Cybersecurity Self Study
Current- Applied investigative skills in monitoring network endpoints for malicious activities, utilizing advanced SIEM tools such as Splunk, Zeek and Brim to track and manage security incidents efficiently.- Python scripting for creating tools, automation of testing processes for running network scans, creating listeners from scratch with the sockets and requests python libraries, result exportation and data conditioning.- Built and managed powerful Linux firewalls. Created an application layer IDS/IPS with fwsnort, setup and configured pfsense, and managed firewall policy chains through iptables and ufw.- Mastered the use of command-line tools for Linux forensic analysis, utilizing key tools and techniques to trace activities and system events- Application of a Network Sniffer for the purpose of capturing network traffic to follow, recompose conversations and filter by protocol, port numbers, IP addresses or other network traffic characteristics.- Hands-on Linux experience with creating processes and schedules, monitoring OS system using terminal commands, and setting up and administering user/group accounts along with setting permissions.- Perform malware analysis on live machines and by using packet captures, including first and second stage viruses, ransomware, and Trojan Horses, for the purpose of creating rules that indicate network infection.