SOC Automation Project (Home Lab) | Part 1

Поделиться
HTML-код
  • Опубликовано: 13 сен 2024

Комментарии • 77

  • @MyDFIR
    @MyDFIR  8 месяцев назад +7

    Remember the diagram does not need to be pretty. You just gotta do it!

  • @CyberZenitha
    @CyberZenitha 8 месяцев назад +7

    This is going to be insightful and fun. I have my Diagram already. Day 1 Done and Dusted. Well done and thank you for this.

    • @MyDFIR
      @MyDFIR  8 месяцев назад

      Awesome!!!

  • @diegomed3364
    @diegomed3364 8 месяцев назад +1

    You are freaking good. My goddess. Since I found your page I can’t stop checking the alert

    • @MyDFIR
      @MyDFIR  8 месяцев назад

      Haha thank you ❤️

    • @diegomed3364
      @diegomed3364 8 месяцев назад

      I really would like to get into SoC analyst, I checked your website and subscribed . What is next?

  • @konovo223
    @konovo223 7 месяцев назад +3

    I love the figurine display in the background! lil Nesuko beside shinron.

    • @MyDFIR
      @MyDFIR  7 месяцев назад

      Haha thank you!!

  • @KenPryor
    @KenPryor 8 месяцев назад +1

    This is great! Just finished my drawing in my self-hosted draw io and am ready to proceed to the next video. Thanks for doing this! I enjoy your presentation style. You explain things very well.

    • @MyDFIR
      @MyDFIR  8 месяцев назад

      Thank you! Well done and hope you enjoy the rest of the series ❤️

  • @bradrickrobinson7452
    @bradrickrobinson7452 8 месяцев назад

    Finally got a chance to follow along and create the SOC Workflow Diagram. Let's Goooooo!!!!

    • @MyDFIR
      @MyDFIR  8 месяцев назад

      Nice!! 😊

  • @ElizabthEkedoro
    @ElizabthEkedoro 8 месяцев назад

    Your're Such a great Teacher! I hopped on this lab today, I'll be documenting my process and i shall share it at the end of this project

    • @MyDFIR
      @MyDFIR  8 месяцев назад

      Thank you ❤️ great job on documenting the journey. Showcase your work! Let me know if you have any questions.

  • @sJ-ls8pw
    @sJ-ls8pw 5 месяцев назад

    Thank you, super Informative. Going back to Intro video to make notes of what I am doing. This is Hands on SOC experience.

    • @MyDFIR
      @MyDFIR  5 месяцев назад

      Fantastic! Love the initiative, keep up the good work ❤

    • @Veemaine716
      @Veemaine716 4 месяца назад

      So, would you still have to explain it to the interview, or would they prefer taking a good look at your notes?

  • @fuhlexer
    @fuhlexer 8 месяцев назад +1

    Appreciate you blessing us with this for Christmas! Looking forward to the rest of it and I respect your daily upload grind. Hope your enjoying the holidays, don't push yourself too hard in keeping up the consistency 🤍🤍

    • @MyDFIR
      @MyDFIR  8 месяцев назад +1

      ❤️ thanks! I don’t plan on doing long form video daily any time soon after December 😅😅 it is quite tough but I wanted to give yall something special

  • @sterlingstudy
    @sterlingstudy 6 месяцев назад

    I like you. you make everything easy to understand. I hope you keep producing more videos.

    • @MyDFIR
      @MyDFIR  6 месяцев назад

      Thank you! More videos to come 🙌

  • @ShaySoFresh777
    @ShaySoFresh777 8 месяцев назад

    Merry Christmas to us!!! I saw you talking about this 5 part series and couldn't wait for it to drop. Thanks yo!!

    • @MyDFIR
      @MyDFIR  8 месяцев назад

      Merry Christmas! I hope you enjoy this series ❤️

  • @chengbiz
    @chengbiz 8 месяцев назад

    Hi Bro, Merry Christmas! I hope you receive one blessing after another this coming year. Awesome video and I love it.

    • @MyDFIR
      @MyDFIR  8 месяцев назад

      Happy holidays! Thank you ❤️ lets both win in 2024 💪

  • @gamesbond1873
    @gamesbond1873 8 месяцев назад

    this is perfect man thank you! I'm excited to do this

    • @MyDFIR
      @MyDFIR  8 месяцев назад

      I am excited for you to get started! Let me know if you have any questions

  • @aminerarrbo
    @aminerarrbo 8 месяцев назад

    this guy is a legend

    • @MyDFIR
      @MyDFIR  8 месяцев назад

      no you 😊 thanks for watching!

  • @steventelfer8186
    @steventelfer8186 8 месяцев назад

    Amazing work my friend. Thanks for sharing!

    • @MyDFIR
      @MyDFIR  8 месяцев назад

      Thank you! Cheers!

  • @cweststudios6598
    @cweststudios6598 8 месяцев назад

    Thank you so much. You are so amazing.

    • @MyDFIR
      @MyDFIR  8 месяцев назад

      You are so welcome!

  • @darkomatic-c5t
    @darkomatic-c5t 5 месяцев назад

    This home lab series is pure gold!
    Digital Ocean is great but I would prefer to do everything on-prem so I can keep playing with it even when my Digital Ocean subscription expires.
    Do you think 64 GB of RAM would be enough?

    • @MyDFIR
      @MyDFIR  5 месяцев назад +1

      Absolutely 64GB is more than enough!

  • @user-ui6mj6bg7b
    @user-ui6mj6bg7b 7 месяцев назад +1

    Muchas gracias amigo.

  • @Streetrack
    @Streetrack 8 месяцев назад

    Super excited! ❤❤❤

    • @MyDFIR
      @MyDFIR  8 месяцев назад

      Thanks! ❤️

  • @Hanacan75
    @Hanacan75 8 месяцев назад

    The best. Is it possible 1 video integrating this SIEM with some Threat Hunting opensource software? Thank you very much.

  • @joshgo2888
    @joshgo2888 8 месяцев назад

    This is gonna be 🔥

    • @MyDFIR
      @MyDFIR  8 месяцев назад +1

      ❤️❤️

  • @Eteka85
    @Eteka85 Месяц назад

    Bro good one and thanks alot, from the video we have 1-pc and 2-cloud servers (Wuzah mger and TheHive), my question is What system is "Shuffle"?

    • @MyDFIR
      @MyDFIR  Месяц назад

      Managed by the folks at shuffle. Essentially the cloud.

  • @tejasghag3866
    @tejasghag3866 4 месяца назад

    Hi , Amazing project,
    I've a few doubts though,
    What is the role of internet and the router in the diagram ? I mean, if this is a proper home lab then why need internet ? and What does hosting the wazuh manager, shuffle and thehive over the internet means ( 2:50 )?

    • @MyDFIR
      @MyDFIR  4 месяца назад

      Depends on who you talk to when it comes to “home lab” - I see this as something that you’ve built regardless of internet or not and its not being used in “production” so that is why I have my diagram as is. I use the cloud to host wazuh and the rest.

  • @SamuelDarko-ql5ov
    @SamuelDarko-ql5ov 8 месяцев назад

    I don’t want to miss this lab

    • @MyDFIR
      @MyDFIR  8 месяцев назад

      😁remember to document!

  • @BigHeadPatReviews
    @BigHeadPatReviews 4 месяца назад

    Thanks a lot bro!

    • @MyDFIR
      @MyDFIR  4 месяца назад +1

      No problem!

    • @BigHeadPatReviews
      @BigHeadPatReviews 4 месяца назад

      @@MyDFIR I’m about to finish school then work on security plus then follow the steps of the road map.

  • @GabrielFinotti94
    @GabrielFinotti94 8 месяцев назад +1

    Hey @MyDFIR, I'm having a hard time trying to understand the structure, so I'm not doing this using cloud, I'm doing local using VM Virtual Box, for TheHive and Wazuh, do I need to make 2 Ubuntu VMs, along with another Windows 10 VM and the Wazuh server on VM, in the end a total of 4 machines created and running on Virtual Box? Thanks for the attention!

    • @MyDFIR
      @MyDFIR  8 месяцев назад +2

      Correct, you will have 4 VMs
      1 Hive,
      1 Wazuh Manager
      1 Shuffle
      1 Win 10 machine with Wazuh Agent

    • @GabrielFinotti94
      @GabrielFinotti94 8 месяцев назад

      @@MyDFIR thank you so much for the clarification! :D

  • @--JamiulHaque
    @--JamiulHaque 8 месяцев назад

    Thanks man.

    • @MyDFIR
      @MyDFIR  8 месяцев назад

      ❤️ thanks for watching

  • @imdtap1448
    @imdtap1448 8 месяцев назад

    If you can seriously get good at this, what is your opinion on getting a first job as a remote job? Any responses are welcome and thank you in advance!
    Good stuff MyDIFR... Thank you young brotha..
    Merry Christmas and blessings to all...

    • @MyDFIR
      @MyDFIR  8 месяцев назад

      It really depends. As a first job, remote can be rare which is why I would recommend you do local first and grab some experience and then hop over to remote. However, if you network with others you may be able to land a remote role quicker than you might expect.
      With all that being said, it doesn’t hurt to try applying to remote roles as your first job but just don’t limit yourself to that.
      Hope that helps!

  • @sillygoose3308
    @sillygoose3308 18 дней назад

    Does Wazuh (SIEM) conduct responsive actions or does Shuffle (SOAR)? I thought SOAR was the automation tool which automates corrective actions whilst SIEM aggregates data to analyse and alerts?

    • @MyDFIR
      @MyDFIR  17 дней назад

      Wazuh does the actual response. Shuffle prompts the user. Wazuh is a XDR + SIEM platform. You’re correct for a typical SIEM

    • @sillygoose3308
      @sillygoose3308 17 дней назад

      @@MyDFIR Thanks for clarifying!! Btw, Awesome video!! Very informative and helpful

  • @saimanish4374
    @saimanish4374 8 месяцев назад

    Brilliance 😍

    • @MyDFIR
      @MyDFIR  8 месяцев назад

      Thanks!

  • @Anonymous_lad17
    @Anonymous_lad17 7 месяцев назад

    great work

    • @MyDFIR
      @MyDFIR  7 месяцев назад +1

      Thank you! Cheers!

  • @RozzClips
    @RozzClips 8 месяцев назад

    Here we go guys

  • @sudogallo
    @sudogallo 6 месяцев назад

    Awesome Content. Do you recommend saving our diagram in our google drive, onedrive or Github(since ill be workiing on making a portfolio)? thanks

    • @MyDFIR
      @MyDFIR  6 месяцев назад

      Thanks! Anywhere is fine, If you plan on building your portfolio in GitHub, perhaps save it there.

  • @Nate-wn1lk
    @Nate-wn1lk 4 месяца назад

    I love you bro!

    • @MyDFIR
      @MyDFIR  4 месяца назад +1

      And I love you too! Thanks for watching 🙌

  • @_AkeelAhmad_wani
    @_AkeelAhmad_wani 6 месяцев назад

    thankyou for uploading the informative videos
    sir can u please provide this file type any where drive link or any other so that we and run or check it

    • @MyDFIR
      @MyDFIR  6 месяцев назад

      Sorry file type for the diagram? I uploaded via my GitHub for this project

  • @tayetiwoni
    @tayetiwoni 7 месяцев назад

    hey im having trouble finding the diagram. i went to the website and it keeps taking me someone else called confluence

    • @MyDFIR
      @MyDFIR  7 месяцев назад

      Head over to draw.io and create the diagram there

    • @tayetiwoni
      @tayetiwoni 7 месяцев назад

      yea thats what i did but i had to set up a few things. it was pretty confusing at first but i have figured it out no worries@@MyDFIR

  • @rmp5984
    @rmp5984 8 месяцев назад

    Awesome project! Been following your YT channel for a while.. Hope you will do guided, step-by-step walkthroughs of the 5 project ideas in your other video: ruclips.net/video/7Tiq0mfXcH8/видео.html The other writeups I've tried are either outdated, incomplete or have confusing walkthroughs. Happy holidays!

    • @MyDFIR
      @MyDFIR  8 месяцев назад +1

      Thanks! I will think about it 👍

    • @rmp5984
      @rmp5984 8 месяцев назад

      @@MyDFIRHope you'll seriously consider it. Since previous practical, hands on experience is preferred by most recruiters or employers over theoretical certs & degrees, having these projects on the resume & being able to present it during the technical interview will be a standout game changer for those seeking to transition or break in the cybersec industry.