You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
SOC Analyst in Training · Blue Team · TryHackMe Top 5%
┌──(andyy㉿kali)-[~/Cybersecurity-Writeups]
└─$ whoami
Andrew D Souza | Final-year BCA Student
→ Target Role : SOC Analyst L1
→ Focus : Blue Team · Threat Detection · Incident Response
→ Currently On : THM SOC Level 1 (Splunk, Detection Engineering)
→ Certifications : Google Cybersecurity Professional Certificate (in progress)
→ End Goal : Cloud Security Engineer
What This Repository Is
This is my structured cybersecurity learning journal — every room I complete on TryHackMe gets documented here as a write-up.
Not just what I did, but why it matters in a real SOC environment.
Each write-up follows a consistent format:
Key findings
Hands-on activities
SOC Analyst relevance table
Key takeaways
"If you can't explain it simply, you don't understand it well enough."
Stats
Metric
Value
Global Rank
Top 5%
Title
[0x9][MAGE]
Active Streak
46+ days
Rooms Completed
106+
Write-ups
Actively updated
Why This Maps to SOC Work
A few direct lines from lab to job floor:
Log Fundamentals + SIEM → triaging alerts, spotting anomalies in Splunk before they escalate
Wireshark + TCPdump + Nmap → reading traffic to confirm or rule out a suspected compromise
Incident Response + Digital Forensics → following an IR lifecycle from detection through containment
Active Directory + Windows fundamentals → understanding the environment most SOC alerts originate from
SKILL TOOLS & CONCEPTS COVERED
─────────────────────────────────────────────────────────
Log Analysis → Log Fundamentals, SIEM, Splunk
Network Analysis → Wireshark, TCPdump, Nmap
Threat Detection → SIEM, EDR, IDS, Alert Triage
Threat Intelligence → Pyramid of Pain, IOC Analysis
Malware Analysis → CAPA, CyberChef, FLARE-VM, REMnux
Digital Forensics → Evidence Handling, Autopsy
Cryptography → Hashing (MD5/SHA), Hydra
Web Security → Burp Suite, Gobuster, SQLMap, OWASP Top 10
OS Hardening → Linux, Windows, Active Directory
Incident Response → IR Lifecycle, Containment, Recovery
Tools & Platforms
Disclaimer
All write-ups are created for educational purposes only.
All activities are performed inside legal, controlled lab environments provided by TryHackMe.
No real systems were targeted. Always hack ethically.
╔══════════════════════════════════════════════════════╗
║ BUILT IN PUBLIC. LEARNING OUT LOUD. ║
║ ║
║ Every commit is a step closer to the SOC floor. ║
╚══════════════════════════════════════════════════════╝
Andrew D'Souza (Andyy)
About
TryHackMe writeups focused on Linux, Windows, SOC, and cybersecurity fundamentals.