Self-directed project
Fundamentals of Cybersecurity
Cybersecurity · July 2026
A ProoV case study · educational project, not employment
Built a beginner SOC incident workflow end to end: triaged a phishing email, identified anomalous authentication activity, mapped observed events to cyber kill-chain stages, and selected a defensible containment sequence. Also drafted a concise GDPR-style breach notification and a structured incident report that captured summary, timeline, root cause, impact, and recommendations.
Graded against
- Threat Triage & Detection20%
- Log Analysis & Investigation30%
- Incident Response & Containment20%
- Compliance & Breach Notification15%
- Executive Communication & Lessons15%
Passed · pass mark 60/100
What stood out6
- Correctly flagged all four critical phishing red flags: sender, link, attachment, and urgency.
- Caught the impossible-travel authentication anomaly and isolated the suspicious rows without false positives.
- Chose a containment order that cut access first and avoided destructive actions like re-imaging.
- Leakage-Free Threat Triage
- Anomaly Detection in Auth Logs
- Incident Containment Sequencing
The work I submitted18 tasks
10 tasks · 3.7k characters · 8 written answers · 213 words
- Phishing Triage186 characters
- Killchain Map244 characters
- Log Triage175 characters
- Ioc Extraction176 characters
- Containment Plan373 characters
- Breach Notification504 characters
- Incident Report774 characters
- Recommendations648 characters
- Real Case Analysis364 characters
- Teach Back215 characters
- Phishing Triage8 words
- Killchain Map12 words
- Log Triage9 words
- Ioc Extraction8 words
- Containment Plan14 words
- Breach Notification61 words
- Incident Report88 words
- Recommendations13 words
Summarised on purpose — the submitted code and writing stay private so this page cannot be reused as an answer key. The full submission sits behind the verified certificate.