Skip to content
Poshan Bhandari

Cybersecurity Analyst / Threat Detection / Incident Response

I find the threats
before they become
business problems.

Cybersecurity Analyst specializing in threat detection, vulnerability management, incident response, and security operations.

5+ YEARS EXPERIENCETHREAT DETECTIONVULNERABILITY MANAGEMENTINCIDENT RESPONSE

Detection Engineering · Vulnerability Management · Incident Response · Threat Hunting

Live Security Telemetry
Demo Environment
Signal
Detection
Investigation
Response
Scroll to Explore ↓
01 / About

Security is not just about finding vulnerabilities.

It's about understanding what matters, detecting what others miss, responding decisively, and continuously reducing risk.

I'm a Cybersecurity Analyst with 5+ years of experience across threat detection, vulnerability management, incident response, and threat hunting. My work spans SIEM and EDR platforms, the Microsoft security ecosystem, and building automation that removes manual toil from day-to-day security operations.

I care about signal over noise: prioritizing real risk over raw vulnerability counts, and building detection logic that keeps working as attacker behavior changes.

02 / ImpactMeasurable Impact

Outcomes, not activity.

Vulnerability management work is only valuable if it reduces real exposure. Here is what structured remediation and validation produced.

0%Critical Vulnerability Reduction
0%High Vulnerability Reduction
0%Medium Vulnerability Reduction
0+Years in Cybersecurity

These figures represent professional work and remediation outcomes from structured vulnerability management, not marketing estimates.

03 / ExpertiseWhere I Operate

Six disciplines, one continuous loop.

01

Threat Detection

SIEM, EDR, behavioral analysis, alert triage and detection engineering.

02

Vulnerability Management

Tenable, CVSS, EPSS, CISA KEV, asset criticality and remediation.

03

Incident Response

Investigation, containment, eradication, recovery and lessons learned.

04

Threat Hunting

Proactive investigation using endpoint, identity and network telemetry.

05

Security Automation

PowerShell and Python automation for security operations.

06

Security Operations

Monitoring, correlation, investigation and continuous improvement.

04 / StackTechnology Ecosystem

The platforms behind the work.

SIEM
Microsoft SentinelSplunkWazuhELK
EDR
Microsoft Defender for Endpoint
Vulnerability
TenableCVSSEPSSCISA KEV
Cloud / Identity
AzureAzure ADIntuneActive Directory
Languages
PowerShellPythonBashKQL
Security Tools
NmapBurp SuiteMetasploit

Have a security problem worth solving?

I'm always interested in cybersecurity conversations and opportunities to help reduce real-world risk.