Summary
Overview
Work History
Education
Skills
Certification
Timeline

Nikhil Karbhari Khairnar

Cyber Security
Mumbai

Summary

Experienced cybersecurity professional specializing in ArcSight SIEM and XDR technologies with a strong focus on device integration and security operations. Skilled in integrating a wide variety of network devices, endpoints, and security solutions into ArcSight SIEM platforms to ensure effective threat detection, monitoring, and response. Proficient in developing custom connectors, parsers, and integration scripts to streamline data flow and enhance system performance. Expertise in leveraging XDR capabilities for advanced threat hunting, incident detection, and automated response, ensuring comprehensive visibility across the security landscape. Adept at troubleshooting, fine-tuning, and optimizing security platforms for maximum operational efficiency. Strong communication skills and a collaborative team player, delivering integrated, scalable, and resilient security solutions to safeguard organizational assets.

Overview

10
10
years of professional experience
2
2
Certifications

Work History

SOC Infra Manager

SEQURETEK Pvt. Ltd.
06.2024 - Current
  • Managed and motivated employees to be productive and engaged in work.
  • Accomplished multiple tasks within established timeframes.
  • Maximized performance by monitoring daily activities and mentoring team members.
  • Enhanced customer satisfaction by resolving disputes promptly, maintaining open lines of communication, and ensuring high-quality service delivery.
  • Device Integration & Network Security.
  • Firewall & Network Management.
  • Troubleshooting & Incident Management.
  • Team Management & Leadership.
  • Network Monitoring & Optimization.
  • Documentation & Reporting.
  • Collaboration with External Vendors.

Consultant

SEQURETEK Pvt. Ltd.
11.2021 - 06.2024

Coordinating and conducting event collection, log management, event management, compliance automation and identity monitoring activities using the SIEM different components. Develop, Implement, and execute standard procedures for the administration, content management, version/patch management, and lifecycle of the SIEM platforms. Creation of technically detailed report on the status of the SIEM to include metrics on items such as number of logging sources, log collection rate, and server performance. Cloud products (Azure, GCP, AWS) view for integration with API using different techniques, baseline document preparation based on the essential log ingestion. Recommended security strategies based on real time threats. Act as the point of escalation for the others (SIEM engineers, Senior Engineer) and provide guidance and mentoring.

NETWORK SECURITY ENGINEER

SOFTCELL TECHNOLOGIES GLOBAL PVT. LTD.
04.2021 - 11.2021
  • Maintaining and Configuring Cloudflare (CDN)
  • Responsible for supporting and optimizing a complex, high performance network, across the Data Centre
  • Implementing Access Control Polices, VPN and Blocking malicious IP / URL's
  • Maintain and Configuration of FortiGate , Cisco ASA, Cisco FTD Firewalls
  • VAPT scanning of security devices and websites
  • Troubleshooting various issues related to firewall,Cloud-flare
  • Addition of multiple DNS records, Firewall Rules, WAF Rules, DDOS protection, Certificate management, URL redirection etc
  • On Cloudflare (CDN)
  • Taking Backups of Perimeter Devices
  • Upgradation and installation of Firewalls
  • Monitoring Logs of IPS, APS and Firewalls
  • Deploy, maintenance and troubleshooting IPsec connectivity with other clients
  • Deploying and providing support of Firewall's, Security Solutions to Client Network

Security Engineer

ORIENT TECHNOLOGIES PVT. LTD.
09.2020 - 04.2021
  • Working in the Maharashtra State Data Center from where all the Maharashtra government Websites are running Need to make the websites accessible from the all over internet once available from application team
  • Require to create the firewall policy to make the website accessible from the internet/intranet, need to create the policies for web to database Server communication
  • Working on Fortigate 1500D, ASA 5500 firewall, Fortianalyzer
  • Analyze and provide the solution on customer requirement, check the feasibility of requirement, check the port vulnerability, find the risk factor
  • Provide the SSL or client based SSL VPN
  • Logging the incident, creating change order using CA tool, updating the same to same on time to follow the SLA
  • Troubleshooting of VPNs
  • VPN user creation and database maintenance

Network Engineer

ORIENT TECHNOLOGIES PVT. LTD.
04.2019 - 09.2020
  • Working as Network Engineer in Network operation team at MSEDCL Data Center
  • Working on Network Devices like Routers, Switches
  • Configuring network devices like Routers and switches
  • Proactively monitoring of cisco security Device like cisco IPS
  • Assist in daily operations and working on Trouble Tickets
  • To assist in setting up of network and wireless devices and installation
  • Configure the devices as per OEM's best practices and customer requirements
  • Troubleshooting on faults and alarm occurred
  • Troubleshooting of V PNs
  • VPN user creation and database maintenance
  • Remote Location faulty Network device escalation and configuration
  • Troubleshooting with FE for remote locations
  • Handling integration related issues due to Reliance, Airtel, Vodafone links
  • Performed Network Security Assessment and implemented security features such as network filtering, SSH, access lists, VTY
  • Creation of knowledge articles documents on closing major/ critical / recurring incidents or creating process specific documents to drive process improvement
  • Coordinate with third party vendors to troubleshoot the issue

NETWORK ENGINEER

PACE BUSINESS MACHINES PVT. LTD.
09.2016 - 04.2019
  • Configure network devices like Routers and switches
  • Worked on VLAN, Trunk Links
  • Troubleshoote on faults and alarm occurred
  • Troubleshoote of VPNs
  • VPN user creation and database maintenance
  • Proactively monitor cisco security Device like cisco IPS
  • Remote Location faulty Network device escalation and configuration
  • ETroubleshootr with FE for remote locations
  • Performed Network Security Assessment and implemented security features such as network filtering, SSH, access lists, VTY
  • Worked on Cisco Catalyst 6500, 4500, Cisco 7600, 7200, 2800
  • Perform timely and accurate diagnostics, ensuring fault clearance wherever possible
  • Coordinate with ISP & Escalating Link Down issues
  • Handled integration related issues due to Reliance, Airtel, Vodafone links
  • Did integration for remote sites As per Customer Requirement
  • Respond to user requests and providing network details
  • Proactively monitor customer network to identify fault occurrences
  • Acknowledge, check, and respond to customer fault report
  • Ensure accurate ticket detail entry and updates for all fault reports
  • Troubleshooting Various network issues like Device down, interface down high memory utilization, packetloss, Temperature event etc
  • Generate Total link daily alarm report
  • Report Generation for CPU utilization, Bandwidth utilization of devices
  • Remote location device monitoring
  • Remote location Link monitoring
  • HP SM Ticket closing
  • HP NNMI Monitoring

NETWORK SUPPORT ENGINEER

F1 COMPUTER SERVICES
05.2015 - 09.2016
  • Company Overview: NASHIK
  • Configure Routers and Switches in accordance to the requirement of the project
  • Setting up and managing LAN and WAN to maintain maximum network uptime
  • Network Troubleshooting, I/O Termination, Rack Management, Diagnosis Network Problem, Switch to Switch Uplink and Media-Fibers Connectivity and Troubleshooting
  • Troubleshoot various network issues like device down, Interface down, High Memory/CPU/BW utilization, temperature events and packet loss etc
  • Mail Server users Password & new ID Creation & Management
  • Replacing Routers and Switches
  • Worked on various Routers 1841, 2921, 4500 and Working on various Switches - 2950, 2960, and 6500 series switches
  • Managing and monitoring a network of 400 Switches throughout Company
  • Managing and monitoring the BSNL leased lines
  • Logging call in BSNL and Reliance for any major area breakdowns
  • Monitoring and troubleshooting connectivity on area offices
  • Delivering proactive monitoring and preventive maintenance for all locations
  • Collecting switch details
  • Enabling switch ports for end users to establish connectivity with their project network
  • Generating monthly report on user end issues
  • Planning & scheduling the network and service down time for various upgrades and Maintenance
  • NASHIK

Education

Matoshri College of Engineering., Pune
04.2001 -

Skills

XDR

Certification

CCNA

Timeline

SOC Infra Manager - SEQURETEK Pvt. Ltd.
06.2024 - Current
Consultant - SEQURETEK Pvt. Ltd.
11.2021 - 06.2024
NETWORK SECURITY ENGINEER - SOFTCELL TECHNOLOGIES GLOBAL PVT. LTD.
04.2021 - 11.2021
Security Engineer - ORIENT TECHNOLOGIES PVT. LTD.
09.2020 - 04.2021
Network Engineer - ORIENT TECHNOLOGIES PVT. LTD.
04.2019 - 09.2020
NETWORK ENGINEER - PACE BUSINESS MACHINES PVT. LTD.
09.2016 - 04.2019
NETWORK SUPPORT ENGINEER - F1 COMPUTER SERVICES
05.2015 - 09.2016
Matoshri College of Engineering. - ,
04.2001 -
Nikhil Karbhari KhairnarCyber Security