Sitelet https://github.com/NtsikaTech
Skip to content
View NtsikaTech's full-sized avatar

Block or report NtsikaTech

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
NtsikaTech/README.md

Hi, I'm Ntsika

Cybersecurity professional focused on SOC engineering, cloud security, and threat detection, with a development background (Python, APIs, automation) that I apply to building and securing defensive systems.


Featured Project: Microsoft Sentinel SOC Lab (Azure)

End-to-end SIEM environment built in Azure, focused on real-world security telemetry and detection engineering.

  • Azure Arc-enabled Linux (Ubuntu) machine onboarded
  • Azure Monitor Agent (AMA) configured for log collection
  • Syslog ingestion pipeline into Microsoft Sentinel
  • KQL-based threat hunting and log analysis
  • MITRE ATT&CK mapping for adversary behavior analysis

Technical Skills

Security & SOC Microsoft Sentinel Azure Arc Azure Monitor Agent Syslog MITRE ATT&CK KQL

Development & Scripting Python API Development

Infrastructure & Databases Azure Docker MySQL PostgreSQL


Focus Areas

  • SOC engineering and detection rule development (KQL)
  • Cloud security architecture (Azure security services)
  • Threat hunting and incident investigation
  • Secure backend and API design principles
  • BSc Information Science — UNISA (in progress)

Connect With Me

LinkedIn Portfolio


"I focus on building systems I can also monitor, defend, and analyze."

Popular repositories Loading

  1. NtsikaTech NtsikaTech Public

  2. splunk-linux-auth-monitoring splunk-linux-auth-monitoring Public

    This project demonstrates detection of SSH brute-force attempts on a Linux system using Splunk Enterprise. It simulates SOC analyst workflows: detection, alerting, investigation, and documentation.…

    Python

  3. windows-security-log-analyzer windows-security-log-analyzer Public

    Python-based SOC simulation tool for Windows Security log analysis, threat detection, incident correlation, ticketing, MITRE ATT&CK mapping, and SOC reporting.

    Python

  4. IOC-Enrichment-Threat-Intelligence-Engine-SOC-Simulation-Tool- IOC-Enrichment-Threat-Intelligence-Engine-SOC-Simulation-Tool- Public

    Threat intelligence simulation engine that enriches Indicators of Compromise (IP, domain, hash), performs risk scoring, MITRE ATT&CK mapping, and detects coordinated attack campaigns.

    Python

  5. network-security-monitoring-engine network-security-monitoring-engine Public

    Python-based SOC simulation engine that detects network threats, maps to MITRE ATT&CK, correlates incidents, and generates structured security reports.

    Python

  6. microsoft-sentinel-threat-hunting-lab microsoft-sentinel-threat-hunting-lab Public

    Microsoft Sentinel SOC lab on Azure detection engineering, KQL threat hunting, and incident investigation mapped to MITRE ATT&CK.