Syed Najam — DevOps Manager
I am a Security & SIEM Engineer with strong SOC operations expertise, experienced in designing, deploying, and optimizing enterprise security monitoring architectures and security controls across large-scale public and private sector environments. My core strength lies in end-to-end SIEM engineering, including All-in-One (AIO) and distributed deployments, log source onboarding, data parsing and normalization, enrichment, and pipeline optimization to ensure high-quality, actionable security telemetry. I specialize in detection engineering, developing and maturing use cases aligned with MITRE ATT&CK and Cyber Kill Chain (CKC) frameworks to improve detection coverage and accuracy. Alongside engineering responsibilities, I actively contribute to SOC operations, performing advanced alert triage, deep log analysis, and Tier-2/Tier-3 level investigations. I support incident response activities, including threat validation, root cause analysis, and coordinated containment and remediation efforts. I have hands-on experience in manual threat hunting, applying hypothesis-driven techniques to identify stealthy threats, anomalous behavior, and attack patterns that bypass automated detections. I also perform phishing detection and analysis, inspecting email headers, URLs, attachments, and payloads to identify credential harvesting, malware delivery, and social engineering attacks. My work involves integrating a wide range of enterprise security controls across endpoint, network, perimeter, cloud, and identity domains, enabling centralized visibility and cross-domain correlation. I focus on ensuring that security technologies generate meaningful telemetry that supports effective threat detection, risk management, and compliance requirements. I apply MITRE ATT&CK, Cyber Kill Chain (CKC), and SOC maturity models (SOC-CMM) to strengthen detection capabilities and improve SOC operational effectiveness. I actively contribute to SOC playbooks, runbooks, and process optimization, supporting consistent and efficient security operations. In addition, I support use case validation, UAT and testing environments, and compliance-driven security monitoring aligned with ISO/IEC 27001, organizational risk management, and business continuity requirements. Currently pursuing a Master’s in Information Security, I continuously enhance my expertise across SIEM architecture, security engineering, detection engineering, threat hunting, and SOC operations, with a strong focus on scalable, resilient, and standards-driven cybersecurity solutions.
Stackforce AI infers this person is a Cybersecurity Engineer specializing in SIEM and SOC operations.
Location: Karachi, Sindh, Pakistan
Experience: 2 yrs 11 mos
Skills
- Siem Engineering
- Security Monitoring
- Incident Response
- Threat Detection
- Web Development
- System Administration
Career Highlights
- Expert in end-to-end SIEM engineering and security monitoring.
- Proficient in detection engineering aligned with MITRE ATT&CK.
- Strong background in incident response and threat hunting.
Work Experience
COMMTEL
Security & SIEM Engineer (6 mos)
SOC Analyst (3 mos)
Abacuschains Website Designing Agency
Website Developer - System Admin (2 yrs 2 mos)
Fictive Hut
Wordpress Developer (4 mos)
Education
Bachelor's degree at Hamdard University