π‘οΈ SOC Analyst (Level 1) Candidate | ISC2 Certified in Cybersecurity (CC) | Blue Team | AI Security Learner
π Building practical cybersecurity skills through hands-on SOC investigations, security labs, TryHackMe learning paths, and technical documentation.
π Portfolio: GRISHANK.SEC β SOC Analyst Portfolio
- π‘οΈ Building practical SOC Analyst / Blue Team skills
- π Hands-on practice with log analysis, threat detection, authentication investigation, and network traffic analysis
- πͺ Working with Windows Security Logs, Sysmon, Event Viewer, PowerShell, and Windows telemetry
- π Analyzing network traffic using Wireshark, TCP/DNS investigation, and packet analysis
- π§© Mapping observed security behavior to MITRE ATT&CK
- π€ Exploring AI Security, LLM security, and emerging AI threats
- π Documenting investigations, technical findings, and cybersecurity learning on GitHub
- π― Targeting entry-level SOC Analyst / Security Analyst opportunities
π GitHub Repository
Hands-on investigation of suspicious network communication using Wireshark.
- DNS & TCP traffic analysis
- Suspicious TCP communication
- TCP stream reconstruction
- Windows command-shell activity
- Network evidence analysis
- MITRE ATT&CK mapping
- SOC analyst assessment
π Completed
π GitHub Repository
Hands-on investigation of Windows Security Event Logs inside a controlled Windows 11 virtual machine.
- Event ID
4625failed logons - Event ID
4624successful logons - Repeated authentication failures
- Authentication sequence analysis
- Logon type analysis
- NTLM authentication
- Status / SubStatus analysis
- Suspicious authentication pattern assessment
π Completed
π GitHub Repository
Hands-on Windows Sysmon investigation focused on suspicious PowerShell activity and system discovery.
- Sysmon Event ID
1 - PowerShell execution
- Command-line analysis
whoami.exesystem discovery- Parent-child process relationships
- Process lineage analysis
- MITRE ATT&CK mapping
- SOC investigation documentation
π Completed
π SOC Level 1 Journey
Completed the TryHackMe SOC Level 1 learning path covering practical defensive-security topics including:
- SOC fundamentals
- Alert triage
- Log analysis
- Incident response
- Threat detection
- SIEM fundamentals
- Digital forensics
- Defensive security tooling
- Windows & Linux security
π Completed
π AI Security Journey
Completed the TryHackMe AI Security learning path covering security considerations around AI systems and workflows.
Topics include:
- AI fundamentals
- Large Language Models
- Prompt security
- AI threats
- Prompt injection
- AI security concepts
π Completed
π Cyber Security 101 Journey
Comprehensive documentation of the TryHackMe Cyber Security 101 learning path.
Topics include:
- Networking
- Linux
- Windows
- Cryptography
- Web security
- Exploitation fundamentals
- Defensive security
- SIEM fundamentals
- Incident response
- Security tooling
π Completed
Completed the TryHackMe Pre Security path as the foundation of my cybersecurity learning journey.
Topics included:
- Networking fundamentals
- Operating systems
- Linux basics
- Windows fundamentals
- Security fundamentals
π Completed
- π‘οΈ ISC2 β Certified in Cybersecurity (CC)
- π― TryHackMe β SOC Level 1
- π€ TryHackMe β AI Security
- π‘οΈ TryHackMe β Cyber Security 101
- π§ Google AI Professional Certificate
- π TryHackMe β Pre Security
- SOC Operations
- Alert Triage
- Log Analysis
- Threat Detection
- Incident Investigation
- Authentication Monitoring
- Security Investigation
- MITRE ATT&CK
- Windows Security Event Logs
- Windows Event Viewer
- Sysmon
- PowerShell
- Process Creation Analysis
- Parent-Child Process Analysis
- Windows Authentication Events
- TCP/IP
- DNS
- HTTP/HTTPS
- Network Traffic Analysis
- Wireshark
- Packet Analysis
- TCP Stream Reconstruction
- Wireshark
- Nmap
- CyberChef
- Burp Suite
- Metasploit
- Event Viewer
- TryHackMe
- SIEM Fundamentals
- EDR Fundamentals
- SOAR Fundamentals
- Digital Forensics Fundamentals
- Incident Response Fundamentals
- Threat Intelligence Fundamentals
- Artificial Intelligence Fundamentals
- Large Language Models (LLMs)
- Prompt Engineering
- AI Security
- AI Threats
- Prompt Injection
- AI-assisted Security Analysis
My primary career focus is cybersecurity and SOC operations.
I also have a software-development background with exposure to:
- Java
- Spring Boot
- MySQL
- REST APIs
Python is currently being learned for future security automation and SOC tooling.
- SOC investigation and alert triage
- Detection Engineering
- Threat Hunting
- Windows security monitoring
- Security automation with Python
- DFIR fundamentals
- AI Security
Current Goal:
π― Secure an entry-level SOC Analyst / Security Analyst role.
Long-Term Direction:
π‘οΈ SOC β Detection Engineering / Threat Hunting β Advanced Defensive Security
π’ SOC Analyst Candidate
π‘οΈ 3 SOC Investigation Projects Completed
π ISC2 Certified in Cybersecurity (CC)
π TryHackMe SOC Level 1 Completed
π€ AI Security Learning Completed
π Portfolio Live
β "Cybersecurity is a journey of continuous learning, investigation, and solving real-world security challenges."