Skip to content
View mars13-tech's full-sized avatar

Highlights

  • Pro

Block or report mars13-tech

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
mars13-tech/README.md
Typing SVG

whoami

$ cat karthikeyan.txt

Name     : Karthikeyan
Role     : SOC Analyst (Blue Team) — Targeting L2
Location : Madurai, Tamil Nadu, India
Status   : Open to SOC Analyst Internships
Focus    : Detection Engineering · Threat Hunting · GRC
GitHub   : github.com/mars13-tech
LinkedIn : linkedin.com/in/karthi-keyan-9042862bb

🛡️ What I Build

Project Stack What It Does
home-soc-lab Elastic SIEM · KQL Detection rules, threat hunting, 7 investigations on real Windows telemetry
splunk-soc-detection Splunk · SPL Full brute force + lateral movement attack detected across Linux and Windows
splunk-lab Splunk Enterprise SPL fundamentals → correlation rules → detection engineering
soc-grc-portfolio NIST CSF · SOC2 · DPDPA GRC portfolio for fictional fintech — IR policy, risk register, audit checklist
soc-journey Wireshark · ELK PCAP analysis, Windows Event ID cheatsheets, SOC learning notes
Eagle-Vision-Scan Bash Network recon tool — MITRE ATT&CK T1046

⚔️ Attack Techniques I Can Detect

T1110.001  Brute Force: Password Guessing      →  home-soc-lab · splunk-soc-detection
T1078      Valid Accounts                       →  splunk-soc-detection · home-soc-lab
T1021.004  Remote Services: SSH                →  splunk-soc-detection
T1059.001  PowerShell Execution                →  home-soc-lab
T1566.001  Phishing: Spearphishing Attachment  →  home-soc-lab
T1218      Signed Binary Proxy (LOLBins)       →  home-soc-lab
T1068      Privilege Escalation                →  splunk-soc-detection
T1046      Network Service Discovery           →  Eagle-Vision-Scan
T1195      Supply Chain Compromise             →  soc-grc-portfolio

🔧 Stack


📈 Activity


🔗 Connect

Pinned Loading

  1. home-soc-lab home-soc-lab Public

    Home SOC lab built on Elastic SIEM — detection engineering, KQL threat hunting, alert tuning, and incident investigations using real Windows endpoint telemetry

  2. soc-grc-portfolio soc-grc-portfolio Public

    SOC-GRC portfolio — risk registers, gap assessments, audit templates, vendor risk

  3. soc-journey soc-journey Public

    SOC analyst learning notes — PCAP analysis, Windows Event IDs, networking cheatsheets