Prajna Nayak

CEO

Mumbai, Maharashtra, India11 yrs 3 mos experience
AI ML PractitionerAI Enabled

Key Highlights

  • 9+ years in Information Security and Cloud Security.
  • Expert in Security Operations and Incident Response.
  • Proven track record in AI security solutions evaluation.
Stackforce AI infers this person is a Security Operations expert in the Fintech industry.

Contact

Skills

Core Skills

Security OperationsCloud Security

Other Skills

AI Security SolutionsAWS Security ServicesAlert OptimizationArcSightArtificial Intelligence (AI)CCNAChange ManagementDetection EngineeringEDREDR Solution ManagementElastic SIEMEnglishIncident HandlingIncident ManagementIncident Response

About

As an Information Security Professional, I have spent 9+ years honing my skills and expertise in this industry. I have worked majorly in Security Operations (SOC) and have now gained experience in Security for AWS Cloud too. As an avid learner, I am always seeking out new opportunities to expand my knowledge and am committed to lifelong learning. I am also a strong communicator, able to work effectively with cross-functional teams and build productive relationships with key stakeholders.

Experience

Idfc first bank

Lead - Cyber Defense (AVP)

May 2024Present · 1 yr 10 mos · Mumbai, Maharashtra, India

  • Leading detection engineering initiatives across the bank, including XSOAR-based automations for alert triage tips, MITRE ATT&CK use case tracking, false positive logic tuning, and enrichment/attribution of threat hunt findings using an LLM.
  • Spearheading evaluation of AI security solutions (HiddenLayer, AIShield, SingulrAI) for model vulnerability assessment, adversarial defense, and usage monitoring of enterprise AI apps; successfully validated Morphisec AMTD as a complementary EDR layer.
  • Migrated Zscaler Deception from on-prem to cloud with enhanced decoy coverage and a 90% drop in false positives through advanced alert tuning.
  • Drove SOC maturity programs including UEBA alert triage, aging incident reduction, and use case optimization—achieving a 25% drop in alert noise and validating detection efficacy via simulation.
Detection EngineeringXSOARMITRE ATT&CKAI Security SolutionsEDRSecurity Operations+1

Nykaa

2 roles

Lead Security Engineer

May 2023May 2024 · 1 yr · Mumbai, Maharashtra, India

  • Security Operations and Cloud Security
Security OperationsCloud Security

Senior Security Engineer

Jun 2021Jul 2023 · 2 yrs 1 mo · Mumbai, Maharashtra, India

  • SOC (Elasticsearch Logstash Kibana)
  • Incident Management
  • Incident Response & Drills
  • Threat Intelligence
  • EDR Solution Management
  • Email Gateway Management
  • Cloud Security (AWS Cloud)
  • Native AWS Security Services - Implementation & Monitoring
  • CSPM Monitoring & Remediation
  • Controls for Cloud Best Practice Adherence
  • IAM Audit
  • Cross Technology Integrations
SOCIncident ManagementIncident ResponseThreat IntelligenceEDR Solution ManagementCloud Security+2

Bookmyshow

Senior Security Executive

May 2020May 2021 · 1 yr · Mumbai, Maharashtra, India

  • Splunk
  • o Monitoring user access and anomalous traffic patterns
  • o Assessing current alerts, optimising them to reduce noise
  • o Creation of new alerts when new log sources are added
  • o Complete investigation and resolution of triggered security incidents
  • o Log parsing and optimisation
  • Elastic SIEM proof of concept from scratch – onboarding of devices (including AWS components), parsing, filtering, alerting & dashboards
SplunkElastic SIEMLog ParsingAlert OptimizationSecurity Operations

Wipro limited

3 roles

Senior Security Analyst (Arcsight)

Promoted

Jun 2017May 2020 · 2 yrs 11 mos

  • Training and managing a team of 8-10 L1 engineers
  • Creation of SOPs and knowledge base articles to standardize incident handling procedure for
  • known alerts
  • Monitoring O365 Cloud Security events, Izoologic – Brand Monitoring and F5 Silverline DDoS
  • Protection alerts
  • ArcSight
  • o Implementation of network modelling and defining asset criticality
  • o Onboarding & troubleshooting of different device types and creation of subsequent
  • correlation rules & dashboards.
  • o Connector aggregation and filtering to optimize ESM performance and efficiency
  • o Integration with ServiceNow for auto raising ticket on alert triggers
ArcSightO365 Cloud SecurityIncident HandlingSecurity Operations

Information Security Analyst

Promoted

May 2016May 2017 · 1 yr

  • Single point of contact at client location for all SOC related communication
  • End-to-end analysis along with resolution of triggered alerts in ArcSight
  • Change management documentation and change supervision for ArcSight
  • Tracking new threat advisories and vulnerabilities relevant to client infrastructure and taking
  • proactive actions
ArcSightChange ManagementThreat AdvisoriesSecurity Operations

SOC Engineer L1 (SIEM : Arcsight/McAfee Nitro)

Oct 2014Apr 2016 · 1 yr 6 mos

  • ArcSight & McAfee Nitro
  • o Realtime monitoring and first level investigation of security incidents
  • o Daily, weekly, monthly reporting - health checks, log reporting status, trend analysis
  • amongst others
  • Analysis of user reported suspicious emails and subsequent corrective actions
ArcSightMcAfee NitroSecurity Operations

Education

Vellore Institute of Technology

Master’s Degree — Information Technology

Jan 2014Jan 2018

The D.G. Ruparel College

Bachelor’s Degree — Information Technology

Jan 2011Jan 2014

Stackforce found 100+ more professionals with Security Operations & Cloud Security

Explore similar profiles based on matching skills and experience