Enterprise Microsoft Purview Audit implementation — unified audit log search, security investigation, insider threat detection, and compliance reporting across Microsoft 365.
-
Updated
Jul 18, 2026 - PowerShell
Enterprise Microsoft Purview Audit implementation — unified audit log search, security investigation, insider threat detection, and compliance reporting across Microsoft 365.
Windows security investigation analyzing failed authentication attempts using Event Viewer and Event ID 4625.
Hands-on SOC investigations covering network traffic analysis, Windows attack detection, brute-force investigations, IOC analysis, MITRE ATT&CK mapping, and incident reporting.
This repository serves as a technical reference for my candidacy as a SOC Analyst and a place for learners to cross-reference process, design, and material.
Manual + AI-assisted security incident investigation using log analysis and structured reasoning.
Help Desk troubleshooting and SOC escalation lab focused on account checks, authentication logs and suspicious login investigation.
AI-Powered Security Operations Center
A beginner-friendly SQL portfolio project demonstrating how to use data filtering (AND, OR, NOT, LIKE) to investigate simulated security incidents and track unauthorized login attempts.
This project is a personal SOC home lab built to explore how security teams detect, investigate, and respond to threats.
To associate your repository with the security-investigation topic, visit your repo's landing page and select "manage topics."