LetsDefend
SOC investigations
SECURITY OPERATIONS / INCIDENT RESPONSE
I investigate how systems behave, build detections around what matters, and share what I learn along the way.
ALWAYS LEARNING
The platforms where I keep sharpening my investigation skills.
SOC investigations
Hands-on security
Data-driven investigations
Web Security Academy
BUILD / INVESTIGATE / DOCUMENT
Tools and workflows built around practical security problems.
DETECTION & RESPONSE
From endpoint telemetry to an investigation case. Wazuh, Shuffle, and TheHive connected in one response workflow.
PYTHON / THREAT INTELLIGENCE
A Python tool for batch indicator enrichment, VirusTotal and OTX lookups, and risk summaries that support triage.
NOTES FROM THE LAB
The evidence, the process, and what I learned.
NETWORK ANALYSIS
My Wireshark field notes: follow the evidence through scans, authentication traffic, recovered objects, and TLS.
HACK THE BOX / WRITEUP
A walkthrough of the attack path, the clues behind each step, and the Linux permissions that made escalation possible.
FOUNDATIONS & NEXT STEPS
Building knowledge, then putting it into practice.
PORTRAIT COMING SOONBEHIND THE WORK
Hi, I’m Brandon.
I’m an IT Specialist at Access Ohio, supporting identity, endpoints, and networks across a multi-site organization. I’m building toward security operations and incident response through hands-on investigations and tools.
I like understanding how things work, following the evidence, and making what I learn useful to someone else.
A little more about meSee my experienceGET IN TOUCH
Security, systems, or something you’re building. I’d be glad to talk.