I will investigate siem alerts and security logs
About this Gig
I will analyze your SIEM alerts and security logs to help identify suspicious activity, assess the risk, and provide clear investigation findings.
What I can investigate:
Failed login and brute-force activity
Suspicious user or IP activity
Malware and endpoint alerts
Suspicious processes and network connections
Firewall and VPN events
AWS CloudTrail security events
Security configuration and audit events
Other SIEM security alerts
What you will receive:
Alert analysis and investigation
Event timeline and correlation
Severity assessment
True Positive / False Positive assessment
IOC identification
MITRE ATT&CK mapping where applicable
Investigation findings
Recommended remediation actions
I work with security monitoring technologies including SIEM, Wazuh, Trend Micro EDR, Sophos Firewall, Windows security logs, and AWS CloudTrail.
Device:
Desktop/Laptop
Operating system:
Windows
