Skip to content

Navigation Menu

Sign in
Appearance settings

Search code, repositories, users, issues, pull requests...

Provide feedback

We read every piece of feedback, and take your input very seriously.

Saved searches

Use saved searches to filter your results more quickly

Appearance settings
View Tam-George10's full-sized avatar
🎯
Focusing
🎯
Focusing
  • Lagos, Nigeria

Block or report Tam-George10

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Tam-George10/README.md

πŸ‘‹πŸ½ Hi, I'm Tam-George Belema

πŸ›‘οΈ Cybersecurity Analyst (Blue Team) β€’ SOC Operations β€’ Incident Response β€’ Python Automation


🧭 About Me

I am an aspiring Blue Team Cybersecurity Analyst with hands-on experience investigating security events, analyzing logs, and documenting SOC-style investigations using Splunk, Elastic Stack, Wireshark, Linux, Windows, and Python.

My passion is understanding how attackers operate and applying that knowledge to strengthen defensive security. Through practical labs and investigation-based projects, I continue building the technical skills required in modern Security Operations Centers (SOC).


πŸš€ Professional Highlights

  • πŸ›‘οΈ Blue Team Cybersecurity Analyst
  • πŸ“Š SOC Monitoring & Incident Response
  • πŸ” Threat Detection & Log Analysis
  • πŸ“ˆ Splunk & Elastic Stack Investigations
  • 🌐 Network Traffic Analysis using Wireshark
  • 🐍 Python Security Automation
  • πŸ§ͺ Malware Analysis & Threat Hunting Labs
  • πŸ“‚ Building Recruiter-Ready Investigation Case Studies
  • 🎯 Seeking an Entry-Level SOC Analyst Role

πŸ… Certifications

πŸ” CompTIA

βœ… CompTIA Security+ (SY0-701)

Issued: July 2026

Core Skills

  • Threat Management
  • Security Architecture
  • Network Security
  • Identity & Access Management
  • Incident Response
  • Security Operations
  • Risk Management
  • Cryptography

πŸ” IBM SkillsBuild

Cybersecurity Fundamentals

Issued: September 2025

Explore Emerging Technologies

Issued: September 2025


🌐 Cisco Networking Academy

Introduction to Cybersecurity

Issued: July 2025

Networking Basics

Issued: June 2025


πŸ› οΈ Udemy

Complete Ethical Hacking Bootcamp

Completed: September 2025

Focus Areas

  • Initial Access Techniques
  • Windows Exploitation Concepts
  • EternalBlue
  • Privilege Escalation
  • Malware Behaviour
  • Network Attacks
  • Password Attacks
  • Web Security
  • Post Exploitation Concepts

Understanding offensive techniques improves defensive detection, incident response, and threat investigation.


πŸ”— Certification Verification

πŸ§ͺ Udemy Certificate: View Certificate


πŸ›‘οΈ Technical Stack


πŸ§ͺ SOC Investigation Portfolio

Each repository documents a realistic investigation with:

βœ… Scenario Overview

βœ… Evidence Collection

βœ… Log Analysis

βœ… Detection Logic

βœ… Analyst Reasoning

βœ… Lessons Learned


πŸ›‘οΈ Incident Response

Repository

SOC investigations covering containment, eradication, recovery, IOC analysis, and incident documentation.


πŸ“Š SIEM Threat Investigations

Repository

Threat investigations performed using Splunk and Elastic Stack with log correlation and timeline analysis.


🧬 Malware Analysis

Repository

A collection of malware analysis case studies focused on understanding malware behavior, identifying indicators of compromise (IOCs), and documenting analyst findings.

Topics Covered

  • Static Analysis
  • Dynamic Analysis
  • Process Investigation
  • Registry Artifacts
  • Persistence Mechanisms
  • File System Analysis
  • Windows Event Logs
  • Indicators of Compromise (IOCs)
  • MITRE ATT&CK Mapping

🎯 Detection Engineering Labs

Repository

Detection-focused labs demonstrating how to identify malicious activity using logs, Sigma rules, and SIEM platforms.

Focus Areas

  • Detection Logic
  • Sigma Rules
  • Windows Event IDs
  • Log Correlation
  • Alert Tuning
  • Detection Validation
  • Threat Hunting Concepts

πŸ“¨ Phishing & Social Engineering Investigations

Repository

Investigation of phishing campaigns through email analysis, attachment examination, IOC extraction, and defensive recommendations.

Topics Covered

  • Header Analysis
  • URL Analysis
  • Attachment Analysis
  • IOC Extraction
  • Threat Intelligence Correlation
  • Email Authentication Concepts
  • SPF
  • DKIM
  • DMARC

🧠 Threat Intelligence & Adversary Tracking

Repository

Threat intelligence case studies documenting attacker techniques, malware campaigns, and adversary behavior using publicly available intelligence.

Topics Covered

  • MITRE ATT&CK
  • Threat Intelligence
  • IOC Tracking
  • Campaign Analysis
  • Tactics, Techniques & Procedures (TTPs)
  • Ransomware Trends
  • Threat Actor Profiling

πŸ› οΈ Technical Skills

πŸ›‘οΈ Security Operations

  • Security Operations Center (SOC)
  • Alert Monitoring
  • Alert Triage
  • Incident Response Lifecycle
  • Threat Detection
  • Threat Hunting Fundamentals
  • Detection Engineering (Foundational)
  • MITRE ATT&CK Framework
  • Threat Intelligence
  • IOC Identification
  • Security Monitoring
  • Case Documentation

πŸ“Š SIEM & Log Analysis

Splunk

  • Search Processing Language (SPL)
  • Log Correlation
  • Timeline Analysis
  • Alert Investigation
  • Dashboard Navigation
  • IOC Searching

Elastic Stack (ELK)

  • Kibana
  • KQL
  • Timeline Investigation
  • Log Filtering
  • Data Exploration
  • Event Correlation

Log Sources

  • Windows Event Logs
  • Sysmon
  • Linux Logs
  • Authentication Logs
  • Security Logs

🌐 Networking

  • TCP/IP
  • OSI Model
  • DNS
  • DHCP
  • HTTP
  • HTTPS
  • FTP
  • SSH
  • SMB
  • LDAP
  • Kerberos
  • RDP
  • ICMP
  • ARP
  • NAT
  • VLANs
  • VPN Concepts

πŸ” Network Investigation

  • Wireshark Packet Analysis
  • TCP Stream Analysis
  • Protocol Analysis
  • Suspicious Traffic Identification
  • DNS Investigation
  • C2 Traffic Identification
  • Beaconing Detection
  • HTTP Analysis
  • SMB Investigation

πŸ’» Operating Systems

Windows

  • Windows 10
  • Windows 11
  • Windows Server Fundamentals
  • Windows Security
  • Windows Event Viewer
  • Registry Analysis
  • Services
  • Task Scheduler

Linux

  • Ubuntu
  • Kali Linux
  • Bash Fundamentals
  • Linux File Permissions
  • Authentication Logs
  • Process Investigation
  • Basic Shell Scripting

πŸ”‘ Identity & Access Management

  • Active Directory Fundamentals
  • Group Policy Concepts
  • Least Privilege
  • Role-Based Access Control (RBAC)
  • Authentication
  • Authorization
  • Multi-Factor Authentication (MFA)
  • Password Security

πŸ”¬ Threat Detection

  • Sigma Rules
  • IOC Development
  • MITRE ATT&CK Mapping
  • Threat Hunting Concepts
  • Detection Validation
  • Security Monitoring

πŸ”§ Security Tools

  • Splunk
  • Elastic Stack
  • Kibana
  • Wireshark
  • Sysmon
  • Searchsploit
  • VirusTotal
  • CyberChef
  • Git
  • GitHub
  • Linux CLI

🐍 Programming & Automation

Python

  • Security Automation
  • Log Parsing
  • File Handling
  • Regular Expressions
  • Object-Oriented Programming
  • JSON Processing
  • CSV Processing
  • Basic Automation Scripts

Version Control

  • Git
  • GitHub
  • Repository Management
  • Markdown Documentation

πŸ§ͺ Hands-On Blue Team Training

TryHackMe

βœ… 146 Completed Rooms

My hands-on learning focuses on developing practical SOC analyst skills through realistic attack simulations and investigation-based exercises.

Practical Experience

  • Alert Triage
  • Incident Response
  • Windows Event Analysis
  • Log Correlation
  • Threat Detection
  • Malware Analysis
  • Network Traffic Investigation
  • IOC Analysis
  • MITRE ATT&CK Mapping
  • Investigation Documentation

Focus Areas

  • Detection & Monitoring
  • Incident Response
  • Windows Fundamentals
  • SOC Level 1
  • Network Security
  • Blue Team Labs

πŸ… Multiple badges earned through consistent hands-on practice.

πŸ”— Profile

TryHackMe

I use TryHackMe primarily as a hands-on training platform to build practical investigation skills and transform completed labs into recruiter-ready SOC case studies.


🎯 Professional Focus

My primary interests are centered around Blue Team operations and building the practical skills required to protect enterprise environments.

Areas of Focus

  • πŸ›‘οΈ Security Operations Center (SOC)
  • 🚨 Alert Triage & Incident Response
  • πŸ“Š SIEM Monitoring & Log Analysis
  • πŸ” Threat Hunting Fundamentals
  • 🧠 Threat Intelligence
  • 🧬 Malware Analysis
  • πŸ“§ Phishing Investigation
  • 🌐 Network Traffic Analysis
  • 🎯 Detection Engineering (Foundational)
  • βš™οΈ Security Automation with Python

πŸ“Œ Current Goals

I'm continuously expanding my cybersecurity knowledge through certifications, practical labs, and portfolio projects.

Current Objectives

βœ… Continue building realistic SOC investigation case studies

βœ… Expand my Detection Engineering portfolio

βœ… Develop Python tools for Blue Team automation

βœ… Improve advanced Splunk investigations

βœ… Improve Elastic Stack (ELK) investigations

βœ… Create Sigma detection rules

βœ… Learn Microsoft Defender XDR fundamentals

βœ… Learn Microsoft Sentinel

βœ… Build threat hunting playbooks


πŸ—ΊοΈ Career Roadmap

IBM Cybersecurity
        β”‚
        β–Ό
Cisco Networking Academy
        β”‚
        β–Ό
CompTIA Security+ βœ…
        β”‚
        β–Ό
SOC Investigation Portfolio
        β”‚
        β–Ό
CompTIA CySA+
        β”‚
        β–Ό
Detection Engineering
        β”‚
        β–Ό
Threat Hunting
        β”‚
        β–Ό
Security Operations Center Analyst

πŸ“š Currently Learning

  • πŸ“– CompTIA CySA+
  • πŸ›‘οΈ Detection Engineering
  • πŸ“Š Advanced Splunk SPL
  • πŸ“ˆ Elastic KQL
  • 🎯 Threat Hunting
  • ☁️ Microsoft Sentinel
  • πŸ–₯️ Microsoft Defender XDR
  • 🐍 Python Security Automation

🀝 Let's Connect


πŸ’‘ Philosophy

"The best defenders understand how attackers think."

I believe cybersecurity is learned through continuous practice, curiosity, and disciplined investigation. Every lab, detection, and documented case study strengthens my ability to identify threats, analyze evidence, and improve defensive security.

My goal is to contribute to a Security Operations Center where I can continue learning while helping protect systems through effective monitoring, investigation, and incident response.


πŸ›‘οΈ Detect Early β€’ Respond Fast β€’ Defend Smart

⭐ If you find my work interesting, feel free to explore my repositories and connect with me!

Pinned Loading

  1. Incident-Response Incident-Response Public

    Incident Response Writeups documents hands-on investigations covering detection, containment, eradication, and recovery of real-world security incidents. It demonstrates SOC workflows, evidence han…

    1

Morty Proxy This is a proxified and sanitized view of the page, visit original site.