In my Enterprise SOC & Threat Detection Lab, I monitored security telemetry with Microsoft Sentinel, Microsoft Defender XDR, Microsoft Defender, and Splunk. I developed KQL and SPL detection queries, investigated suspicious activity, and mapped attacker techniques to MITRE ATT&CK.
I built SentinelPy, a Python-based platform for analyzing Windows Event Logs and Linux Syslog. It supports log parsing, IOC extraction, detection, event correlation, alert generation, and automated security reporting.

