Skip to content
View Shaolyn68SOC's full-sized avatar
🏠
Working from home
🏠
Working from home
  • Port Arthur, TX
  • 16:58 (UTC -05:00)

Block or report Shaolyn68SOC

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Shaolyn68SOC/README.md

🚚 From Trucking to Threat Hunting: My SOC Analyst Journey

Hi there! πŸ‘‹ My name is Shawn Lynch, aka ShaoLyn68SOC. I'm a former truck driver whose life took a sharp turn due to a serious illness. That challenge became a catalyst for transformation, and today I'm training to become a Security Operations Center (SOC) Analyst. I’ve traded highways for networks, and now I’m focused on defending digital infrastructure from cyber threats.

πŸ’¬ Why Cybersecurity?

After facing a life-threatening illness, I wanted to find a new mission β€” one that protects others and gives me purpose. Cybersecurity is that mission. It’s a field where vigilance, grit, and curiosity matter β€” and I bring all three from my past life on the road.

✍️ Read My Blog

I write about my transition from trucking to cybersecurity, lessons learned, and reflections on the SOC analyst journey. Check it out at
πŸ”— shaolyn68soc.github.io

🧠 What I'm Learning

  • SIEM tools: Splunk, Wazuh, and the Elastic Stack
  • Threat detection & incident response
  • MITRE ATT&CK Framework
  • Python scripting for SOC automation
  • Blue Team tactics and log analysis

πŸ§ͺ Hands-On Practice

I'm actively sharpening my skills through real-world simulations and labs:

πŸ“‚ What You'll Find Here

This GitHub is my digital notebook β€” a place to document my growth and share tools with others on the same path. Expect:

  • πŸ›‘οΈ SOC playbooks and detection rules
  • πŸ” Log parsing and analysis scripts
  • πŸ“Š SIEM dashboards and threat reports
  • 🧰 Blue Team utilities and automation tools

🌟 Featured Projects

Here are a few highlights from my cybersecurity journey:

πŸ”Ž Windows Event Log Analyzer

A Python script that parses Windows Event Logs to identify suspicious activity patterns. Useful for SOC triage and threat hunting.

  • Tools: Python, Windows Event Viewer
  • Skills: Log parsing, regex, IOC detection
  • Status: In progress

πŸ›‘οΈ Custom SIEM Dashboard (Splunk)

Designed a Splunk dashboard to visualize login anomalies, failed authentications, and privilege escalation attempts.

  • Tools: Splunk, SPL
  • Skills: SIEM configuration, data visualization
  • Status: In progress

🧠 MITRE ATT&CK Mapping Tool

A reference sheet and script that maps observed behaviors to MITRE ATT&CK techniques for faster incident classification.

  • Tools: Python, MITRE ATT&CK
  • Skills: Threat classification, SOC workflow optimization
  • Status: Ongoing

πŸ•΅οΈ TryHackMe & HTB Lab Notes

Documented walkthroughs and detection strategies from Blue Team labs and SOC simulations.

  • Platforms: TryHackMe, Hack The Box
  • Skills: Threat detection, incident response
  • Status: Continuously updated

β€œYou don’t need to see the whole road β€” just take the next turn.”
β€” A former truck driver turned cybersecurity SOC analyst

Popular repositories Loading

  1. Shaolyn68SOC Shaolyn68SOC Public

  2. Security-101-training Security-101-training Public

    Forked from microsoft/Security-101

    8 Lessons, Kick-start Your Cybersecurity Learning.

    HTML

  3. skills-introduction-to-github skills-introduction-to-github Public

    My clone repository

  4. skills-github-pages skills-github-pages Public

    My clone repository

  5. hugo-coder hugo-coder Public

    Forked from luizdepra/hugo-coder

    A minimalist blog theme for hugo.

    HTML

  6. sysmon-config sysmon-config Public

    Forked from SwiftOnSecurity/sysmon-config

    Sysmon configuration file template with default high-quality event tracing