Skip to content
View ElidioColonnaPXL's full-sized avatar
  • Belgium
  • 16:06 (UTC -12:00)

Block or report ElidioColonnaPXL

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
ElidioColonnaPXL/README.md

Hi, I'm Eli

I'm a IT student who enjoys learning by building things and investigating how attacks show up in real telemetry. Most of my work here focuses on blue-team security: homelabs, detection engineering, digital forensics, network analysis, and the occasional automation script. I'm still learning, and I use GitHub to document that process and turn what I study into practical projects. Feedback or Invitations are always welcome.

Projects

Project Description
PentaSOC Raspberry Pi-based blue-team homelab for SIEM, network monitoring, detection validation, and incident-response practice.
DetectionFoundry Behaviour-driven Sigma, YARA, KQL, SPL, and network detections with ATT&CK mapping, testing, and tuning.
IncidentDossier Evidence-led DFIR case studies featuring timelines, technical findings, IOCs, and response recommendations.
infosec-wiki Obsidian-compatible cybersecurity knowledge base covering SOC operations, DFIR, detection, and network security.

Skills

Area Practical evidence
SIEM implementation and log analysis PentaSOC · infosec-wiki
Detection engineering and rule development DetectionFoundry
Network traffic monitoring and attack detection PentaSOC · DetectionFoundry
Incident investigation and timeline reconstruction IncidentDossier
Digital forensics and malware triage IncidentDossier · infosec-wiki
Security scripting and automation PentaSOC · DetectionFoundry

Certifications

HTB Certified Defensive Security Analyst (CDSA) CompTIA A+

Technical Toolkit

SIEM and Log Analysis

Microsoft Sentinel Splunk Elastic

Detection and Network Analysis

Sigma YARA Wireshark Suricata Snort Zeek

Scripting and Engineering

Python PowerShell Bash Git

Current Focus

  • Developing and documenting the PentaSOC homelab
  • Building and validating behaviour-based detections
  • Publishing structured DFIR investigation reports
  • Expanding Microsoft Sentinel, Defender XDR, and KQL skills toward SC-200

Pinned Loading

  1. PentaSOC PentaSOC Public

    Raspberry Pi blue-team homelab for SIEM, network monitoring, detection validation, and hands-on incident response.

  2. IncidentDossier IncidentDossier Public

    Evidence-led DFIR case studies with timelines, technical findings, IOCs, ATT&CK mapping, and response recommendations.

  3. infosec-wiki infosec-wiki Public

    SOC investigations, DFIR, threat detection , incident analysis and labs

    PowerShell 1

  4. DetectionFoundry DetectionFoundry Public

    Tested Sigma, YARA, KQL, SPL, and network detections with ATT&CK mapping, validation, tuning, and SOC automation.