Skip to content
View leratomakhasane's full-sized avatar

Organizations

@EddieHubCommunity

Block or report leratomakhasane

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
leratomakhasane/README.md

👋 Hi, I'm Lerato Makhasane

🛡️ Cybersecurity Analyst | SOC · Incident Response · DFIR | South Africa 🇿🇦


🧠 About Me

Cybersecurity practitioner based in South Africa, actively building toward my first SOC Analyst or Incident Response role through hands-on labs, real-world simulation platforms, and documented investigations.

I don't just follow courses — I investigate, reconstruct attack timelines, and write about what I find.

I want to be on the side that catches the threat before the damage is done. Everything I'm building here is working toward that.

Currently open to: Entry-level SOC Analyst · Incident Response · DFIR Location: South Africa · Open to remote


📁 Portfolio

Repo Focus Status
tryhackme-writeups OSINT · CTF · MITRE ATT&CK mapping ✅ Active
kc7-investigations KQL · Threat hunting · Attack timeline reconstruction ⏳ In progress
letsdefend-soc-cases SOC alert triage · Sigma rules · Detection engineering ⏳ In progress
mydfir-30-day-challenge 30-day SOC analyst challenge · Daily logs ▶️ Starting soon
cisco-networking-labs Packet Tracer · VLANs · Routing · ACLs ⏳ In progress

🧭 Current Focus

▶️ Active MYDFIR 30-Day SOC Analyst Challenge
⏳ In progress KC7 Encryptodera — write-up
⏳ In progress LetsDefend alert triage cases
⏳ In progress Cisco Networking labs
✅ Complete TryHackMe OhSINT write-up

🧰 Tools & Technologies

🔍 Detection & Analysis

Splunk KQL Sigma Wireshark


🧠 Threat Intelligence & Frameworks

MITRE ATT&CK


🕵️ OSINT & Forensics

ExifTool OSINT Zenmap


🌐 Networking & Systems

Packet Tracer Linux Windows


💻 Platforms

TryHackMe KC7 LetsDefend CyberDefenders


📜 Certifications & Training

🎯 Hands-On Achievements

THM2

THM1

KC7c

KC7b

KC7a


🏆 Professional Certifications

Google


🔐 Security Specialisations

DFE

EHE

NDE


🧱 Foundations

Cisco2

IBM3

Cisco3

IBM

IBM2

Fortinet

Cisco1


🔄 In progress: CompTIA Security+


🎓 Education

Qualification Institution Year
National Diploma in Information Technology Central University of Technology 2014

🔗 Connect

LinkedIn TryHackMe KC7 X

Pinned Loading

  1. tryhackme-ohsint tryhackme-ohsint Public

    TryHackMe OhSINT write-up - OhSINT recon mapped to MITRE ATT&CK TA0043.

  2. LetsDefend-Sigma-Challenge LetsDefend-Sigma-Challenge Public

    Detection engineering practice: Write-up and analysis of a LetsDefend challenge using a Sigma rule to detect ransomware activity leveraging bitsadmin.exe.

    1