Investigations

From Splunk to Sigma: Building and Validating Vendor-Neutral Detection Logic

From Splunk to Sigma: Building and Validating Vendor-Neutral Detection Logic

A detection-engineering exercise using Sigma, Splunk, Windows telemetry, and Atomic Red Team to validate vendor-neutral detection logic

From Manual Testing to Repeatable Detection Validation with Atomic Red Team

From Manual Testing to Repeatable Detection Validation with Atomic Red Team

How to Validate PowerShell Detections in Splunk with Sysmon, Atomic Red Team, and MITRE ATT&CK

TryHackMe SOC Level 2: What Changed, and What It Says About the Future of the SOC Analyst Role

TryHackMe SOC Level 2: What Changed, and What It Says About the Future of the SOC Analyst Role

Exploring the new skills, technologies and investigative mindset behind TryHackMe's updated L2 curriculum

Beyond AI Security: Learning How to Assess AI Systems

Beyond AI Security: Learning How to Assess AI Systems

My Experience with INE’s AI Systems Security Specialist (eAIS) Learning Path

AI Security: Cybersecurity Applied to a New Attack Surface

AI Security: Cybersecurity Applied to a New Attack Surface

A reflection on completing TryHackMe’s AI Security learning path