Teaneck, NJ |LinkedIn
Blue Team Training | Linux Fundamentals
Hands-on SOC analyst developing detection and investigation skills through a multi-host SIEM lab and real-world attack simulations.
- SOC investigations in my multi-host Wazuh SIEM lab
- Detection engineering & alert analysis
- Writing structured analyst investigation reports
- Linux fundamentals & command-line security workflows
π‘οΈWazuh home SOC lab (Ubuntu)
This lab simulates a small monitored enterprise network with centralized telemetry collection and attacker simulation.
-
Wazuh SIEM Server (Ubuntu)
- Log collection
- Alert generation
- Security monitoring dashboard
-
Windows 10 Endpoint
- Sysmon telemetry
- Wazuh agent installed
- RDP activity monitoring
-
Linux Endpoint (Ubuntu)
- SSH activity generation
- Wazuh agent installed
- Clean log source for detection exercises
-
Kali Linux Attacker Machine
- SSH brute-force simulations
- RDP attack testing
- Adversary activity generation
Endpoints send security telemetry to the Wazuh SIEM, where alerts are generated and investigations are performed.
β
Linux command-line fundamentals, security tooling, and practical demonstrations while studying Linux Basics for Hackers.
π©πΏβπ»
SOC Analyst | Blue Team Focus