*By: Oresti Meta*

Welcome to my DFIR SOC Analyst project. This project is designed to help aspiring SOC Analysts gain hands-on practical experience.

Starting by creating the diagrams that are going to be practiced in this project.

Cybersecurity Monitoring and Response Network Architecture

Cybersecurity Monitoring and Response Network Architecture

Attack Diagram

Attack Diagram

Vultr Virtual Private Cloud (VPC)

Vultr Virtual Private Cloud (VPC)

The diagrams above represent the infrastructure deployed within a Vultr Virtual Private Cloud (VPC) for monitoring, logging, and incident response activities in a simulated security operations environment.


Components:

Elastic & Kibana Server:

Successfully  logged in Elastic

Successfully logged in Elastic


osTicket Server:

osTicket Dashboard

osTicket Dashboard


Fleet Server:

Managed Windows Server:

Managed Kali Server:

C2 Server (Mythic):

Mythic Agent

Mythic Agent


Attacker Laptop (Kali Linux):

SOC Analyst: