Skip to content
View Ohdele's full-sized avatar

Block or report Ohdele

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Ohdele/README.md

Hi, I'm Dele

I am a Cybersecurity professional focused on Security Operations (SOC), SIEM monitoring, detection engineering, incident response, and security automation. I build hands-on cybersecurity labs that simulate real-world enterprise environments using SIEM, EDR, SOAR, threat intelligence, AI and adversary simulation tools. My projects demonstrate experience in log analysis, threat detection, security workflow automation, and AI-assisted threat hunt and analysis.

Objective

Applying skills in Security Operations, SIEM monitoring, detection engineering, incident response, threat hunting, security automation, AI-assisted security operations, and identity security. Seeking opportunities as a SOC Analyst, Security Engineer, or Incident Response Analyst to contribute to threat detection, log analysis, security investigations, and building security workflows using enterprise security tools.

Skills

SkillAssociated Project
Active Directory Administration & SecurityAD Homelab Project
SIEM Monitoring and SOC AnalysisSOC Automation with AI
Security Automation & Orchestration (SOAR)SOAR EDR Integration
SIEM Monitoring & Detection EngineeringSOC ELK Detection Lab
AI-Assisted SOC Operations & Threat HuntingAI SOC Agent 2.0

Tools

Network

Platform

Endpoint

Framework

SIEM

API

Certifications

Projects

Deployed an Active Directory SOC environment with Splunk and Sysmon for centralized monitoring, then simulated RDP brute-force and MITRE ATT&CK techniques using Hydra and Atomic Red Team to validate detection workflows.

Built an automated incident response workflow using n8n, Splunk, AbuseIPDB, and Gemini for alert ingestion, IOC enrichment, AI-driven risk analysis, and structured analyst notifications.

Developed a SOAR/EDR incident response workflow using LimaCharlie and Tines to automate detection, alerting, analyst approval, and endpoint isolation with post-action validation.

Built a SOC detection and investigation environment using Elastic Stack, Sysmon, and Elastic Defend to monitor brute-force activity and C2 behavior, investigate alerts, map adversary activity to MITRE ATT&CK, and automate osTicket incident tracking.

Built an AI-assisted SOC investigation workflow using Elastic, Python, and Gemini for threat hunting, evidence collection, structured investigations, and SOC reporting, with tool-based workflows, query optimization, security guardrails, and token/cost controls.

Pinned Loading

  1. AD-HOMELAB-PROJECTAD-HOMELAB-PROJECTPublic

    ACTIVE DIRECTORY PROJECT

  2. AI-SOC-Agent-Project-2.0AI-SOC-Agent-Project-2.0Public

    AI-assisted SOC workflow using Python, Gemini API, and Elastic SIEM for threat analysis and investigation automation.

  3. SOC-ELK-Detection-LabSOC-ELK-Detection-LabPublic

    End-to-end SOC detection lab simulating ELK-based monitoring, log ingestion, security event detection, and incident investigation across Windows and Linux environments.

  4. soar-edr-integrationsoar-edr-integrationPublic

    SOAR and EDR integration project demonstrating automated threat detection, alerting, and response using LimaCharlie, Tines, Slack, and email, including endpoint isolation and validation workflows.

  5. SOC-Automation-AISOC-Automation-AIPublic

    Automated SOC workflow using n8n to ingest Splunk alerts, enrich IOC via AbuseIPDB, analyze threats with Gemini AI, and dispatch structured alerts to Slack.

  6. kql-soc-investigationskql-soc-investigationsPublic

    KQL-based SOC investigation labs covering ransomware, phishing, and endpoint attacks using Azure Data Explorer. Focus on log correlation, threat hunting, and incident response analysis.