⚡Powered by ResumePortfolio.in
⚡ Recruiters are viewing this, unlock a premium theme to stand out · Upgrade →
Unlock themes →
S

Sebin Mathai

SOC Analyst Intern

Kerala, India

I am a SOC Analyst Intern with hands-on experience in SOC/NOC operations at Cyberxchange. I successfully deployed Wazuh SIEM on Ubuntu with Windows endpoint agent to implement real-time File Integrity Monitoring. My current focus is on conducting comprehensive vulnerability assessments and analyzing network traffic using SIEM solutions.

Skills

Security Operations & FrameworksLog AnalysisSIEM ManagementPacket AnalysisNetwork Traffic MonitoringMITRE ATT&CK FrameworkFile Integrity Monitoring (FIM)Automated Threat ResponseBurp SuiteMetasploitNmapNiktoHydraWiresharkSnort/Suricata (IDS/IPS)NessusOpenVASWazuhSplunkAlienVaultELK StackEFK StackGoogle SecOpsPEStudioProcess MonitorAl-KhaserCowrie (Honeypots)pfSense (NGFW)Ansible (Automation)VLANVPNDeep Packet Inspection (DPI)UFWTCP/IPARPICMPHTTP/SOSI ModelLinux (Ubuntu, Kali)WindowsTechnical DocumentationForensic ReportingIncident CommunicationTeam Collaboration

Projects

SIEM Deployment and File Integrity Monitoring using Wazuh

Deployed Wazuh SIEM on Ubuntu (VirtualBox) with Windows endpoint agent to implement real-time File Integrity Monitoring (FIM), successfully detecting file creation, modification, and deletion events through the Syscheck module and validating alerts in the Wazuh dashboard.

ELK Stack Security Monitoring Lab

Deployed Elasticsearch and Kibana on Ubuntu (Docker) with Filebeat to centralize FTP authentication logs, visualizing brute force attack patterns and attacker IP addresses in custom dashboards.

SSH Brute Force Attack Detection using Wazuh

Simulated SSH brute force attacks from Kali Linux against Metasploitable 2 in an isolated VirtualBox environment, leveraging Wazuh SIEM to detect and analyze failed authentication attempts, mapping alerts to the MITRE ATT&CK framework (T1110.001) and generating real-time security notifications in the Wazuh dashboard.

SIEM Log Monitoring using Splunk

Built a centralized log monitoring system using Splunk to collect and analyze logs from Windows and Linux systems, enabling detection of suspicious login attempts and real-time threat monitoring.

Network Design and Simulation using Cisco Packet Tracer

Designed and simulated a secure network using Cisco Packet Tracer, implementing VLAN segmentation and basic security controls to enhance network isolation and performance.

Experience

Cyberxchange

05/2026 – 08/2026

Conducting comprehensive vulnerability assessments with industry-standard tools to identify security gaps. Analyzing and monitoring network traffic and security incidents using SIEM solutions, including packet-level analysis to trace suspicious activity. Researching and reviewing firewall configurations to ensure optimal security posture. Preparing detailed technical reports and presenting findings to senior management.

Certifications

Certified SOC Analyst (CSAv2)

Certified in Cloud Computing and Cyber Security

Certified IT Infrastructure and Cyber SOC Analyst (CICSA)

Education

Indira Gandhi College of Arts and Science, Kothamangalam, Ernakulam

Bachelor of Computer Applications (BCA) • 2022 – 2025

Get in Touch

Interested in collaboration or just want to say hello? Feel free to reach out!

✨ Stand out to recruiters: unlock all themes + remove branding · ₹49Upgrade Plan →