I am an aspiring SOC Analyst (Entry-Level) with hands-on experience in log analysis, SIEM monitoring, cybersecurity, SOC, incident-response, SIEM, Linux, network incident response, and network traffic analysis. I created these projects to gain real-world SOC skills by simulating attacks, investigating security incidents, and documenting findings using industry-standard tools and frameworks.
-
Incident Detection & Response
-
Log Analysis (Linux, Windows, SIEM)
-
Network Traffic Investigation
-
SOC Playbooks & Incident Reporting
-
MITRE ATT&CK Mapping
Summary: Monitored Linux and Windows logs using Splunk SIEM to detect suspicious activities such as failed login attempts and brute-force attacks. Created alerts, dashboards, and incident reports.
Skills Demonstrated:
-
SIEM monitoring & alerting
-
Log correlation & investigation
-
Incident response documentation
MITRE ATT&CK mapping
Tools Used: Splunk, Linux, Windows Logs, MITRE ATT&CK
🔗 Project Link: https://github.com/archana6malviya/SIEM-Log-Monitoring-with-Splunk
Summary: Analyzed Linux authentication and system logs to identify SSH brute-force attempts. Investigated attacker IPs, timestamps, and actions, followed by incident reporting and SOC playbook creation.
Skills Demonstrated:
-
Linux log analysis
-
SSH brute-force detection
-
Incident reporting
-
SOC playbook creation
Tools Used: Linux, auth.log, journalctl, grep, awk
🔗 Project Link: https://github.com/archana6malviya/Linux-Security-Log-Investigation
Summary: Captured and analyzed network traffic to detect suspicious activity such as ICMP abuse, SSH traffic, and DNS anomalies. Identified potential attack patterns and documented findings.
Skills Demonstrated:
-
Network traffic analysis
-
Packet inspection
-
Threat identification
-
Incident documentation
Tools Used: Wireshark, tcpdump, Linux
🔗 Project Link: https://github.com/archana6malviya/Network-Traffic-Analysis
Summary: Simulated multiple failed authentication attempts to identify brute-force behavior. Investigated logs and correlated events to confirm malicious activity.
Skills Demonstrated:
-
Authentication log analysis
-
Brute-force detection
-
Security event investigation
Tools Used: Linux logs, grep, cut, awk
🔗 Project Link: https://github.com/archana6malviya/failed-login-analysis-lab
Summary: Analyzed ICMP “Port Unreachable” messages and DNS-related network behavior to understand misconfigurations or potential scanning activity.
Skills Demonstrated:
-
Network troubleshooting
-
ICMP & DNS analysis
-
Security investigation mindset
Tools Used: tcpdump, Wireshark, Linux
🔗 Project Link: https://github.com/archana6malviya/dns-port-unreachable-lab
-
SOC Operations & Incident Response
-
SIEM Monitoring (Splunk)
-
Linux & Windows Log Analysis
-
Network Traffic Analysis
-
SSH Brute-Force Detection
-
Alert Investigation & Triage
-
Incident Reporting & Playbooks
Documentation & GitHub Portfolio Management
GitHub: https://github.com/archana6malviya
LinkedIn: (add your LinkedIn URL here)