Summary
Overview
Work History
Education
Skills
Websites
Certification
Timeline
Generic
Saranya Gomathi Babu

Saranya Gomathi Babu

South Windsor,Connecticut

Summary

Results-driven Cybersecurity Engineer with 8+ years of experience in cybersecurity and IT infrastructure, specializing in protecting enterprise systems and sensitive data. Expertise in Endpoint Security, SIEM, Email Security, IAM, PAM, Network Security, and Cloud Security, along with ITIL-based Change and Incident Management. Proven ability to detect, investigate, and mitigate threats, ensuring compliance with industry regulations. Skilled in incident response, analyzing security alerts, and implementing proactive threat mitigation strategies that enhance organizational security posture. Passionate about continuous learning, staying ahead of emerging threats, and strengthening enterprise security frameworks to safeguard critical assets

Overview

14
14
years of professional experience
1
1
Certification

Work History

Cybersecurity Engineer

Deciphera Pharmaceuticals
Waltham, USA
10.2022 - 01.2025
  • Led security investigations, analyzing logs using LEQL, network traffic and endpoint activity resulting in the identification and mitigation of numerous potential threats and a substantial reduction in security incidents
  • Automated EDR alert workflows using Rapid7 SOAR, reducing false positives by 15% and improving alert accuracy
  • Proactively analyzed security events by achieving a significant improvement in threat detection time and enabling 5% faster response to security incidents
  • Strengthened email security by analyzing Non-TLS sender emails and enforcing stricter filtering policies, resulting in a 10% reduction in phishing and malware incidents
  • Conducted vulnerability assessments, created remediation projects, by identifying, prioritizing, and remediating security risks and performing on-demand system scans
  • Collaborated with cross-functional teams to obtain vulnerability exceptions for non-remediable vulnerabilities, ensuring compliance with security policies and risk management frameworks
  • Generated and analyzed vulnerability management reports using Rapid7 SOAR to identify and track vulnerabilities
  • Administered Mimecast for email security, filtering spam, malware, and phishing attempts while implementing robust email security policies
  • Performed root cause analysis of high-severity alerts, resulting in the implementation of strengthened security measures that reduced future risks
  • Managed CyberArk Privileged Access Management (PAM) by creating safes and configuring CPM/PSM connectors to ensure secure privileged access management
  • Configured IOA exclusions in CrowdStrike to reduce false positives and enhance detection accuracy
  • Conducted a POC on Splunk to evaluate its effectiveness in security log analysis, anomaly detection, and incident response
  • Designed interactive security dashboards and maintained Standard Operation Procedures (SOP's), created incident response playbooks enhancing threat detection efficiency and incident resolution
  • Isolated compromised systems, remediated malware threats, and reset affected accounts to mitigate security risks
  • Managed the KnowBe4 security awareness training program, reducing phishing incidents and strengthening the organization's overall security posture
  • Monitored and analyzed security alerts from Microsoft 365 and Microsoft Cloud App Security(MCASB), by identifying and blocking suspicious activities, including anomalies and location-based access attempts
  • Configured CyberArk TOTP/JIT access for AWS and Azure AD, streamlining secure authentication and access workflows
  • Performed Sailpoint administration tasks, including user provisioning, access modifications, and troubleshooting authentication issues by analyzing log files for errors

Senior Operational Professional

IBM India Pvt Ltd
Bengaluru, India
09.2015 - 08.2017
  • Managed incident response, ensuring data security and business continuity and communicated security incidents to relevant stakeholders
  • Reduced vulnerability to exploits by implementing and maintaining a secure patching process using tools like Tivoli End-Point Manager
  • Played a lead role for the major Transition and Transformation initiative with Schneider Electric
  • Responsible for organizing and acquiring knowledge transfer from the client on the infrastructure and application, as well as documenting and delivering knowledge transfer to team members
  • Coordinated and resolved issues with external vendors/service providers for hardware related issues
  • Migration of critical application server from one DC to another DC and managing of Windows Servers, VM infrastructure with multiple ESXi Servers and VCenter
  • Developed PowerShell scripts to automate log analysis and streamline processes, enhancing operational efficiency
  • Enforced security best practices such as role-based access control, and regular security patching to protect virtualized infrastructure
  • Maintained an accurate inventory of IT assets to improve security posture and compliance with relevant regulations and standards
  • Client Name: Schneider - Electric

Technical Lead

Cognizant Technology Solutions
Chennai, India
04.2011 - 07.2015
  • Administered and managed a large-scale server environment (7000+ servers)
  • Implemented ITIL processes for change management and incident response
  • Troubleshooted and resolved server issues (hardware, software, performance)
  • Monitored server health and proactively addressed potential issues
  • Coordinated with vendors for hardware repairs and maintenance
  • Ensured server security and compliance through regular patching, vulnerability assessments, and access controls
  • Supported end-users with mobile device management (MDM) solutions
  • Provided technical support for Microsoft Outlook Active Sync and Blackberry Enterprise Server
  • Ensured data security and privacy by implementing remote wipe capabilities and enforcing security policies
  • Client Name: Capital One Data Center Services, Merck Mobility Services

Education

Bachelor of Technology - Information Technology

Anna University
Chennai, India
06-2009

Skills

  • CrowdStrike Falcon
  • Rapid7 SIEM
  • SOAR
  • Vulnerability Management
  • Absolute Computrace
  • Malware Remediation
  • Mimecast Email security
  • DMARC Analyzer
  • KnowBe4
  • MCASB & O365
  • Okta
  • Sailpoint
  • CyberArk PAM (CPM/PSM, TOTP Configuration, JIT Access)
  • ESentire Network Traffic Analysis MDR
  • Service Now
  • Incident & Change Management
  • CrushsFTP
  • User Account Management
  • AdAudit Plus

Certification

  • CompTIA Security+
  • AWS Certified Cloud Practitioner
  • ITIL V3 Certified

Timeline

Cybersecurity Engineer

Deciphera Pharmaceuticals
10.2022 - 01.2025

Senior Operational Professional

IBM India Pvt Ltd
09.2015 - 08.2017

Technical Lead

Cognizant Technology Solutions
04.2011 - 07.2015

Bachelor of Technology - Information Technology

Anna University
Saranya Gomathi Babu