SOC Sim & Security Lab (Planned)

A simulated security operations center for practicing detection, investigation, and response.

Concept

Outline what you want this SOC lab to be: log sources, SIEM/SOC tools, alerting pipeline, and how attacks will be simulated for training and experimentation.

Planned Tooling

Use this section to list possible tools (open-source SIEM, log collectors, dashboards, incident tracking, etc.) and how they’ll fit together.

Lab Topology & Data Flows

Describe how logs move from endpoints and network devices into the SOC stack, and how alerts are generated and reviewed.

Future Screenshots

When the lab is built, screenshots and diagrams can live under /assets/computers/soc-lab/.