What I've Built
I built an Enterprise SOC Lab using Wazuh to simulate a practical security monitoring environment. The lab includes Linux endpoints, attack simulations, log collection, detection rules, alert investigation, and MITRE ATT&CK mapping.
I build practical security environments to develop hands-on experience in security monitoring, SIEM, detection, incident investigation, Linux security, networking, and web application security.
My cybersecurity journey has focused on turning theoretical knowledge into practical security workflows through labs, projects, investigation, documentation, and continuous hands-on learning.
I built an Enterprise SOC Lab using Wazuh to simulate a practical security monitoring environment. The lab includes Linux endpoints, attack simulations, log collection, detection rules, alert investigation, and MITRE ATT&CK mapping.
Through my security labs and projects, I have gained hands-on experience analyzing security alerts, investigating logs, identifying suspicious activity, and documenting findings. I have also practiced web application security and penetration testing through PortSwigger and Hack The Box-style exercises.
I hold the CPT v3 certification and have completed Cisco cybersecurity training covering cybersecurity fundamentals and the Junior Cybersecurity Analyst learning path. These certifications complement the practical experience I have developed through my own security labs and projects.
My hands-on work has helped me develop a practical understanding of SIEM operations, alert analysis, incident investigation, Linux security, networking, web application security, and MITRE ATT&CK. I have focused on understanding how security events are detected, investigated, documented, and mapped to relevant techniques.
My current learning and project work is centered around practical security operations while continuing to strengthen my broader cybersecurity capabilities.
Developing practical experience in security monitoring, alert triage, event analysis, and security operations workflows.
Working with Wazuh to understand log collection, detection rules, alerts, event correlation, and investigation.
Practicing investigation of suspicious activity by analyzing logs, identifying attack patterns, documenting evidence, and mapping techniques.
Maintaining hands-on experience in web application security, vulnerability assessment, penetration testing, and security reporting.