
Zille Tabia
SOC Engineer
Skills

See my services


Portfolio
Work experience
Secureism
Full-time • 11 mos
SIEM Engineer
Nov 2025 - Present • 6 mos
📍Designed and operated a multi-node Elastic SIEM deployment optimized for scalability and high availability. 📍Built security automation playbooks in n8n for Elastic SIEM alert enrichment, triage, and response via webhook integrations. 📍Developed an Elastic SIEM health monitoring playbook to track cluster health, node availability, ingestion pipelines, and index status with automated alerting and remediation. 📍Deploying and managing SIEM and automation infrastructure on Proxmox VE, supporting scalable lab and production-like environments. 📍Actively developing n8n-based cybersecurity automation playbooks for SIEM operations, incident response, and security monitoring.
SOC Analyst L1
Jun 2025 - Nov 2025 • 5 mos
📍Conducted investigation and triage of security alerts within Elastic. 📍Performed in-depth log analysis and threat hunting to identify anomalous behavior, potential threats, and security events across multiple data sources. 📍Designed, executed, and validated detection use cases within ELK to improve threat visibility and detection accuracy.
SOC Analyst
Thincscorp • Part-time
Aug 2024 - Nov 2024 • 3 mos
📍Deployed and configured IBM QRadar, and created advanced detection rules. 📍Performed static as well as dynamic malware analysis in detail. 📍Researched compliance frameworks, ensuring adherence to ISO, NIST, HIPAA, and PCI DSS standards