thabosakonta-wq/SOC-Analyst-Knowledge-Base
GitHub: thabosakonta-wq/SOC-Analyst-Knowledge-Base
一个持续维护的 SOC 分析师综合知识库,系统整理安全运营、威胁狩猎、检测工程、DFIR 及 Microsoft Sentinel 等领域的实战笔记与备考资料。
Stars: 0 | Forks: 0
- 暴力破解
- 权限提升
- 内部威胁
- 不可能旅行
- 可疑身份验证
## 第 8 卷 — 修订笔记
快速参考笔记涵盖:
- Windows Event ID
- Linux 命令
- MITRE ATT&CK
- 网络
- PowerShell
- Bash
- Python
- Microsoft Sentinel
- Detection Engineering
# 涵盖技能
- Security Operations
- Threat Hunting
- Detection Engineering
- Incident Response
- 数字取证
- Microsoft Sentinel
- Microsoft Defender XDR
- MITRE ATT&CK
- Windows 安全
- Linux 安全
- 网络
- SIEM
- KQL
- Bash
- Python
# 认证
- Microsoft 认证:Security Operations Analyst Associate (SC-200)
- Google Cybersecurity 专业证书
- Cybersecurity 职业基础
- Generative AI 职业基础
# 当前状态
随着我通过实践实验室、Microsoft 技术和 SOC 调查不断扩展我的网络安全知识,本仓库将持续更新。
# 作者
**Thabo Sakonta**
Microsoft 认证 Security Operations Analyst (SC-200)
LinkedIn
https://www.linkedin.com/in/thabo-sakonta-377a3748
GitHub
https://github.com/thabosakonta-wq
# 许可证
仅用于教育和作品集展示目的。
标签:AI合规, 学习资源, 安全运营, 应用安全, 扫描框架, 数字取证与应急响应, 网络安全, 逆向工具, 隐私保护