Vaibhav Kamdi
Cybersecurity professional with 6.5+ years of experience across security operations, threat hunting, incident response, detection engineering, threat intelligence and malware analysis. Hands-on experience with SIEM/EDR investigations, MITRE ATT&CK mapping, Sigma/YARA detection, security automation and security research.
Senior Threat Hunter
- Performed hypothesis-driven threat hunting across SIEM, EDR and threat-intelligence telemetry.
- Investigated suspicious activity, IOCs and attacker behaviors and mapped findings to MITRE ATT&CK.
- Developed and tuned detection logic using SPL/Sigma-oriented workflows.
- Supported incident investigations, threat intelligence enrichment and detection optimization.
Senior Security Analyst
- Performed security monitoring, triage, investigation and escalation.
- Worked with SIEM platforms and detection workflows in operational SOC environments.
- Contributed to reduction of detection noise and false positives.
ThreatHunterAI
Agentic AI concept for SOC investigation and threat-hunting automation with IOC extraction, TTP mapping, SPL/Sigma generation and automated reporting.
Malware Analysis Workbench
Static and dynamic malware-analysis workflow integrating PE triage, YARA, Ghidra, capa, behavioral analysis and MITRE ATT&CK mapping.
EVTX → MITRE Mapper
Python-based Windows event analysis and MITRE ATT&CK mapping workflow for security investigations.
SIEM
AlienVault · LogRhythm · Wazuh · Log360 · Securonix
EDR
Cortex XDR · Sophos EDR
Detection Engineering
Sigma · YARA · SPL · SOC Prime
Threat Intelligence
Recorded Future · MISP
DFIR / Network
TheHive · Cortex · IRIS · Zeek · Suricata · Snort
Malware Analysis
Ghidra · capa · FLOSS · PE Tools · OllyDbg · REMnux
Development
Python · FastAPI · Flask · Docker
Frameworks
MITRE ATT&CK · NIST · MITRE CAR · MITRE Engage
ECIH — EC-Council
LRPA — LogRhythm
LRSA — LogRhythm
Security+ — Great Learning Academy
PG Diploma
IT Infrastructure System & Security
C-DAC
B.E.
Engineering · 2018