An AI-powered security system designed to enhance threat detection and system protection using machine learning techniques. Developed as part of an academic minor project.
-
Updated
Jun 14, 2026 - JavaScript
An AI-powered security system designed to enhance threat detection and system protection using machine learning techniques. Developed as part of an academic minor project.
Developed a log analysis system to detect security incidents, reconstruct attack timelines, and identify malicious activity using Linux and Windows logs, demonstrating blue-team threat detection and incident response skills.
Custom SOC pipeline with ELK stack, Logstash, Sigma rules, and Kibana dashboards for threat detection.
A Security Operations Center (SOC) Home Lab showcasing endpoint telemetry collection, detection engineering, threat hunting and incident investigation using ELK Stack, Sysmon and Winlogbeat.
Practical introduction to Security Information and Event Management (SIEM) and the Elastic Stack.
AWS Cloud Security Monitoring and Alerting Lab using CloudTrail, CloudWatch Logs, Metric Filters, Alarms and SNS.
Proactive cybersecurity platform for real-time threat intelligence, incident management, automated threat analysis, alerting, and security monitoring using MISP, TheHive, Cortex, APIs, and Kibana.
Security Monitoring and Threat Detection using Wazuh SIEM
Cloud-native Security Operations Center (SOC) built on AWS with real-time threat detection and automated alerting
An advanced cybersecurity system designed to monitor network traffic and system logs in real time, detect potential threats, and provide actionable insights. The project combines machine learning–based anomaly detection with rule-based techniques to identify suspicious activities such as unauthorized access and network attacks.
Hands-on SOC home lab for security monitoring, threat detection, SIEM alerting, and incident investigation using Splunk, Windows, Ubuntu and kali linux
Hands-on Azure security portfolio demonstrating practical cloud security skills across identity protection, network security, security monitoring, threat detection, and incident response. This repository documents real-world security configurations, investigations, and defensive security practices using Microsoft security technologies.
Defensive ransomware detection and security monitoring platform with filesystem monitoring, threat scoring, incident response, file scanning, and a FastAPI dashboard.
Implemented AWS GuardDuty for threat detection, investigated critical IAM credential compromise findings, and documented incident response procedures.
Automated OSINT aggregation pipeline — pulls RSS, Reddit & Telegram, filters via rule-based relevance logic, delivers deduplicated intel digests
Hands-on Linux security labs covering system reconnaissance, access control, SSH hardening, network security, monitoring, and incident detection & response.
To associate your repository with the securitymonitoring topic, visit your repo's landing page and select "manage topics."