Investigated a simulated phishing campaign, tracing malicious links, analyzing headers, and documenting practical detection and response steps.
Built a SIEM monitoring workflow that turns noisy logs into actionable alerts for suspicious authentication and endpoint activity.
Completed hands-on room walkthroughs covering reconnaissance, vulnerability analysis, privilege escalation, and clear evidence-based reporting.
Compared defensive best practices through case studies focused on threat analysis, incident response, and resilient security operations.