Self-directed project
Fundamentals of Cybersecurity
Cybersecurity · September 2026
A ProoV case study · educational project, not employment
Built a coherent phishing-to-breach investigation: identified the malicious email indicators, detected the impossible-travel account takeover in logs, selected the relevant IoCs, and drafted a GDPR Article 33 notification with the incident scope and mitigations. The final report and control recommendations were clear, prioritized, and tied to the facts of the case, including the finance-share exposure and the value of MFA.
Graded against
- Threat Triage & Detection20%
- Log Analysis & Investigation30%
- Incident Response & Containment20%
- Compliance & Breach Notification15%
- Executive Communication & Lessons15%
Passed · pass mark 60/100
What stood out6
- Correctly flagged the phishing email’s key red flags, including the attachment and link, with no false positives.
- Caught the impossible-travel authentication event and isolated the anomalous row in the auth log.
- Wrote a GDPR-style notification that covered the nature of the breach, affected data, consequences, and mitigation steps.
- Recommended MFA as the highest-value control in the real-case analysis and explained why it would have blocked the Rotterdam login.
- Leakage-Free Incident Triage
- Log-Based Anomaly Detection
The work I submitted17 tasks
9 tasks · 5.5k characters · 8 written answers · 352 words
- Phishing Triage189 characters
- Killchain Map240 characters
- Log Triage170 characters
- Ioc Extraction176 characters
- Containment Plan368 characters
- Breach Notification1.7k characters
- Incident Report1.5k characters
- Recommendations648 characters
- Real Case Analysis524 characters
- Phishing Triage8 words
- Killchain Map12 words
- Log Triage9 words
- Ioc Extraction8 words
- Containment Plan14 words
- Breach Notification146 words
- Incident Report142 words
- Recommendations13 words
Summarised on purpose — the submitted code and writing stay private so this page cannot be reused as an answer key. The full submission sits behind the verified certificate.