Skip to content
View Grishank's full-sized avatar

Block or report Grishank

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Grishank/README.md

πŸ‘‹ Hey, I'm Grishank Dubey

πŸ›‘οΈ SOC Analyst (Level 1) Candidate | ISC2 Certified in Cybersecurity (CC) | Blue Team | AI Security Learner

πŸ” Building practical cybersecurity skills through hands-on SOC investigations, security labs, TryHackMe learning paths, and technical documentation.

🌐 Portfolio: GRISHANK.SEC β€” SOC Analyst Portfolio


🧭 About Me

  • πŸ›‘οΈ Building practical SOC Analyst / Blue Team skills
  • πŸ”Ž Hands-on practice with log analysis, threat detection, authentication investigation, and network traffic analysis
  • πŸͺŸ Working with Windows Security Logs, Sysmon, Event Viewer, PowerShell, and Windows telemetry
  • 🌐 Analyzing network traffic using Wireshark, TCP/DNS investigation, and packet analysis
  • 🧩 Mapping observed security behavior to MITRE ATT&CK
  • πŸ€– Exploring AI Security, LLM security, and emerging AI threats
  • πŸ“ Documenting investigations, technical findings, and cybersecurity learning on GitHub
  • 🎯 Targeting entry-level SOC Analyst / Security Analyst opportunities

πŸ”Ž SOC Investigation Projects

🌐 Network Traffic Threat Investigation

πŸ“ GitHub Repository

Hands-on investigation of suspicious network communication using Wireshark.

Investigation Areas

  • DNS & TCP traffic analysis
  • Suspicious TCP communication
  • TCP stream reconstruction
  • Windows command-shell activity
  • Network evidence analysis
  • MITRE ATT&CK mapping
  • SOC analyst assessment

πŸ… Completed


πŸͺŸ Windows Authentication Investigation

πŸ“ GitHub Repository

Hands-on investigation of Windows Security Event Logs inside a controlled Windows 11 virtual machine.

Investigation Areas

  • Event ID 4625 failed logons
  • Event ID 4624 successful logons
  • Repeated authentication failures
  • Authentication sequence analysis
  • Logon type analysis
  • NTLM authentication
  • Status / SubStatus analysis
  • Suspicious authentication pattern assessment

πŸ… Completed


πŸ›‘οΈ Sysmon SOC Investigation Lab

πŸ“ GitHub Repository

Hands-on Windows Sysmon investigation focused on suspicious PowerShell activity and system discovery.

Investigation Areas

  • Sysmon Event ID 1
  • PowerShell execution
  • Command-line analysis
  • whoami.exe system discovery
  • Parent-child process relationships
  • Process lineage analysis
  • MITRE ATT&CK mapping
  • SOC investigation documentation

πŸ… Completed


πŸŽ“ Cybersecurity Learning

πŸ›‘οΈ TryHackMe β€” SOC Level 1

πŸ“ SOC Level 1 Journey

Completed the TryHackMe SOC Level 1 learning path covering practical defensive-security topics including:

  • SOC fundamentals
  • Alert triage
  • Log analysis
  • Incident response
  • Threat detection
  • SIEM fundamentals
  • Digital forensics
  • Defensive security tooling
  • Windows & Linux security

πŸ… Completed


πŸ€– TryHackMe β€” AI Security

πŸ“ AI Security Journey

Completed the TryHackMe AI Security learning path covering security considerations around AI systems and workflows.

Topics include:

  • AI fundamentals
  • Large Language Models
  • Prompt security
  • AI threats
  • Prompt injection
  • AI security concepts

πŸ… Completed


πŸŽ“ TryHackMe β€” Cyber Security 101

πŸ“ Cyber Security 101 Journey

Comprehensive documentation of the TryHackMe Cyber Security 101 learning path.

Topics include:

  • Networking
  • Linux
  • Windows
  • Cryptography
  • Web security
  • Exploitation fundamentals
  • Defensive security
  • SIEM fundamentals
  • Incident response
  • Security tooling

πŸ… Completed


🧱 TryHackMe β€” Pre Security

Completed the TryHackMe Pre Security path as the foundation of my cybersecurity learning journey.

Topics included:

  • Networking fundamentals
  • Operating systems
  • Linux basics
  • Windows fundamentals
  • Security fundamentals

πŸ… Completed


πŸ† Certifications & Credentials

Professional Certification

  • πŸ›‘οΈ ISC2 β€” Certified in Cybersecurity (CC)

Learning Credentials

  • 🎯 TryHackMe β€” SOC Level 1
  • πŸ€– TryHackMe β€” AI Security
  • πŸ›‘οΈ TryHackMe β€” Cyber Security 101
  • 🧠 Google AI Professional Certificate
  • πŸ” TryHackMe β€” Pre Security

πŸ› οΈ Technical Skills

πŸ›‘οΈ Security Operations

  • SOC Operations
  • Alert Triage
  • Log Analysis
  • Threat Detection
  • Incident Investigation
  • Authentication Monitoring
  • Security Investigation
  • MITRE ATT&CK

πŸͺŸ Windows & Endpoint

  • Windows Security Event Logs
  • Windows Event Viewer
  • Sysmon
  • PowerShell
  • Process Creation Analysis
  • Parent-Child Process Analysis
  • Windows Authentication Events

🌐 Network Security

  • TCP/IP
  • DNS
  • HTTP/HTTPS
  • Network Traffic Analysis
  • Wireshark
  • Packet Analysis
  • TCP Stream Reconstruction

πŸ”§ Security Tools

  • Wireshark
  • Nmap
  • CyberChef
  • Burp Suite
  • Metasploit
  • Event Viewer
  • TryHackMe

πŸ”Ž Security Concepts

  • SIEM Fundamentals
  • EDR Fundamentals
  • SOAR Fundamentals
  • Digital Forensics Fundamentals
  • Incident Response Fundamentals
  • Threat Intelligence Fundamentals

πŸ€– AI & Security

  • Artificial Intelligence Fundamentals
  • Large Language Models (LLMs)
  • Prompt Engineering
  • AI Security
  • AI Threats
  • Prompt Injection
  • AI-assisted Security Analysis

πŸ’» Technical Background

My primary career focus is cybersecurity and SOC operations.

I also have a software-development background with exposure to:

  • Java
  • Spring Boot
  • MySQL
  • REST APIs

Python is currently being learned for future security automation and SOC tooling.


πŸ“ˆ Currently Learning

  • SOC investigation and alert triage
  • Detection Engineering
  • Threat Hunting
  • Windows security monitoring
  • Security automation with Python
  • DFIR fundamentals
  • AI Security

🧭 Career Direction

Current Goal:
🎯 Secure an entry-level SOC Analyst / Security Analyst role.

Long-Term Direction:
πŸ›‘οΈ SOC β†’ Detection Engineering / Threat Hunting β†’ Advanced Defensive Security


🌐 Connect With Me

Portfolio

Portfolio

LinkedIn

LinkedIn

TryHackMe

TryHackMe


πŸ“Œ Current Status

🟒 SOC Analyst Candidate

πŸ›‘οΈ 3 SOC Investigation Projects Completed

πŸŽ“ ISC2 Certified in Cybersecurity (CC)

πŸ“š TryHackMe SOC Level 1 Completed

πŸ€– AI Security Learning Completed

🌐 Portfolio Live


⭐ "Cybersecurity is a journey of continuous learning, investigation, and solving real-world security challenges."

Pinned Loading

  1. Advent-of-Cyber-2025 Advent-of-Cyber-2025 Public

    My complete write-ups, notes, and solutions for TryHackMe’s Advent of Cyber 2025 β€” 25 days of hands-on cybersecurity challenges covering SOC, pentesting, OSINT, forensics, web exploitation, and thr…

    2