Fully automated, end-to-end SOC pipeline showcasing proficiency in SOAR (n8n), SIEM (Splunk), and AI Engineering. The workflow automates alert detection, enrichment (VirusTotal/AbuseIPDB), LLM triage (OpenAI/Claude MCP), and creates persistent case management tickets in DFIR-IRIS to drastically reduce MTTR.
Stars
4
Forks
0
Watchers
4
Open Issues
0
Overall repository health assessment
No language data available
No package.json found
This might not be a Node.js project
33
commits
Merge branch 'main' of https://github.com/chalithah/SOC-Automation-Lab
fd8dbdcView on GitHubFix image links and enhance workflow descriptions
edf79a3View on GitHubMerge branch 'main' of https://github.com/chalithah/SOC-Automation-Lab
a050d03View on GitHubMerge branch 'main' of https://github.com/chalithah/SOC-Automation-Lab
3e3d29aView on GitHubUpdate README with images and formatting improvements
ac9d09aView on GitHubRevise README with updated Mimikatz and Splunk details
90aa64eView on GitHub