level for an IP by combining AbuseIPDB + VirusTotal — speeding up SOC triage.

Lightweight forensic triage tool for Windows that snapshots persistence keys, active connections, and failed auth attempts to detect malware and unauthorized access.

Bulk IP reputation enrichment using free-tier threat intel APIs with Excel-friendly output and severity classification.

Automated SOAR playbook that enriches Wazuh alerts through n8n — VirusTotal, AbuseIPDB, and GeoIP lookups on suspicious public IPs, delivering real-time context to Telegram.

Real-time chatbot UI for exploring college admissions, fees, and placements — demonstrates NLP concepts and interaction design.

Facial-image prediction system using OpenCV + CNNs. Demonstrates image processing pipeline and model deployment.
Verified certifications and learning milestones
Threat detection, investigation, and response using Microsoft Sentinel, Defender XDR, and Defender for Cloud — including KQL hunting, incident management, and SOAR automation.

Learned SOC operations, threat detection, and incident response fundamentals through Cisco's professional security training program.

Explored cybersecurity career paths, core concepts, and foundational tools used in protecting digital infrastructure.

Gained an understanding of Generative AI principles, tools, and applications using Google Cloud's AI Studio platform.

Completed hands-on training in cybersecurity fundamentals, including networking, system administration, and foundational security concepts through TryHackMe's comprehensive pre-security course.

Earned recognition for understanding the current threat landscape, including emerging threats, threat actors, and defensive strategies through Fortinet's training program.

Hands-on training, ranks, and recognition
B.S. Abdur Rahman Crescent University, Chennai
Vels Institute of Science, Technology & Advanced Studies, Chennai