Ishaan Deshmukh
Cybersecurity Analyst (Entry-Level / SOC Tier 1)
Pune, India • +91 98220 41187 • ishaan.deshmukh.sec@gmail.com • linkedin.com/in/ishaan-deshmukh-sec • github.com/ishaan-sec
Portfolio: www.eliorexa.com/portfolio/cybersecurity-analyst-fresher
Professional Summary
Final-year Information Security graduate who lives in the SOC mindset — triaging alerts, hunting threats and writing tight incident notes. Hands-on with SIEM (Splunk, Wazuh), vulnerability assessment (Nessus, OpenVAS) and penetration testing (Burp Suite, Metasploit) across home-lab and CTF environments. CEH and CompTIA Security+ certified, ranked in the top 5% on TryHackMe, and disciplined about the MITRE ATT&CK framework and clean evidence handling.
Skills
Security operations: SIEM (Splunk, Wazuh), Threat detection, Log analysis, MITRE ATT&CK, Incident response (triage)
Offensive & assessment: Penetration testing, Vulnerability assessment, Burp Suite, Metasploit, Nmap, Nessus, OpenVAS
Network & systems: Firewalls (pfSense, iptables), TCP/IP, Wireshark, Linux, Active Directory, Windows hardening
Foundations & tooling: ISO 27001 (awareness), OWASP Top 10, Python scripting, Bash, Git, Cryptography basics
Core Competencies
SIEM · threat detection · vulnerability assessment · penetration testing · incident response · firewalls · ISO 27001 · SOC · MITRE ATT&CK · OWASP · Splunk · Cybersecurity Analyst
Work Experience
SOC Analyst Intern — SentinelArc Security
Jun 2025 – Sep 2025
Remote
- Triaged 60+ daily SIEM alerts in Splunk during shift rotations, escalating 14 true-positive incidents to Tier 2 with documented IOCs and ATT&CK mappings.
- Authored 8 detection rules for brute-force and suspicious-PowerShell activity, cutting false positives on those use cases ~22%.
- Ran weekly vulnerability scans with Nessus across 40+ hosts and prepared remediation tickets that closed 31 medium/high findings.
- Documented 5 incident-response playbooks for phishing and malware containment, adopted by the Tier 1 onboarding guide.
Projects
HomeSOC — detection lab — 90%+ detection rate
Self-built security operations lab simulating attacks and end-to-end detection.
- Deployed Wazuh SIEM + Sysmon across 4 VMs and ingested logs to build dashboards detecting lateral movement and credential dumping.
- Emulated 12 MITRE ATT&CK techniques with Atomic Red Team and tuned alerts to a 90%+ detection rate against the test set.
Tech: SIEM, Wazuh, MITRE ATT&CK, Threat detection
VulnForge — pentest report — 17 findings reported
Full vulnerability assessment and penetration test of an intentionally vulnerable web app.
- Chained SQL injection and IDOR to full account takeover, then wrote a CVSS-scored report with reproduction steps and fixes.
- Reported 17 findings across the OWASP Top 10 and verified remediation in a re-test, dropping the risk score 68%.
Tech: Penetration testing, Burp Suite, OWASP, Vulnerability assessment
Education
B.Tech Computer Science (Cyber Security)
2026
Symbiosis Institute of Technology, Pune
CGPA 8.6/10 · Coursework: Network Security, Cryptography, Ethical Hacking, Digital Forensics, Risk Management
Certifications
- Certified Ethical Hacker (CEH) — EC-Council (2025)
- CompTIA Security+ (SY0-701) — CompTIA (2025)
Achievements
- Top 5% global ranking on TryHackMe; cleared 70+ rooms across offensive and defensive paths.
- Captured 3rd place (of 90 teams) at the InCTF Jeopardy CTF, leading the web-exploitation category.