Rezwan Uzzaman
Rezwan Uzzaman
About
Detail
SOC Analyst | MSCIS | CompTIA Security+
Alexandria, Virginia, United States
I’m a Security Operations Center (SOC) Analyst with over six years of hands-on experience protecting enterprise and healthcare environments through proactive threat detection, incident response, and security automation. My mission is to reduce risk, improve detection accuracy, and strengthen cyber resilience across complex, cloud-driven infrastructures.I specialize in SIEM management (Splunk, Microsoft Sentinel, Wazuh/ELK), EDR/XDR platforms (Defender for Endpoint, SentinelOne, CrowdStrike), and network defense tools (Suricata, Snort)—transforming data into actionable security insights. Over the years, I’ve delivered measurable results such as:Reduced time-to-detect by 68% and mean-time-to-response by 28%Improved true-positive detection rates by 40% while cutting alert noise by 35%Maintained 99% EDR coverage and 96% patch compliance across 1,400+ endpointsBeyond technical skills, I bring a structured and metrics-driven approach to incident response, threat hunting, and GRC support, ensuring compliance with ISO 27001, SOC 2, HIPAA, and NIST 800-53 standards. I’ve built automated playbooks in Python and PowerShell to streamline enrichment, ticketing, and containment—helping teams respond faster and more consistently.I’m deeply passionate about continuous learning, collaboration, and using automation to make security operations smarter and more efficient. My goal is to continue evolving as a cybersecurity leader who not only detects threats but anticipates them—strengthening organizations against an ever-changing threat landscape.Key Focus Areas:• Security Operations & Incident Response• SIEM & Detection Engineering (KQL, SPL)• Threat Hunting & Intelligence Analysis• EDR/XDR Optimization & Automation• Cloud & Identity Security (Azure, Okta, M365)• Compliance Readiness (ISO, SOC 2, HIPAA, NIST)