Core Security
SIEM (Splunk, Wazuh)
Incident Response (fasi IR, triage, containment)
Threat Intelligence (raccolta, analisi, enrichment)
Malware Analysis (statica base, PE analysis)
Log Analysis (Windows Event Logs, Sysmon, Syslog)
Detection Engineering (basi)
Alert Triage (prioritizzazione, correlazione)
IOC Analysis (hash, domain, IP reputation)
MITRE ATT&CK (basi operative)
Network Security Monitoring
Endpoint Security (EDR basics)
OSINT Investigation
Vulnerability Assessment (basi)
Phishing Analysis (header, URL, sandboxing)