Azure security, Microsoft Defender for Cloud, CSPM, Zero Trust, and hybrid environment hardening.
Cybersecurity engineer building resilient cloud and enterprise defenses.
I am a Dublin-based cybersecurity professional with 8+ years of experience spanning SOC operations, SIEM engineering, identity and access management, cloud posture hardening, vulnerability management, and incident response across enterprise environments.
Role focus
My portfolio is aimed at cloud security engineer and cybersecurity engineer opportunities, with emphasis on Microsoft security tooling, incident response, detection engineering, IAM, and vulnerability reduction.
Microsoft Sentinel, KQL, Splunk SPL, playbooks, automation, and threat hunting.
Entra ID, Active Directory, RBAC, MFA, Conditional Access, and lifecycle controls.
Qualys, Rapid7, CVSS prioritization, patch governance, and executive reporting.
Experience
Recent work highlights show a track record across managed detection, enterprise SecOps, infrastructure security, and risk reduction in regulated and large-scale environments.
Primary customer-facing security role supporting enterprise investigations, remediation guidance, and security improvement across cloud, SaaS, and on-prem environments.
- Served as the primary contact for SOC-escalated incidents and analyzed telemetry across multi-cloud, SaaS, and on-prem environments.
- Mapped findings to MITRE ATT&CK and NIST-aligned remediation guidance for technical and non-technical stakeholders.
- Engineered and tuned 16+ detection rules, SOAR playbooks, and response workflows in Microsoft Sentinel and Splunk.
- Improved detection-to-response time by 7% and reduced false positives by 18% across five enterprise environments.
- Assessed Azure misconfigurations, strengthened Microsoft security stack deployments, and automated SecOps workflows.
- Managed vulnerability lifecycle and attack surface management across 600+ hybrid systems using Qualys and Rapid7.
- Reduced critical vulnerabilities by 32% within SLA targets through risk-based prioritization and remediation tracking.
- Performed hardening reviews across 100+ virtualized infrastructure nodes.
- Applied Zero Trust principles through RBAC controls, secure baselines, and patch governance.
- Led a 26-member team handling around 200 tickets per day and improved SLA compliance from 78% to 91%.
- Administered IAM controls for 10,000+ users and 300+ servers with RBAC and PowerShell automation.
Core strengths
The portfolio emphasizes tools and practices that align closely with cloud security engineer and cybersecurity engineer job descriptions.
Cloud & platform security
Microsoft Defender for Cloud, Azure security, AWS, GCP, Docker security, Kubernetes, IaC, and Zero Trust architecture.
SIEM & response
Microsoft Sentinel, KQL, Splunk SPL, SOAR, Microsoft Defender XDR, CrowdStrike EDR, incident response, and threat hunting.
Identity & access
Entra ID, Active Directory, MFA, Conditional Access, RBAC, Privileged Access, Group Policy, LDAP, and lifecycle controls.
Vulnerability & compliance
Qualys, Rapid7, CVSS, attack surface management, SCCM, ISO 27001, NIST, GDPR, PCI-DSS, SOC 2, and CIS Benchmarks.
Credentials
Your LinkedIn and resume together show both current positioning and formal credentials that support senior cloud and cyber security roles.
Suggested GitHub repo setup
Use a public repository named sarath-surendran-portfolio or sarathsurendran.github.io. Hosting through GitHub Pages makes the site publicly accessible in read-only mode by default, which matches your requirement for a public portfolio that visitors can view but not edit.
Place this HTML file at the root as index.html when you publish to GitHub Pages. You can later split styles and assets into separate files, but this version is ready to deploy as a single static page.
Contact
This section keeps your main conversion actions simple for recruiters and hiring managers.
Location
Dublin, Ireland
Work preference
Open to on-site, hybrid, and remote roles in Ireland.