hironow
GitHub profile for hironow86 skills
Are you hironow? Claim your skills.
hironow / auditing-tls-certificate-transparency-logs
Monitors Certificate Transparency logs to detect unauthorized certificate issuance and discover subdomains for enhanced cybersecurity.
hironow / automating-ioc-enrichment
Automates the enrichment of raw indicators of compromise using multi-source threat intelligence to enhance cybersecurity workflows.
hironow / building-cloud-siem-with-sentinel
Covers deploying Microsoft Sentinel as a cloud-native SIEM for centralized security operations and automated threat detection.
hironow / building-incident-response-dashboard
Creates real-time incident response dashboards in Splunk, Elastic, or Grafana for enhanced situational awareness during incidents.
hironow / building-incident-response-playbook
Creates structured incident response playbooks aligned with NIST standards, enhancing organizational readiness for cybersecurity incidents.
hironow / building-soc-metrics-and-kpi-tracking
Enables SOC teams to build performance metrics and KPI dashboards for enhanced operational visibility and continuous improvement.
hironow / building-threat-hunt-hypothesis-framework
Creates a systematic framework for threat hunting, transforming intelligence and data into actionable hypotheses for cybersecurity.
hironow / building-threat-intelligence-feed-integration
Automates threat intelligence feed integration for SOC teams, enhancing real-time IOC matching and alerting in security tools.
hironow / collecting-open-source-intelligence
Collects and synthesizes open-source intelligence on threat actors and malicious infrastructure using various OSINT tools.
hironow / conducting-api-security-testing
Conducts comprehensive security testing of APIs to identify vulnerabilities using OWASP guidelines and tools like Burp Suite and Postman.
hironow / configuring-suricata-for-network-monitoring
Configures Suricata IDS/IPS for real-time network monitoring and threat detection, integrating with SIEM platforms for enhanced security.
hironow / correlating-security-events-in-qradar
Enables SOC analysts to correlate security events in IBM QRadar SIEM using AQL for effective threat detection and management.
hironow / deploying-ransomware-canary-files
Deploys and monitors ransomware canary files to detect unauthorized access, providing early warnings before data encryption occurs.
hironow / detecting-beaconing-patterns-with-zeek
Analyzes Zeek conn.log data to detect command-and-control beaconing patterns using statistical methods.
hironow / detecting-bluetooth-low-energy-attacks
Analyzes Bluetooth Low Energy security attacks, enabling detection of sniffing, replay attacks, and GATT enumeration for IoT devices.
hironow / detecting-cloud-threats-with-guardduty
Teaches security teams to deploy and operationalize Amazon GuardDuty for continuous threat detection across AWS environments.
hironow / detecting-compromised-cloud-credentials
Detects compromised cloud credentials across AWS, Azure, and GCP by analyzing anomalous API activity and credential abuse indicators.
hironow / detecting-cryptomining-in-cloud
Teaches security teams to detect and respond to unauthorized cryptocurrency mining in cloud environments using AWS and Azure tools.
hironow / detecting-email-forwarding-rules-attack
Detects malicious email forwarding rules to prevent persistent access and intelligence collection in email communications.
hironow / detecting-insider-threat-behaviors
Detects insider threat behaviors by identifying unusual data access and other suspicious activities to enhance cybersecurity measures.