DetectionLab
Personal Project
- Designed and implemented a comprehensive cybersecurity homelab environment focused on detection and monitoring.
- Installed and configured VMware Workstation Pro as the hypervisor for virtualization, enabling the deployment of multiple virtual machines.
- Implemented network segmentation using pfSense firewall to enhance security and control traffic flow within the lab environment.
- Configured Security Onion as an all-in-one solution for intrusion detection, security monitoring, and log management, ensuring comprehensive threat detection capabilities.
- Deployed Kali Linux as an attack platform for penetration testing and offensive security exercises, maintaining up-to-date tools and following security best practices.
- Established a Windows Server domain controller to simulate an Active Directory environment, managing user accounts, group policies, and network settings for realistic scenarios.
- Integrated Windows 10 desktops with the domain controller, ensuring seamless integration and enabling centralized management and monitoring.
- Installed and configured Splunk as a SIEM tool for log aggregation and analysis, enabling centralized log management and threat detection.
- Implemented Splunk Universal Forwarder on endpoints to facilitate centralized log collection and analysis, ensuring visibility into security events across the network.
- Conducted regular lab exercises and practice sessions to enhance skills in threat detection, incident response, and vulnerability assessment.
- Maintained and updated the homelab environment to ensure relevance and effectiveness for ongoing skill development and experimentation.