Self-directed project
Fundamentals of Cybersecurity
Cybersecurity · August 2026
A ProoV case study · educational project, not employment
Built an end-to-end incident response workflow for a phishing-to-ransomware scenario: triaged the lure, mapped the attack to kill-chain stages, investigated anomalous authentication activity, and chose a containment sequence that cut access before destructive remediation. Also drafted a concise GDPR breach notice and translated the lessons to the Continental case using public facts, including the initial shadow-IT download, four weeks of dwell time, and roughly 40 TB exfiltrated.
Graded against
- Threat Triage & Detection20%
- Log Analysis & Investigation30%
- Incident Response & Containment20%
- Compliance & Breach Notification15%
- Executive Communication & Lessons15%
Passed · pass mark 60/100
What stood out6
- Caught all four critical phishing red flags with zero false positives
- Identified impossible travel and selected the correct anomalous auth rows
- Sequenced containment to cut access first and avoided destructive actions
- Anchored the real-case recommendation to the documented initial browser download and 40 TB exfiltration
- Leakage-Free Incident Triage
- Evidence-Based Log Investigation
The work I submitted18 tasks
10 tasks · 5.6k characters · 8 written answers · 277 words
- Phishing Triage186 characters
- Killchain Map244 characters
- Log Triage190 characters
- Ioc Extraction176 characters
- Containment Plan373 characters
- Breach Notification457 characters
- Incident Report1.3k characters
- Recommendations648 characters
- Real Case Analysis1.5k characters
- Teach Back553 characters
- Phishing Triage8 words
- Killchain Map12 words
- Log Triage9 words
- Ioc Extraction8 words
- Containment Plan14 words
- Breach Notification50 words
- Incident Report163 words
- Recommendations13 words
Summarised on purpose — the submitted code and writing stay private so this page cannot be reused as an answer key. The full submission sits behind the verified certificate.