Paula Samir
SOC T1
[email protected] 01064772915 Cairo, Egypt Linkedin Medium TryHackMe
Profile Education
I'm a fresh graduate, I have an experience in web applications Faculty of Computer and Technology - Assuit University
vulnerabilities, OSI Layer attacks, I have a certificate from Fortinet- 09/2018 – 06/2022
nse4, I’m familiar with SIEM solution like QRadar and I have some
knowledge to investigate in alerts, detect suspicious activities with 1-Month Training Diploma on Cyber Security – ITI
snort, wireshark, and Threat Intelligence like OpenCTI 07/2021 – 08/2021
4-Month Training Diploma on Cyber Security Associate – ITI
Professional Experience 11/2022 – 03/2023
1-Month Training as a System Engineer at Al Kharafi National Courses
Installing Windows and make their configuration
Web Penetration Testing Course With Ebrahim Hegazy
•
Troubleshoot issues
•
CRM
•
Penetration Testing Student (PTS) - eJPT
Bug Hunting SOC Investigation Course
I learnt a lot of things about Web Application Penetesting
•
Investigate in Phishing Emails Alert
•
such as: Investigate in Malware Alert
•
1_ Reconnaissance, Scanning. Investigate in Brute Force Attacks Alert
•
2_ Web vulnerabilities such as: Investigate in DoS/DDoS Attacks Alert
•
Injection attacks like XSS, SQLi, Open Redirect
•
Investigate in communication to bad IP/domain
•
Attacks using JS like CORS
•
Investigate in Windows Events (Login & Logout)
•
Broken Auth & Access Control like IDOR, CSRF
SOC Level 1 form THM, (In Progress)
•
File Inclusion like LFI, LFD
Cyber Defense Frameworks
•
Subdomain takeover, Information disclosure •
Cyber Kill Chain
•
3-Month Training Diploma on Cyber Security Associate – ITI Cyber Threat Intelligence
•
CCNA
•
Yara
•
RedHat I, RedHat II, Windows Server
•
OpenCTI
•
Introduction to Python, Bash Scripting
•
MISP
•
Introduction to Cyber Security && Ethical Hacking
•
Network Security and Traffic Analysis
•
Soc Essentials (Cyberops Associate)
•
Snort
•
IBM QRadar SIEM Foundations
•
NetworkMiner
•
NSE4
•
Zeek
•
1-Month Training Diploma on Cyber Security Wireshark
•
Writing Write-ups in Cyber Security Content Malware Analysis Fundamentals from MaharaTech, (In Progress)
Basic Dynamic Analysis
•
Skills eCIR, (In Progress)
Scripting and programming Publications
Bug Hunter
Here are some of my write-ups
Detecting & Investigating attacks with QRadar Walkthrough, Phishing Email from Letsdefend
•
Log Analysis, IOC Monitoring Remote Working from Letsdefend
•
Malicious VBA from Letsdefend
Willingness to learn, Self-Motivated, Teamwork
•
Malicious Doc from Letsdefend
•
Analytical and Critical Thinking HTTP Basic Authentication from Letsdefend
•
Investigate Web Attack from Letsdefend
•
Certificates Walkthrough, Basic Pentesting from Tryhackme
•
Notes from Bug Bounty Bootcamp Book
•
NSE4 Writing Security Courses in Arabic on LinkedIn
•
QRadar Foundation Course in Arabic
Awards
•
Top 2% on Tryhackme
Top 10 in Egypt - Letsdefend