Poshan Bhandari
Cybersecurity Analyst
Cybersecurity Analyst with 5+ years of experience across threat detection, vulnerability management, incident response, threat hunting, and security operations. Deep hands-on experience with SIEM and EDR platforms and the Microsoft security ecosystem, with a focus on structured, risk-based remediation and security automation.
Cyber Security Analyst (Vulnerability Management & SecOps Intern)
January 2026 — PresentLog(N) Pacific
- Drove a 100% reduction in critical, 90% in high, and 76% in medium vulnerabilities for the server team via Tenable scanning and PowerShell-based remediation.
- Performed internal vulnerability assessments and validated scan results using Tenable and CVSS scoring across Windows and Linux environments.
- Partnered with system owners on remediation plans and tracked findings to resolution within SLAs, reviewing false positives and exceptions.
- Executed secure configuration and compliance audits (DISA STIG) with Tenable to meet industry and regulatory standards.
- Built Microsoft Sentinel dashboards and weekly vulnerability metrics to report threats and remediation progress to stakeholders.
- Developed custom detection rules in Microsoft Defender for Endpoint to automate isolation and investigation of compromised systems.
- Performed EDR threat hunting to detect IOCs from brute-force, exfiltration, and ransomware activity; documented threat scenarios and playbooks for tabletop exercises.
- Eliminated recurring brute-force incidents by implementing inbound NSG and firewall rules to limit internet exposure.
Cyber Security Analyst
June 2024 — July 2025WinWin Labs
- Built a structured vulnerability management, monitoring, and detection program from the ground up in a startup, reducing critical vulnerabilities by 80%+ across Azure-hosted systems.
- Implemented ELK Stack and Suricata, developing brute-force and phishing detection rules with real-time alerting to reduce mean time to detect (MTTD).
Cyber Security Analyst
December 2019 — October 2023Monal Tech Pvt. Ltd.
- Conducted vulnerability assessments and penetration tests (VAPT) for diverse organizations, strengthening their overall security posture.
- Identified and reported critical vulnerabilities (including SQL injection, credential leakage, RCE, and XSS) to major institutions, preventing potential data breaches.
- Managed the vulnerability management lifecycle (scanning, patching, and risk assessment), achieving an 80% reduction in vulnerabilities.
SIEM
Microsoft Sentinel, Splunk, Wazuh, ELK
EDR
Microsoft Defender for Endpoint
Vulnerability
Tenable, CVSS, EPSS, CISA KEV
Cloud / Identity
Azure, Azure AD, Intune, Active Directory
Languages
PowerShell, Python, Bash, KQL
Security Tools
Nmap, Burp Suite, Metasploit
Certified Ethical Hacker (CEH) Practical · EC-Council
CompTIA Security+ · CompTIA
Master of Cyber Forensics and Security · Illinois Institute of Technology
Bachelor of Computer Networking and IT Security · Islington College