SOC Analyst Write-Ups for LetsDefend Certification. Detailed incident analysis, investigation steps, logs review, and blue team methodology.
-
Updated
Aug 7, 2026
SOC Analyst Write-Ups for LetsDefend Certification. Detailed incident analysis, investigation steps, logs review, and blue team methodology.
Field guide for SOC Level 1 analysts — tools, labs, SIEM workflows, threat intel, career path, and hands-on practice resources.
Complete notes, challenge walkthroughs, and 20+ alert investigations for the LetsDefend.io SOC Analyst path. This covers SIEM, phishing analysis, web attack detection, malware triage, threat intelligence and Splunk.
Complete notes, lab writeups, and challenge walkthroughs for the LetsDefend Incident Responder Path. This covers DFIR, memory forensics, Windows Event Log analysis, Active Directory attack hunting, malware triage and more!
Blue Team writeups covering SOC alerts, Incident Response, Threat Hunting and Malware Analysis — LetsDefend & HackTheBox. Built as part of my cybersecurity portfolio.
Notes personnelles du parcours SOC Analyst (LetsDefend).
30-day SOC Analyst and Security Engineering challenge using TryHackMe, LetsDefend, pfSense, Wazuh and a Proxmox homelab.
SOC alert walkthrough: SQL injection payload detected on an internal web server; IP reputation analysis, URL decoding, HTTP response analysis, and playbook closure. LetsDefend SOC165.
Documenting how I solved some Security labs and CTF challenges
Home lab for SOC Analyst training. Includes detection rules, playbooks and alert analysis.
Cybersecurity portfolio with hands-on blue team, web security, and beginner pentesting projects.
Notes, writeups and labs from TryHackMe SOC Level 1, LetsDefend, and CyberDefenders
LetsDefend — Memory Analysis Challenge Write-Up
SOC analyst investigation and incident-response writeups in a consistent, reproducible format: hands-on Security Onion cases plus LetsDefend practice, with an issue-to-case automation workflow.
LetsDefend-ToolShell-Incident-Reports
🛡️ A complete 100% free roadmap to become a SOC Analyst or Blue Team professional, featuring Linux, Networking, SIEM, Threat Hunting, Incident Response, hands-on labs, home lab projects, and curated learning resources.
The goal is to identify the Techniques and Tactics used by the attacker so the incident response team can respond and mitigate further compromise across the network.
An investigator is tasked with analyzing network traffic, reviewing event logs, and identifying how the attacker is navigating through the environment. The goal is to trace the attacker's steps, determine their access point, and prevent further escalation to the Domain Controller.
SOC analyst investigation writeups and blue team labs focused on incident response, threat detection, malware analysis, phishing investigations, SIEM workflows, and MITRE ATT&CK mapping using LetsDefend.
Add a description, image, and links to the letsdefend topic page so that developers can more easily learn about it.
To associate your repository with the letsdefend topic, visit your repo's landing page and select "manage topics."