Rishabh Khandelwal -CRISC

CTO

Bengaluru, Karnataka, India12 yrs experience

Key Highlights

  • 12 years of progressive cybersecurity leadership experience
  • Expert in building high-performance SOC teams
  • Proven success in managing complex client ecosystems
Stackforce AI infers this person is a Cybersecurity expert with extensive experience in Security Operations and Managed Security Services.

Contact

Skills

Core Skills

Security OperationsManaged Security ServicesCybersecurity Incident ResponseSplunk

Other Skills

Analytical SkillsCertified in Risk and Information Systems Control (CRISC)Cross-functional Team LeadershipDLPEmail SecurityEndpoint SecurityIT Security OperationsInterpersonal SkillsManaged ServicesPayment Card Industry Data Security Standard (PCI DSS)Presentation SkillsRansomwareRed Hat Enterprise Linux (RHEL)SOCSecurity Information and Event Management (SIEM)

About

A dynamic and results-oriented cybersecurity leader with 12 years of progressive experience driving strategic security initiatives across global enterprise environments. Adept in building and leading Security Operations Centres (SOCs), with hands-on expertise in SIEM architecture, endpoint security, data loss prevention, cloud security posture management, PIM/PAM, IT governance, and risk management. Recognized for delivering scalable, enterprise-grade security solutions and spearheading end-to-end Go-To-Market strategies that align security capabilities with business objectives. Proven success in overseeing complex client ecosystems, managing critical escalations, and ensuring operational excellence across diverse security domains. Not only experienced in leading, but also in building and nurturing high-performance teams responsible for monitoring and managing Shared SOC operations for 50+ clients. Trusted by stakeholders for my ability to navigate high-pressure environments, strengthen client relationships, and consistently exceed service delivery expectations through a solutions- driven and customer-centric approach. Recognized as a trusted advisor in navigating complex threat landscapes, managing critical escalations, and ensuring operational resilience.

Experience

Stickmancyber

Head of SOC Operations

May 2024Present · 1 yr 10 mos · Bengaluru, Karnataka, India · Remote

  • Appointed as Head of SOC Operations to build and lead a high-performance shared SOC team serving clients across ANZ, UK, APAC, and the US.
  • Directed 24/7/365 SOC service delivery, including threat monitoring, vulnerability assessments, dark web monitoring, and incident response.
  • Delivered executive MSSP reports with actionable insights, KPIs, and security metrics; led regular client cadence meetings to drive transparency and trust.
  • Led critical incident response efforts (ransomware, data breaches, crypto-mining), successfully converting multiple IR cases into long-term SOC contracts.
  • Managed end-to-end SOC project lifecycles — onboarding to offboarding — converting time-bound engagements into recurring revenue models.
  • Oversaw CrowdStrike operations including licensing, policy configuration, SOAR integrations, and full customer lifecycle management.
  • Coordinated with PMO to develop Statements of Work (SOW) and led communication throughout MSSP project execution.
  • Supported SOC Engineering initiatives by managing SIEM migrations and ensuring smooth client communications for large-scale deployments.
  • Developed and implemented a robust service delivery tracking framework to ensure SLA adherence, performance consistency, and operational excellence.
Security OperationsManaged Security ServicesSecurity Operations Management

Bloomreach

SOC Manager

Jan 2024Apr 2024 · 3 mos · Bengaluru, Karnataka, India · Remote

  • Oversaw end-to-end Security Operations across four core domains: Vulnerability Management, Incident Response, Threat Intelligence, and Detection Engineering.
  • Led investigations into complex cyber threats, including high-impact attacks and financial fraud, ensuring timely and effective incident containment.
  • Directed daily SOC operations, managing workload distribution, incident response workflows, and team performance.
  • Provided technical leadership and mentorship to Security Analysts, driving skill development and operational maturity.
  • Acted as the primary liaison between Security Operations and Engineering teams to coordinate incident response and ensure streamlined communication.
  • Championed process optimization and continuous improvement initiatives to enhance the efficiency and resilience of security operations.
Cross-functional Team LeadershipEndpoint SecurityCybersecurity Incident ResponseIT Security OperationsSecurity Operations

Aspl info services

Manager - Managed Security Services

Feb 2023Jan 2024 · 11 mos · Bengaluru, Karnataka, India · On-site

  • Led the design and enhancement of ASPL’s Security Service Delivery Model to ensure operational scalability, service excellence, and alignment with client objectives.
  • Built and managed a high-performing SOC team, delivering 15+ managed security projects across diverse industries with consistent service quality and client satisfaction.
  • Established the Sec360 team from scratch, developing SOPs, KPIs, threat models, and next-gen SOC processes leveraging Google Chronicle and NetEnrich Resolution Intelligence Cloud.
  • Oversaw complex technology implementations across SIEM, EDR, DLP, Proxy, CASB, and Antivirus, ensuring seamless deployment and integration.
  • Defined project-specific SOWs and collaborated with sales and solution teams to align deployment strategies with technical and business requirements.
  • Drove GRC, audit readiness, and strategic consulting efforts to maximize product adoption, customer retention, and long-term value.
Security OperationsPayment Card Industry Data Security Standard (PCI DSS)Security Information and Event Management (SIEM)Endpoint SecurityAnalytical SkillsTechnical Service Delivery+4

Ocwen financial solutions pvt. ltd. - apac

Assistant Manager - Information Security

Jun 2021Feb 2023 · 1 yr 8 mos · Bangalore Urban, Karnataka, India · Remote

  • Designed and implemented scalable SIEM architecture, integrating diverse security tools and data sources; led use case development, log parsing, and legacy rule migration.
  • Acted as SPOC for Security Operations, managing solution architecture, product evaluations, POCs, and end-to-end deployment of enterprise security technologies.
  • Ensured endpoint, server, and cloud compliance using McAfee ePO, CrowdStrike Falcon MDR, Cisco Umbrella, and Trend Micro Cloud One – Conformity.
  • Led CyberArk PAM deployment and expansion to secure and unify privileged access across multiple domains.
  • Monitored incident trends, tool coverage, and SLA compliance through Power BI dashboards, aligning with asset inventory and operational metrics.
  • Drove strategic security investments through budgeting, ROI analysis, and alignment with organizational risk posture and IT roadmaps.
Security OperationsSecurity Information and Event Management (SIEM)Certified in Risk and Information Systems Control (CRISC)Cybersecurity Incident ResponseRansomwareEmail Security

Tata consultancy services

Cyber Security TechLead

Sep 2017Jun 2021 · 3 yrs 9 mos · Pune, Maharashtra, India · On-site

  • Built and operationalized the Security Operations Center (SOC) from scratch, defining the framework, team structure, processes, and service governance.
  • Led the development and optimization of SOC use cases for security monitoring, threat detection, malware analysis, and compliance within Splunk Enterprise Security.
  • Acted as a Cybersecurity SME, leveraging the MITRE ATT&CK framework and OSINT tools to design advanced detection logic and conduct proactive threat hunting.
  • Directed daily SOC operations, including incident triage, playbook creation (OPDs), audits, team mentoring, and upskilling aligned to individual growth paths.
  • Delivered client-facing dashboards, incident reports, and executive summaries; facilitated regular governance meetings and presented PMR reports to stakeholders.
  • Collaborated with global SOC and engineering teams to drive automation, process improvements, and ensure timely delivery of project milestones and security initiatives.
SplunkSecurity Information and Event Management (SIEM)Use Case AnalysisCertified in Risk and Information Systems Control (CRISC)Cybersecurity Incident ResponseSOC+1

Capgemini

Splunk Expert

Nov 2013Sep 2017 · 3 yrs 10 mos · Pune, Maharashtra, India · On-site

  • Configured and managed Splunk Search Head and Indexer Clusters to ensure high availability, data replication, and distributed search performance.
  • Set up and administered Deployment Server, License Master, and Forwarders (Universal & Heavy) for seamless app distribution, log onboarding, and license management.
  • Installed and configured Splunk Enterprise and Universal Forwarders across Windows and Linux environments, integrating diverse log sources into the Splunk ecosystem.
  • Developed, customized, and deployed Splunk Apps (e.g., DBConnect, Splunk App for Linux, Enterprise Security) to support operational and compliance requirements.
  • Monitored infrastructure health using system tools and Splunk consoles; resolved performance issues including slowness, bucket fix-ups, and availability concerns.
  • Designed real-time dashboards, reports, and visualizations to support security monitoring, decision-making, and operational insights.
SplunkRed Hat Enterprise Linux (RHEL)Splunk Operations

Education

Welingkar Institute of Management

PGDM — IT Project Management

Jan 2019Jan 2020

Welingkar Institute of Management

Advanced Diploma In Business Administration

Jan 2018Jan 2019

AI cloud

Bachelor of Computer Application — Computer Science

Jan 2010Jan 2013

St. Pauls sr. sec school, Ajmer

High School — Computer Commerce

Jan 1995Jan 2010

Stackforce found 100+ more professionals with Security Operations & Managed Security Services

Explore similar profiles based on matching skills and experience