Skip to content
View GauravGhandat-23's full-sized avatar
🎯
Focusing
🎯
Focusing

Block or report GauravGhandat-23

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
GauravGhandat-23/README.md

Hi πŸ‘‹, I'm Gaurav Uttam Ghandat

SOC Analyst | Splunk SIEM | Blue Team | Windows Server | Active Directory | Linux Administration

Focus Splunk Location


πŸ”Ž About Me

  • πŸ›‘οΈ SOC Analyst & System Administrator with hands-on experience in Security Monitoring, SIEM, Threat Detection, and Incident Response
  • πŸ’Ό Currently working as System Administrator at Bits & Bytes Services Pvt. Ltd, Nashik, India
  • 🧠 Strong understanding of MITRE ATT&CK, OWASP Top 10, Cyber Kill Chain, and Blue Team operations
  • πŸ–₯️ Experienced in administering Windows Server, Active Directory, Linux, and enterprise networks
  • πŸš€ Passionate about strengthening enterprise security through proactive monitoring, automation, and incident response
  • πŸŽ“ B.E. in Computer Engineering, Brahma Valley College of Engineering, Nashik (2022 – 2025)

πŸ› οΈ Technical Skills

SIEM & Security Monitoring Splunk Enterprise SPL Queries Dashboards Alerting Event Correlation Log Analysis

SOC Operations Alert Triage Incident Response Threat Detection IOC Analysis Security Monitoring MITRE ATT&CK

Windows Administration Windows Server 2012/2016/2019/2022/2025 Active Directory Group Policy DNS DHCP Hyper-V PDC/CDC/RODC

Linux Administration Ubuntu RHEL Rocky Linux Shell Scripting SSH System Hardening Kali Linux YUM Server

Networking TCP/IP VPN LAN/WAN Routing Firewall Wi-Fi Troubleshooting

Security Tools Splunk Wireshark Burp Suite Metasploit Nmap

Programming Python PowerShell SQL Bash

Concepts OWASP Top 10 ITIL Cyber Kill Chain Incident Response Vulnerability Assessment


πŸ’Ό Professional Experience

System Administrator β€” Bits & Bytes Services Pvt. Ltd | 06/2025 – Present | Nashik, India

  • Managed Windows Server and Linux infrastructure for enterprise clients
  • Administered Active Directory, Group Policy, DNS, DHCP, and user access
  • Delivered SLA-driven L1/L2 technical support and infrastructure troubleshooting
  • Monitored LAN/WAN, VPN, and enterprise networks
  • Implemented system hardening, patch management, backup, and access control
  • Supported server deployment, virtualization, storage, and data center operations
  • Followed ITIL-based incident management procedures to resolve technical issues efficiently

πŸ“Œ Featured Projects

πŸ”Ή Enterprise Log Analysis & Threat Detection using Splunk

Tools: Splunk Enterprise, Zeek, Linux SSH Logs, Apache Logs, AWS GuardDuty

  • Centralized DNS, HTTP, SSH, Apache, and cloud logs
  • Developed SPL queries to detect brute-force attacks, DNS tunneling, malware beaconing, and web exploitation
  • Built real-time alert rules for incident response
  • Correlated multi-source logs to identify advanced attack patterns
  • Improved SOC visibility through centralized log monitoring

πŸ”Ή SOC Monitoring Dashboard using Splunk

Tools: Splunk Enterprise, SPL

  • Designed enterprise SOC dashboards
  • Visualized authentication anomalies, attack trends, firewall events, and web traffic
  • Built dashboards for brute-force detection and security monitoring
  • Improved analyst visibility through actionable security insights

πŸ“œ Certifications

  • Certified Red Team Analyst (CRTA)
  • Oracle Cloud Infrastructure 2025 Certified Architect Associate
  • Google Professional Cybersecurity Certificate
  • Cisco Introduction to Cybersecurity
  • Security Blue Team – Network Analysis
  • arcX Threat Intelligence Analyst
  • Reliance Foundation Cyber Security Associate
  • Netleap IT Training and Solutions Pvt Ltd β€” CCNA, MCSA, RHCSA, RHCE, Cyber Security, PEH, EH
  • Tech Mahindra Cyber Security Program
  • Edureka Linux Fundamentals

πŸŽ“ Education

Bachelor of Engineering (B.E.) – Computer Engineering Brahma Valley College of Engineering, Nashik | 06/2022 – 05/2025 | CGPA: 7.66/10


πŸ“« Connect with Me

πŸ” "Securing systems, one log at a time."

Pinned Loading

  1. AI-Powered-Phishing-And-Fraud-Detection-System AI-Powered-Phishing-And-Fraud-Detection-System Public

    An AI-powered threat detection console that classifies emails as phishing or safe, and layers on a rule-based fraud risk score for social-engineering patterns.

    Python 12 3

  2. Advanced-Threat-Intelligence-Platform Advanced-Threat-Intelligence-Platform Public

    The Advanced Threat Intelligence Platform is an all-in-one solution designed to analyze, classify, and visualize cybersecurity threats in real-time. By leveraging machine learning models and live t…

    Python 1

  3. AI-Powered-Malware-Traffic-Analysis-Dashboard AI-Powered-Malware-Traffic-Analysis-Dashboard Public

    AI-powered dashboard for analyzing network traffic and detecting malware. Upload PCAP or CSV files, train a machine learning model (Random Forest, Logistic Regression, or SVM), and visualize classi…

    Python 2

  4. AI-Powered-Secure-Coding-Practices-Analyzer AI-Powered-Secure-Coding-Practices-Analyzer Public

    The AI-Powered Secure Coding Practices Analyzer is a tool designed to help developers identify and resolve common vulnerabilities in their source code. By leveraging language-specific detection rul…

    Python 1

  5. AI-Powered-Threat-Hunting-and-Vulnerability-Assessment-Dashboard AI-Powered-Threat-Hunting-and-Vulnerability-Assessment-Dashboard Public

    AI-Powered Threat Hunting and Vulnerability Assessment Dashboard: This app provides real-time threat detection, vulnerability scanning, and log analysis. It uses machine learning for anomaly detect…

    Python 1

  6. SPPU-BE-COMPUTER-LAB-CODE-SEM-8 SPPU-BE-COMPUTER-LAB-CODE-SEM-8 Public

    This repository contains Python-based implementations of lab exercises for two subjects: High Performance Computing (HPC) , Deep Learning (DL) , Software Defined Networks (SDN) , Business Intellige…

    Jupyter Notebook 2