Implemented and managed a SIEM solution using Microsoft Sentinel for multiple client environments, focusing on log ingestion, alert tuning, and incident response. Worked on integrating data sources like Azure AD, endpoints, and firewalls to improve threat visibility. Successfully reduced false positives and improved incident detection time by fine-tuning analytics rules and automation workflows. Also contributed to deploying Microsoft Defender solutions for endpoint and cloud security in a startup environment.