Digital Forensics + Security Operations
Navjot Kaur
Cybersecurity professional focused on SOC analyst, security analyst, vulnerability remediation, and cyber risk roles.
Experience connecting security findings, production signals, access controls, and business impact into clear remediation work. Background includes PenTest finding coordination, Splunk-informed investigation, RBAC cleanup, audit remediation, and graduate-level malware and traffic analysis labs.
Analyst Profile
Evidence-first, operations-aware security work.
My work sits at the point where security evidence becomes action: findings need owners, suspicious signals need context, access issues need cleanup, and risk needs to be explained clearly enough for teams to move. This portfolio presents that work as investigation areas and case files instead of a traditional resume.
Investigation Areas
Security work I can support.
Alert and production signal analysis
Correlate incident tickets, application logs, telemetry, and analytics to identify suspicious patterns, operational impact, and likely root cause.
PenTest and vulnerability workflow
Convert findings into tracked remediation work with severity, owner, dependencies, business impact, and closure status.
RBAC and control validation
Review access against control requirements, identify unauthorized exposure, and support permission cleanup through RBAC and provisioning concepts.
Technical-to-business translation
Explain security issues in practical terms so engineering, risk, and business teams can prioritize remediation without losing technical detail.
Case Files
Selected technical work.
Built ADO backlog flow for online/mobile security findings; tracked risk, owner, dependency, severity, and remediation status.
- Partnered with Security SMEs to convert PenTest concerns into actionable remediation backlog items.
- Tracked impacted platform area, severity, ownership, technical dependency, business priority, and status.
- Supported prioritization of critical and high-risk findings across online, mobile, and One-View scope.
Correlated ServiceNow incidents, Splunk logs, AppInsights telemetry, and Adobe Analytics to isolate patterns and anomalies.
- Used ticket history, log data, telemetry, and member-facing analytics to investigate production behavior.
- Looked for repeat patterns, anomalous events, and severity indicators to support root-cause analysis.
- Translated findings into concise updates for technical and business stakeholders.
Reviewed Google/Apple portal access against control requirements; reduced unauthorized access exposure with RBAC and SCIM concepts.
- Reviewed portal users and permissions against compliance and control expectations.
- Identified unauthorized access cases and helped drive cleanup through role-based access controls.
- Introduced SCIM provisioning concepts to reduce manual permission drift for future hires.
Used static/dynamic analysis and packet inspection to identify suspicious behavior, API calls, scanning, and persistence patterns.
- Performed static and dynamic malware analysis using graduate security lab tooling.
- Reviewed process behavior, network activity, Win32 API calls, and persistence indicators.
- Captured and inspected traffic to identify scanning behavior, OS fingerprinting, and suspicious packets.
Background
Where the work comes from.
Digital Engineer I - PenTest and Vulnerability Remediation
Owns security remediation coordination, PenTest preparation, risk prioritization, ADO backlog management, API dependency knowledge, and cross-functional execution with Security, Risk, Digital, and ETS SMEs.
Business Systems Analyst II
Supported Agile delivery, production issue triage, digital risk assessment work, internal audit remediation, RBAC implementation, release coordination, and analysis using operational and log data.
Business Systems Analyst I
Investigated Omnichannel production issues, administered platform permissions, documented procedures, trained teammates, and troubleshot with Splunk, WinSQL, SOAPUI, AppInsights, and ServiceNow.
Information Technology Intern
Managed onboarding and offboarding processes, reviewed activity and ticket logs, supported releases, wrote procedures, and collaborated with QA and Desktop Support.
Education and Certifications
- M.S. Information Security and Assurance
- Graduate work: intrusion detection, digital forensics, malware analysis, security audit and compliance testing, federal security policy, networks, and firewalls
- Certifications: CompTIA CySA+, CompTIA Security+
Tools and Frameworks