josue6368/portfolio

GitHub: josue6368/portfolio

Stars: 0 | Forks: 0

image
Welcome to my cybersecurity portfolio. This repository highlights hands-on projects across detection engineering, SIEM analysis, threat hunting, network security monitoring, vulnerability management, web application security, phishing simulation, and password security. Each project includes documented workflows, screenshots, findings, and analysis using industry security tools such as Splunk, Zeek, Sysmon, Wireshark, Wazuh, and Kali Linux to demonstrate practical skills across offensive security, defensive operations, and security monitoring. ## Projects
0950a17c-ceda-4257-a439-48ed23db019e

Detection Engineering: Sigma + Wazuh Lab

Developed and tested detection logic using Sigma rules and Wazuh to identify suspicious activity, validate alerts, and map detections to real-world security use cases.

6616f85e-66c8-4f3e-b574-4d4042850058

Nessus Vulnerability Management Lab

Performed vulnerability scanning with Nessus, analyzed findings, prioritized risk, and documented remediation recommendations using a vulnerability management workflow.

afe1e2e9-d963-450f-a401-ee35f7da5654

Wazuh SIEM Home Lab: Mini SOC Environment

Built a Wazuh-based mini SOC environment using Ubuntu, Windows, and Kali Linux to collect endpoint logs, analyze alerts, and map activity to MITRE ATT&CK techniques.

621445e9-02ac-409b-a180-72f37263cf48

OWASP Juice Shop Web App Pentest

Conducted a web application penetration test against OWASP Juice Shop to identify common vulnerabilities, document exploitation steps, and provide security recommendations.

14a75651-9549-4a5d-988b-c7cf81892c35

GoPhish Phishing Simulation Lab

Built a phishing simulation lab using GoPhish to create campaigns, track user interaction, analyze results, and document security awareness training outcomes.

c71c5a51-58f0-44db-9e26-c53fa4f66bbc

Password Cracking & Policy Analysis Lab

Used password auditing techniques to evaluate password strength, analyze weak password patterns, and connect cracking results to stronger password policy recommendations.

638f61b0-86c7-4878-951b-ac6ab74dd8a0

Active Directory Attack & Defense Lab

Created an Active Directory lab focused on enterprise attack paths, Windows security monitoring, credential-based attacks, and defensive detection strategies.

277278e0-0fc8-4861-9617-6252d199acda

Malware Traffic Analysis Lab

Analyzed suspicious network traffic using Wireshark and PCAP files to identify indicators of compromise, malicious communication patterns, and infected host behavior.

d0c56d23-2d62-43e3-9ce7-3b10392552b2

Sysmon + Splunk Threat Hunting Lab

Configured Sysmon and Splunk Enterprise to collect Windows telemetry, investigate suspicious activity, and build practical threat-hunting searches.

ef1f6c94-e936-479a-b75b-4dae7e00a691

Zeek + Splunk Network Threat Hunting Lab

Built a Zeek + Splunk threat hunting lab to analyze malicious network traffic and investigate suspicious DNS, HTTP, and external IP activity.

ef1f6c94-e936-479a-b75b-4dae7e00a691

More Projects Coming Soon

Additional cybersecurity labs will be added as they are completed, documented, and published.

## Skills Demonstrated * Detection engineering * SIEM deployment and alert analysis * Sigma rule creation and validation * Threat hunting with Splunk * Endpoint telemetry analysis with Sysmon * Network telemetry analysis with Zeek * Network traffic analysis with Wireshark * Vulnerability scanning and remediation planning * Web application penetration testing * Phishing simulation and security awareness * Password auditing and policy analysis * Windows event log monitoring * DNS and HTTP traffic analysis * Active Directory security concepts * MITRE ATT&CK mapping * Incident response documentation * Cybersecurity reporting and portfolio documentation ## Tools & Technologies

Wazuh Sigma Nessus Splunk Zeek Sysmon Wireshark GoPhish OWASP Kali Linux Windows Ubuntu VMware