Mini SOC Lab (Splunk SIEM)
- Built an end-to-end SOC simulation by generating 1,500+ JSON security events and ingesting them into Splunk for SIEM analysis.
- Created SPL detections for brute-force logins, port-scan reconnaissance, encoded PowerShell execution, and impossible-travel authentication behavior.
- Configured scheduled alerts and validated triggered-alert workflows in Splunk Search & Reporting.
- Documented findings in analyst-style incident reporting covering what happened, how detection worked, and security impact.