At Al Nafi International Academy and through independent security labs, I develop practical skills in security monitoring, SIEM, network security, and incident response.
In my SOC Home Lab, I built a multi-system environment with Wazuh Manager, Windows and Linux endpoints, and Kali Linux to centralize telemetry and monitor authentication activity.
I simulated SSH and RDP brute-force attacks, investigated the resulting alerts, and developed custom Wazuh rules for repeated authentication failures. I also configured automated IP blocking for alert-driven containment.
In my SOC investigation labs, I analyzed Windows and Linux logs, authentication events, and network activity, applying MITRE ATT&CK to structure investigations.

