Skip to content
Cyber Times

Independent threat intelligence for security leaders.

Nikhil Joe Varghese wearing a black suit outdoors

Security Engineer / Bengaluru, India

Nikhil Joe Varghese

Detection engineering, threat hunting, incident response, and security assessment.

I turn noisy telemetry into useful detections, investigate the suspicious bits, and automate whatever should not require a human at 3 AM. I am also a professional overthinker of perfectly normal log entries.

Detect Turn telemetry into signal
Hunt Follow evidence, not assumptions
Automate Let Python take the night shift
Explain Make security readable

About Cyber Times

Security intelligence made easier to act on

Cyber Times is an automated security intelligence publication built to make a crowded threat landscape easier to act on.

Each briefing gathers high-signal reporting, adds operational context, and organizes the result for security leaders, defenders, and risk teams. The goal is straightforward: make critical developments readable without stripping away the detail needed for a sound decision.

Follow the thread

The Topics index is generated from the subjects covered in each briefing, so readers can move from a current incident to related coverage across the archive.

Automation, with judgment

Automation handles collection and classification. Editorial structure and security judgment keep the output useful.

Behind the publication

The security work that shapes the writing

Detect

Detection Engineering

Builds and tunes higher-fidelity detections across Splunk, Microsoft Sentinel, Elastic, and QRadar using KQL, SPL, correlation, and threat intelligence.

Investigate

Threat Hunting & IR

Hunts across SIEM, EDR, and network telemetry, then carries incidents from triage through recovery and root-cause reporting using the NIST lifecycle.

Assess

Security Architecture

Runs STRIDE and PASTA threat models, security design reviews, vulnerability assessments, and CIS Benchmark audits for fintech and automotive systems.

Automate

Cloud & Forensics

Reviews AWS and Azure posture, investigates Windows, Linux, macOS, network, and cloud evidence, and automates repetitive analysis in Python.

Show Your Support

Useful beats loud

If this project saves you a few hours of scrolling through security news, investigating rabbit holes, or trying to figure out whether the latest “CRITICAL ZERO-DAY” headline actually matters, then it has done its job.

If you find a bug, want to talk about DFIR, threat hunting, detection engineering, or AI in cybersecurity, or just want to share an interesting attack technique, feel free to connect with me on LinkedIn or check out the projects on GitHub.

I'm always interested in building something useful, breaking something interesting, or automating something that absolutely did not need to be automated.

Probably all three.
Stay curious. Stay paranoid.

Read the briefings