Saeid Forootan
FA
splunk://home-lab / auth-investigation
$ whoami
saeid.forootan
$ echo $FOCUS
SOC / SIEM / Security Analysis
$ ls ~/projects
Splunk-Labs Home-Lab SAC
Splunk Enterprise
Wazuh
Windows Event Logs
Sysmon
Active Directory
PowerShell
Networking
SPL