Skip to content
View miholmestech's full-sized avatar

Block or report miholmestech

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
miholmestech/README.md

πŸ‘‹ Hi, I'm Michelle Holmes | SOC Analyst

Teaneck, NJ |LinkedIn

Blue Team Training | Linux Fundamentals

Hands-on SOC analyst developing detection and investigation skills through a multi-host SIEM lab and real-world attack simulations.

CompTIA Certified
Network+ Security+
CySA+

πŸ”₯ Current Focus

  • SOC investigations in my multi-host Wazuh SIEM lab
  • Detection engineering & alert analysis
  • Writing structured analyst investigation reports
  • Linux fundamentals & command-line security workflows

πŸ§ͺ Multi-Host SOC Detection Lab

πŸ–₯️ Multi-Host Lab Architecture

This lab simulates a small monitored enterprise network with centralized telemetry collection and attacker simulation.

Environment

  • Wazuh SIEM Server (Ubuntu)

    • Log collection
    • Alert generation
    • Security monitoring dashboard
  • Windows 10 Endpoint

    • Sysmon telemetry
    • Wazuh agent installed
    • RDP activity monitoring
  • Linux Endpoint (Ubuntu)

    • SSH activity generation
    • Wazuh agent installed
    • Clean log source for detection exercises
  • Kali Linux Attacker Machine

    • SSH brute-force simulations
    • RDP attack testing
    • Adversary activity generation

Telemetry Flow

Endpoints send security telemetry to the Wazuh SIEM, where alerts are generated and investigations are performed.

πŸ“‚ SOC Analyst Projects

​

πŸš€ Featured Projects

Linux Journey

Linux command-line fundamentals, security tooling, and practical demonstrations while studying Linux Basics for Hackers.

πŸ‘©πŸΏβ€πŸ’»
SOC Analyst | Blue Team Focus

Popular repositories Loading

  1. linux-journey- linux-journey- Public

    Hands-on practice with Linux.

    1

  2. miholmestech miholmestech Public

    Hands-on SOC analyst building detection and investigation skills through a multi-host SIEM lab and real-world attack simulations.

  3. SOC-Analyst-Projects- SOC-Analyst-Projects- Public

    Hands-on projects showing endpoint detection, threat investigation, and SOC workflows using Sysmon, and MITRE ATT&CK mapping.

  4. soc-detection-lab soc-detection-lab Public

    SIEM-based SOC lab with real investigations, telemetry, and detection use cases across Windows & Linux