demo-soc

Demo SOC — Simulated Security Operations Center

A compact, hands-on SOC lab showcasing centralized logging, IDS/IPS detection, WAF-like filtering, and incident handling across a multi-OS environment.

Pages

Architecture

Tech Badges

Core Stack:

Wazuh Suricata Nginx OWASP Juice Shop Docker

Platforms & Infra:

Ubuntu Windows ParrotOS VirtualBox VMware

Attack & Test Tooling:

Hydra smbclient cURL Nmap

Overview

Quick Start

Authors

Why This Lab

This tested emphasizes the importance of centralized telemetry and layered defenses. It provides a reproducible foundation for expanding into SOAR, CTI integration, and hybrid cloud deployments while validating detection logic with realistic attack simulations.