RV SOC Portfolio
SOC Analyst Track

Richard Vincent

Cybersecurity-focused IT professional with 9+ years of infrastructure experience, building SOC-ready skills in threat detection, log analysis, incident triage, phishing investigation, and defensive security operations.

9+Years IT & infrastructure
3SOC investigations
8+Labs and analysis projects
SOCPrimary career focus

Primary Direction

SOC Analyst, Junior Cybersecurity Analyst, Security Analyst, and cyber defense support roles.

Technical Edge

Infrastructure troubleshooting background applied to real alert context and defensive analysis.

Project Theme

Alert triage, logs, suspicious activity, network visibility, Windows controls, and documentation.

Recruiter Access

Resume, Credly, LinkedIn, GitHub, and hands-on project writeups are available from this page.

// 01 INVESTIGATIONS

Featured SOC Investigations

Practical security investigations demonstrating incident response, endpoint triage, phishing analysis, authentication log review, IOC analysis, DNS investigation, web attack detection, MITRE ATT&CK mapping, and remediation recommendations.

Windows Logs

Windows Security Log Investigation

Reviewed Windows security logs to identify suspicious authentication activity, correlate Event IDs, and document analyst findings.

View →
Phishing

Enterprise Phishing Email Investigation

Investigated a phishing alert involving email header review, IOC analysis, threat intelligence enrichment, MITRE mapping, user risk, and containment recommendations.

View →
Auth Logs

Detecting Brute-Force and Suspicious Login Activity

Analyzed authentication-related web logs to identify repeated login attempts, suspicious credential patterns, and brute-force-style activity from a single source IP.

View →
DNS Logs

Suspicious DNS Activity Investigation

Reviewed Windows DNS Client Operational logs to identify suspicious domain resolution activity and document follow-up SOC recommendations.

View →
Web Attack

Web Log Analysis: Open Redirection Attempts

Reviewed web server logs to detect encoded external URL injection, attacker obfuscation patterns, and open redirection probing against a web application.

View →
// 02 LABS

Technical labs that support detection work.

These projects preserve the technical depth from the original SOC portfolio: packet analysis, encryption, Windows controls, network setup, and hands-on defensive learning.

Windows Security

Windows Security Controls Lab Portfolio

Implemented and tested Windows security controls including file integrity corrective controls, login banner directive controls, object access auditing, and share hardening with least privilege.

Skills: Windows security controls, PowerShell, auditing, least privilege, file integrity

Wireshark

Wireshark Lab: Telnet and SSH

Captured and analyzed Telnet and SSH sessions to compare plaintext and encrypted remote administration traffic and explain the visibility difference.

Skills: Wireshark, packet analysis, Telnet, SSH, protocol comparison

OpenSSL

OpenSSL Lab: Encrypting and Decrypting Data

Used OpenSSL to encrypt and decrypt data with AES-256-CBC, compare raw encrypted output with Base64 output, and restore plaintext.

Skills: OpenSSL, AES-256-CBC, Base64, Linux terminal, encryption workflow

Crypto

JCrypTool Lab: Classic and Modern Algorithms

Used JCrypTool to explore Caesar cipher, AES symmetric encryption, and RSA asymmetric encryption while comparing classic and modern cryptographic methods.

Skills: Caesar cipher, AES, RSA, symmetric encryption, asymmetric encryption

Packet Tracer

Wireless Router and Client Configuration Lab

Configured a home wireless router and connected client devices in Packet Tracer to simulate a small network environment and test connectivity.

Skills: Wireless configuration, client connectivity, IPv4 basics, troubleshooting

Networking

Networking Basics SBA: Multi-LAN and Wireless Lab

Built a Packet Tracer network with multiple LAN segments and wireless connectivity, including DHCP, static IPv4, gateway, DNS, cabling, and verification.

Skills: IPv4, DHCP, static IPs, DNS, default gateway, router and switch cabling

// 03 TRAINING

Certifications and training aligned to SOC work.

Current learning is focused on SOC fundamentals, Splunk practice, Security+ preparation, network defense, and verified cybersecurity badges.

Completed

Google Cybersecurity Professional Certificate

Cybersecurity foundations, incident response, security operations, and entry-level analyst workflows.

Completed

Qualys Certifications

CyberSecurity Asset Management, scanning strategies, vulnerability management, and VMDR exposure.

Completed

Cisco Networking Basics & Network Defense

Networking and network defense foundations that support practical SOC readiness.

In Progress

CompTIA Security+

Preparing for SY0-701 with focus on threats, architecture, implementation, operations, and security controls.

In Progress

Splunk Core User

Hands-on log analysis, search practice, dashboard awareness, and security monitoring fundamentals.

Verified Badges

Credly Profile

Public badge profile for quick verification of completed credentials and professional training.

// 04 SKILLS

SOC-relevant skill matrix.

A focused view of the capabilities represented by the projects, labs, training, and infrastructure background.

Incident TriageAlert review, classification, escalation, documentation
Threat DetectionSuspicious activity, phishing indicators, brute-force behavior
Log AnalysisAuthentication logs, web logs, activity patterns, indicators
Network SecurityTCP/IP, DHCP, DNS, firewalls, routing and switching concepts
Packet AnalysisWireshark, Telnet, SSH, protocol comparison, traffic visibility
Security ToolsQualys, Packet Tracer, OpenSSL, Windows security controls, Splunk learning
Defensive AnalysisWeb attack patterns, authentication monitoring, phishing analysis
DocumentationCase notes, lab writeups, incident analysis, project evidence
Infrastructure SupportEnterprise support, troubleshooting, networks, systems, technical operations
// 05 EXPERIENCE

Infrastructure experience that transfers into SOC operations.

Apr 2017 – Jan 2023

Information Technology Network Technician | The Interconnection Point Limited

Supported enterprise network and telecommunications environments through installation, testing, troubleshooting, and maintenance of infrastructure components and structured cabling. Provided advanced technical support in live client environments and built practical readiness for security monitoring and incident triage.

Dec 2015 – Present

Cellphone Repair Technician | The Phone Boss

Diagnose, repair, test, and document technical issues across mobile devices using structured troubleshooting, root-cause analysis, customer communication, and service-quality discipline.

Current Path

SOC Analyst Development

Building hands-on cybersecurity capability through Security+ preparation, Splunk learning, phishing analysis, authentication log review, web attack detection, Packet Tracer labs, Wireshark analysis, and Windows security control projects.

// PLATFORM EXPERIENCE

SOC training platforms and badge-backed learning.

Hands-on SOC analyst training completed between 2024–2025, covering phishing analysis, SIEM investigation concepts, MITRE ATT&CK mapping, alert triage, and web attack analysis.

LetsDefend

2024–2025

Hands-on SOC investigation platform used for phishing investigations, SIEM alert triage, MITRE ATT&CK mapping, incident response workflow exposure, and web attack analysis.

  • Phishing investigations and email threat analysis
  • SIEM exposure and alert review workflow
  • MITRE ATT&CK technique mapping
  • Web attack investigation practice
Phishing Expert SIEM 101 MITRE ATT&CK Web Attack Investigator

Packet Tracer

Networking

Networking and security labs involving wireless routers, LAN segmentation, DHCP configuration, static addressing, DNS, default gateways, and connectivity troubleshooting.

  • Wireless router and client configuration
  • Multi-LAN and wireless configuration
  • DHCP, DNS, gateway, and static IP practice
  • Connectivity testing and troubleshooting

Security Investigation Workflow

SOC Skills

Practical exposure to investigation workflows including IOC review, phishing analysis, URL reputation checks, log review, analyst notes, and incident documentation.

  • IOC analysis and enrichment
  • Alert triage and case documentation
  • Threat analysis and severity classification
  • Containment and detection recommendations
// 06 CONTACT

Ready for SOC and junior cybersecurity opportunities.

Recruiters and hiring teams can access my resume, certifications, LinkedIn, GitHub, and cybersecurity projects.