Skip to content

f23783/cybersecurity-portfolio

Folders and files

NameName
Last commit message
Last commit date

Latest commit

ย 

History

7 Commits
ย 
ย 

Repository files navigation

Arda Fidancฤฑ | Cybersecurity Portfolio

Cybersecurity Student & Blue Team Enthusiast
๐Ÿ“ Ankara, Turkey | ๐ŸŽ“ Ostim Technical University

Focused on SOC operations, detection engineering, and DFIR. This repository serves as a central hub for my projects and technical writeups.


๐Ÿš€ Featured Projects

๐Ÿ›ก๏ธ Wazuh SOC Homelab

Hybrid SIEM/EDR Deployment Connecting a local Wazuh Manager (Proxmox) to a remote VPS via Tailscale, featuring CIS hardening and Telegram alerts.

  • Goal: Monitor remote cloud assets securely from a local environment.
  • Tech: Wazuh, Tailscale, Ubuntu, UFW, Fail2ban.
  • Status: โœ… Complete (Defended against real brute-force attack)

Endpoint Detection & Response Pipeline Building a complete detection lab from scratch using Splunk, Sysmon, and Atomic Red Team.

  • Goal: Simulate attacks and write custom SPL detection rules.
  • Tech: Windows 10, Sysmon, Splunk Enterprise, Kali Linux.
  • Status: ๐Ÿšง In Progress (Telemetry setup complete)

๐Ÿ  SOC Home Lab

Enterprise-Simulated Network Environment My personal playground for network security monitoring.

  • Architecture: Segmented VLANs (User/Server), pfSense Firewall.
  • Monitoring: Zeek, Suricata, and Splunk ingestion.
  • Infrastructure: Proxmox hypervisor.

CTF Solutions & Forensic Investigations Detailed walkthroughs of HackTheBox machines and Sherlocks (Blue Team challenges).

  • Latest: PhishNet (HTB Sherlock) - Email Forensics & Malware Analysis.
  • Focus: Documenting the process and methodology, not just the flags.

๐Ÿ› ๏ธ Technical Skills

Domain Tools & Technologies
SIEM & Logging Splunk (SPL), Sysmon, Windows Event Logs
Network Security Wireshark, Zeek, Suricata, pfSense
Endpoint Security EDR Concepts, Registry Analysis, File Forensics
Virtualization Proxmox VE, VMware, Docker
Scripting Python, Bash, PowerShell

๐Ÿ“š Current Focus

  • Certification: Preparing for CompTIA Security+
  • Project: Enhancing DFIR capabilities with Velociraptor integration
  • Focus: Developing custom detection rules for LSASS credential dumping (T1003.001)

๐Ÿ”— Connect

LinkedIn HackTheBox TryHackMe

About

Central hub for my cybersecurity projects and writeups. Blue Team & SOC focused.

Topics

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

 
 
 

Contributors