SOC Security Monitoring Platform
Built a Python platform simulating SOC L1 workflows, including log parsing, alert generation, and incident documentation. Automated brute-force login detection from Linux authentication logs using regex pattern matching and added modules to flag reverse-shell and privilege-escalation command patterns. Designed a modular alert-reporting system to standardize investigation and support future detection expansion.