Gautam Khillare

Solution Architect Cyber Sec Proj Mgmt || SIEM,SOC Administration & Analyst || CEH |VMDR| CySA+| SIEM&SOC || AWS & Azure | IBMQradar,Splunk,Azure sentinal,Claroty xDome IT/OT Devices |Mittre Att&ck| Defender &CrowdStrike

Pune Division, Maharashtra, India

About

Cybersecurity Professional with 7+ years of experience in handling end-to-end security operations across in-house and MSSP-based SOC environments. Proven expertise in implementing and managing a wide range of SIEM solutions, including IBM QRadar and Splunk. 🔧 Core Competencies: SIEM server installation for standalone and distributed environments Use case creation, correlation rule configuration, and fine-tuning Event monitoring, log analysis, and incident detection Handling IT security incidents, investigations, and escalations Detection of account anomalies, privilege misuse, and audit log reviews Coordinating with SOC teams for vulnerability management and threat response 🛠️ Technical Expertise: IBM QRadar | Splunk | DNIF | Sentinel | logrythm SIEM deployments and upgrades and Operations Ticketing tools and workflow systems Device integration and log ingestion Compliance reporting and security audits I take pride in delivering proactive threat detection, strong incident response capabilities, and maintaining high efficiency in security operations. I'm always open to learning new technologies and collaborating with professionals to enhance organizational security posture.

Experience

  • Senior Technical Consultant at IBM
    Jul 2025 - Present · 1 yr 1 mo

    Experienced SOC L3 Analyst specializing in advanced threat detection, Phishing Mail Analysis,incident response, and proactive threat hunting across cloud and on-prem environments. Skilled in handling complex security incidents, root cause analysis, and tuning detection rules to reduce false positives and enhance threat visibility. Proficient in multiple enterprise-grade security tools including Microsoft Defender XDR (MDE, MDI, MDO, MDC), Splunk, Carbon Black, CrowdStrike Falcon, Claroty XDome for industrial environment, Microsoft Azure Security Center, and Realiqust Gray Matter. Experienced in KQL and SPL query writing, custom rule creation, and SIEM correlation for continuous monitoring. Strong expertise in incident handling, digital forensics, threat intelligence analysis, MITRE ATT&CK mapping, and SOAR automation. Adept at scripting with PowerShell and Python, leading investigations, and improving SOC processes for faster detection and response. Microsoft Defender XDR | Splunk | Carbon Black | CrowdStrike Falcon | Microsoft Azure Security | Clarity XDome | Realiqust Gray Matter | Threat Hunting | Incident Response | KQL | SPL | MITRE ATT&CK | SOC Operations | Digital Forensics | SIEM Engineering | Threat Intelligence | Security Monitoring | Azure Sentinel | Endpoint Detection and Response (EDR)

  • Cyber Security Solutions Architect at Infosys
    Jun 2024 - Jul 2025 · 1 yr 2 mos

    Cyber Security Solution Architect, Presale, Project Management, Consultants, SIEM Architect, Planning,design, execution, MDD, HLD, LLD Preparation, Data sources Onboarding. end to end delivery of Siem Project, Soc Implementation.

  • Cyber Security Engineer (Soc Admin) at SecurView, Inc.
    Mar 2022 - Jun 2024 · 2 yrs 4 mos

    Soc Admin at SecurView with hands on experince in SIEM tools installation, Integration,IBM Qradar, Nagios,Securityhub365, application integration, log source troubleshooting & onboarding, Firewall Integration,DSM, parsing,ESxi VMware, use case manager,

  • Project Engineer at VELAN IT Solutions Pvt. Ltd.
    Mar 2020 - Dec 2021 · 1 yr 10 mos

    installation, commissioning of IT security devices, such as routers, switches for IT infrastructure and security project for various clients etc, also I have work for the implementation of Qradar siem solution for various customer,Migration of SIEM from on-prim to Cloud,device onboarding in siem for log analysis. experience in solarwind tools for device monitoring etc,

  • Project Engineer at Boon Edam Nederland B.V.
    Apr 2019 - Mar 2020 · 1 yr

    Infrastructure Security Projects.installation, commissioning of IT security devices, such as routers, switches for IT infrastructure handling their patches,CVE's etc.