SOC Analyst Write-Ups for LetsDefend Certification. Detailed incident analysis, investigation steps, logs review, and blue team methodology.
-
Updated
Jul 4, 2026
SOC Analyst Write-Ups for LetsDefend Certification. Detailed incident analysis, investigation steps, logs review, and blue team methodology.
Field guide for SOC Level 1 analysts — tools, labs, SIEM workflows, threat intel, career path, and hands-on practice resources.
Notes personnelles du parcours SOC Analyst (LetsDefend).
Blue Team writeups covering SOC alerts, Incident Response, Threat Hunting and Malware Analysis — LetsDefend & HackTheBox. Built as part of my cybersecurity portfolio.
SOC alert walkthrough: SQL injection payload detected on an internal web server; IP reputation analysis, URL decoding, HTTP response analysis, and playbook closure. LetsDefend SOC165.
Documenting how I solved some Security labs and CTF challenges
30-day SOC Analyst and Security Engineering challenge using TryHackMe, LetsDefend, pfSense, Wazuh and a Proxmox homelab.
Home lab for SOC Analyst training. Includes detection rules, playbooks and alert analysis.
Cybersecurity portfolio with hands-on blue team, web security, and beginner pentesting projects.
Notes, writeups and labs from TryHackMe SOC Level 1, LetsDefend, and CyberDefenders
LetsDefend — Memory Analysis Challenge Write-Up
An investigator is tasked with analyzing network traffic, reviewing event logs, and identifying how the attacker is navigating through the environment. The goal is to trace the attacker's steps, determine their access point, and prevent further escalation to the Domain Controller.
A curated hub for all the labs I am doing online on leading plateforms like THM, HTB, BTLO, Let's defend and so on 💥. Also , it includes the journey to my certifications 🖺. Ulitmately , It does also include my CTFs (if i ever participate again in once 😅)
🛡️ A complete 100% free roadmap to become a SOC Analyst or Blue Team professional, featuring Linux, Networking, SIEM, Threat Hunting, Incident Response, hands-on labs, home lab projects, and curated learning resources.
LetsDefend-ToolShell-Incident-Reports
The goal is to identify the Techniques and Tactics used by the attacker so the incident response team can respond and mitigate further compromise across the network.
SOC analyst investigation and incident-response writeups in a consistent, reproducible format: hands-on Security Onion cases plus LetsDefend practice, with an issue-to-case automation workflow.
SOC analyst investigation writeups and blue team labs focused on incident response, threat detection, malware analysis, phishing investigations, SIEM workflows, and MITRE ATT&CK mapping using LetsDefend.
Walkthroughs de alertas SOC investigados na plataforma LetsDefend — Blue Team | Incident Response | Command Injection | SQL Injection | Phishing
Add a description, image, and links to the letsdefend topic page so that developers can more easily learn about it.
To associate your repository with the letsdefend topic, visit your repo's landing page and select "manage topics."