Skip to content
View HannachiHassen's full-sized avatar
  • USA

Block or report HannachiHassen

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
HannachiHassen/README.md

πŸ›‘οΈ Hassen Hannachi

SOC Analyst Β· Security Operations Β· AWS Certified Β· CCNA

LinkedIn Medium Gmail GitHub


πŸ‘‹ About Me

I'm a SOC Analyst with 1+ year of hands-on security operations experience, backed by 4+ years as a QA Engineer

That combination isn't common β€” and it's my edge. I bring structured, test-driven thinking to every alert I triage, every log I analyze, and every incident I document. My QA background means I approach threat analysis the same way I approached defect detection: methodically, with a sharp instinct for finding what others miss.

Current Focus:  SOC Operations Β· Threat Detection Β· Incident Response Β· SIEM Analysis
Target Role:    Tier I SOC Analyst / Threat Analyst

πŸ” Security Stack

SIEM & Monitoring

Splunk Wazuh ELK Stack NTOPNG

Threat Analysis & Response

MITRE ATT&CK Wireshark Nmap Nessus OpenVAS

Cloud & Infrastructure

AWS Linux VMware VirtualBox Windows

Frameworks & Standards

NIST ISO 27001 NIST CSF


πŸ’» Tech Stack:

Version Control

Git GitHub GitHub Actions

Web

HTML5 CSS3 JSON XML

Database

MySQL MicrosoftSQLServer PostgreSQL

Others

JIRA Jenkins LaTeX


πŸŽ“ Certifications

Status Certification
βœ… Completed AWS Cloud Practitioner
βœ… Completed Cisco CCNA
βœ… Completed Cisco CCENT
πŸ“š In Progress CompTIA Security+ (SY0-701)
πŸ“š In Progress CompTIA Network+ (N10-009)
πŸ“š In Progress Microsoft SC-900

πŸ§ͺ SOC Skills in Practice

Detection & Analysis

  • SIEM alert triage & correlation
  • Log analysis (Sysmon, Windows Event, Linux)
  • MITRE ATT&CK classification
  • Network traffic analysis (Wireshark)
  • Vulnerability scanning (Nessus, OpenVAS)

Response & Documentation

  • Incident lifecycle management (JIRA)
  • Attack vector & entry point mapping
  • Security audit participation
  • NIST SP 800-53 / ISO 27001 enforcement
  • Evidence preservation (FTK, Autopsy)

πŸ“ Featured Medium Articles

Hands-on SIEM labs and cybersecurity walkthroughs


πŸ“‚ Featured Repositories




⚑ Recent Activity


πŸ“Š GitHub Stats



Profile Views


🎯 Currently Working On

  • πŸ”¬ Expanding SOC labs β€” building detection rules and hunting playbooks in Wazuh & Splunk
  • πŸ“š Security+ & Network+ β€” targeting certification completion in 2026
  • ✍️ Medium blog β€” publishing hands-on SIEM walkthroughs and SOC methodology write-ups
  • 🧠 CyberDefenders & TryHackMe β€” consistent blue team practice

Open to SOC Analyst Β· Tier I Analyst Β· Threat Analysis opportunities

πŸ“§ Email Β· πŸ’Ό LinkedIn Β· ✍️ Medium

Pinned Loading

  1. Network-Plus-N10-009-Study-Series Network-Plus-N10-009-Study-Series Public

    A structured, chapter-by-chapter breakdown of everything covered in the CompTIA Network+ exam.

    1

  2. Splunk-Projects-Beginners Splunk-Projects-Beginners Public

    This repository features a collection of hands-on projects focused on analyzing different types of logs using Splunk SIEM. Each project includes clear, step-by-step guidance on uploading sample log…

  3. Basic-Java-Tutorial Basic-Java-Tutorial Public

    Java

  4. Basic-Selenium-Tutorial Basic-Selenium-Tutorial Public

    Java

  5. SQL_BasicTesting SQL_BasicTesting Public

    Basic SQL Testing with Selenium-java for SQL command DML (Data Manipulation Language), SELECT Statement

    Java

  6. ExtentReport-TestNG-Listeners ExtentReport-TestNG-Listeners Public

    Java