Operator Profile// 02
Shubham Mane is a cybersecurity and AI engineer who builds automation-heavy systems that actually run in production. With 7+ years defending enterprise environments — threat hunting, detection engineering, and incident response across hybrid cloud — he now spends his off-hours building AI SaaS tools and end-to-end content & workflow automation, wiring together n8n, Python, browser automation, and modern AI APIs on self-hosted infrastructure. His work lives at the intersection of security operations and autonomous AI, with an eye on the emerging threats most people haven't noticed yet.
Deployment Log
SEP 2021 — PRESENT
Senior Information Security & Risk Analyst
Rigelsky, Inc.
- Architected an enterprise SIEM correlation framework (Splunk ES) across five data centers processing 15TB of daily logs — cut MTTR 45% and prevented an estimated $2.3M in annual incident losses.
- Primary technical escalation point for advanced persistent threats targeting Azure & AWS cloud infrastructure; led 15+ critical incident responses annually, dropping containment from 8h to 1.5h.
- Built 40+ Splunk correlation searches and high-fidelity Sentinel KQL detections mapping 15 TTPs across 2M daily events — +60% detection rate, −35% false positives.
- Ran a proactive threat-hunting program (20+ hypothesis-based hunts/quarter, MITRE ATT&CK + CrowdStrike Falcon), surfacing five adversary techniques that bypassed automated detection.
- Automated triage & containment with Python + SOAR playbooks — saving 200+ analyst-hours/month and lifting SLA adherence 40%.
JUN 2018 — AUG 2021
Information Security Engineer
Infosys Ltd.
- Deployed Network Detection & Response (NDR) sensors and integrated flow data into Sentinel for lateral-movement detection — protecting $10M of critical infrastructure.
- Hardened privileged AD / Entra ID accounts with custom alerting, cutting credential-theft exposure from 24h to 30 min.
- Integrated a Threat Intelligence Platform enriching 100% of events with IOC context; authored monthly threat-landscape reporting for executive decisions.
Capability Matrix
[01] Detection & Response
Splunk ESMicrosoft SentinelKQL / SPLCrowdStrike FalconSIEM / EDR / XDRSOAR (Phantom)MITRE ATT&CK
[02] Threat Hunting & Forensics
Hypothesis HuntingVolatilityRekallFTK ImagerMemory AnalysisIR (NIST 800-61)Threat Intel / IOC
[03] Offensive & Assessment
NmapNessusMetasploitBurp SuiteOWASP ZAPPurple Teaming
[04] Cloud & Identity
Azure (Sentinel)Azure Key VaultDefender for CloudAWSAD / Entra IDIAM & Access ControlOAuth2
[05] AI & Automation
Pythonn8n (self-hosted)PlaywrightAnthropic Claude APIClaude CodeGeminiGrokTelegram Bots
[06] Media & Infra
ffmpegedge-ttsRemotionCapCutRailwayRender (MCP)SQLPowerShell
Credentials
// Certifications
CEHCertified Ethical Hacker
AWSSolutions Architect — Associate
SEC+CompTIA Security+
// Education
M.S. Cyber SecurityDePaul University · 2021
B.E. Computer ScienceD.Y. Patil Institute of Tech · 2017