Anubhav Gain#

Security Software Engineer · XDR/OXDR Architect · Rust & eBPF Specialist

Security software engineer and entrepreneur building production-grade security infrastructure at the intersection of systems programming, kernel engineering, and cloud-native architecture. Based in Ahmedabad, Gujarat, India.

Currently: Security Software Engineer at Infopercept Consulting (Invinsense XDR/OXDR platform) and CEO & Founder at TechAnv Consulting. 222+ academic research citations.


Experience#

Security Software Engineer — Infopercept Consulting#

Ahmedabad, Gujarat · July 2024 – Present

Core platform engineer on the Invinsense XDR/OXDR enterprise security platform:

  • Single-tenant and multi-tenant XDR deployment architecture
  • Custom OpenSearch Dashboard plugins for threat visualization
  • Cross-platform Rust agents for telemetry collection and detection
  • DevSecOps pipelines with automated security testing and shift-left enforcement
  • Container orchestration with Docker and Kubernetes
  • SIEM rule authoring, ML anomaly detection, OCSF schema integration

CEO & Founder — TechAnv Consulting#

Vadodara, Gujarat · December 2022 – Present

Enterprise security consulting — XDR/OXDR architecture, Windows kernel driver development, Kubernetes platform engineering, cloud security (AWS, Azure), and zero-trust network design.

techanv.com · contact@techanv.com

DevSecOps Engineer — Atcults#

November 2023 – Present

Automated security testing pipelines, Terraform IaC, security monitoring and incident response automation, Kubernetes containerization and hardening.

IT Specialist — Parul University#

November 2022 – October 2023

Palo Alto Networks firewall management, Red Hat Linux and Windows Server administration, AWS infrastructure, Microsoft Endpoint Configuration Manager.


Core Projects#

Brief summaries — full details on the projects page.

ProjectStackDescription
LeviathanRust · Ring 0 · KMDFWindows kernel EDR/XDR framework — zero unsafe blocks, 5 kernel callbacks, MITRE ATT&CK mapping, ELAM support
KrustronGo · K8s · GitOpsOpen-source Kubernetes platform — unified multi-cluster management, CI/CD, observability, RBAC
AgniGo · Bubble Tea · KVMFirecracker microVM terminal UI — launch, configure, inspect, teardown without CLI flags
opensearch-rust-sdkRust · AsyncHigh-performance OpenSearch Extensions SDK — async-first, strongly-typed, no JVM
ebpf-file-monitorRust · eBPFFile monitoring via inotify API and eBPF with timestamped audit logs

Technical Stack#

Systems Programming

  • Rust (primary — safe systems, no-std, kernel-mode with windows-drivers-rs)
  • Go (TUI, Kubernetes operators, REST APIs)
  • C/C++, Python, Bash, PowerShell

Security Engineering

  • Windows kernel (Ring 0, KMDF, SSDT/IDT/MSR, 5 kernel callbacks)
  • EDR/XDR platform development
  • eBPF (Linux observability and security)
  • MITRE ATT&CK, OCSF, Wazuh SIEM, YARA

Platform & Infrastructure

  • Kubernetes (multi-cluster, RBAC, GitOps), Terraform, Ansible, Docker
  • AWS (EC2, S3, IAM, CloudWatch), Azure, Palo Alto Networks

Data & Observability

  • OpenSearch (Extensions API, custom analyzers, ingest processors)
  • Elasticsearch, distributed tracing, metrics pipelines

Education#

Degree / CertificationInstitutionYear
B.Tech Cyber/Computer Forensics and CounterterrorismParul University2021–2025
Licentiate Cybersecurity Management (93/100 — High Distinction)Charles Sturt University2023
Licentiate Ransomware TechniquesCharles Sturt University2023
C3SA Premium Edition2024
IBM Cybersecurity Analyst Professional CertificateIBM2023
AWS Educate — Getting Started with SecurityAWS2023
Open Source Software Development, Linux and Git Specialization2023
Harvard CS50Harvard
Cisco Networking Basics & Introduction to CybersecurityCisco

Industry Engagements#

OrganizationEngagementFocus
JPMorgan Chase & Co.Data Analyst — Fraud DetectionFinancial payment fraud analysis, prevention strategy
PwCCybersecurityPhishing simulation, integrated information defense
AIGZero-day ResponseRansomware bypass techniques and mitigation
Clifford ChanceICO Regulatory ComplianceData leak damages claims, regulatory framework

Research#

222+ citations on Google Scholar — EEG-based emotion recognition (LSTM networks), cybersecurity automation, kernel security, and defense mechanisms.

Google Scholar Profile


Online#


Building robust, scalable defenses — one line of Rust at a time.