Skip to content
View turkiabdullah3-dev's full-sized avatar
:shipit:
:shipit:

Block or report turkiabdullah3-dev

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
turkiabdullah3-dev/README.md
Turki Abdullah Almuraykhi — SOC and DFIR Analyst

Email Portfolio Riyadh, Saudi Arabia



Focus areas

Analyst Profile

Current Focus

Cybersecurity graduate focused on SOC operations, incident response, and digital forensics. Practical experience includes SIEM alert review, IOC analysis, incident documentation, Windows forensic artifacts, evidence handling, and technical reporting.

Currently completing the Advanced Cybercrime & Digital Forensic Investigation Bootcamp at Tuwaiq Academy in Riyadh.

Operational Snapshot

  • 50+ weekly security events supported during SOC operations
  • 30+ security and operational cases documented monthly
  • 6+ Power BI dashboards and automated Excel reports built
  • Reporting workflow effort reduced by approximately 40%
  • Hands-on work with Event Logs, MFT/USN, memory, network forensics, and ransomware analysis

Workflow: Monitor → Validate → Triage → Investigate → Correlate → Document → Escalate


Featured Security Engineering

Local-first CTI & OSINT Investigation Platform

Case-based investigation workspace for evidence handling, IOC extraction and governed enrichment, timelines, relationship graphs, and analyst findings.

CTI OSINT DFIR IOC Analysis Tor MITRE ATT&CK

Local SOC & DFIR Workbench

Transforms raw logs and evidence into structured incident cases with hashing, chain-of-custody records, detections, IOC extraction, ATT&CK mapping, timelines, entity graphs, Sigma-style rules, and reports.

SOC DFIR Detection IOC Sigma Forensics

Investigation Labs

Lab Scope
Ransomware Investigation & Cryptography Evidence handling, hash verification, encrypted-file workflow, decryption process, forensic reporting
DVWA SQL Injection & Web Security Controlled SQL injection testing, vulnerable parameter analysis, attack behavior, mitigation reporting

Experience

Mar 2026 — Jun 2026 SOC Analyst — Security Operations Support
Ministry of Education, Saudi Arabia
SIEM alert review · Initial triage · Case tracking · Escalation support · Power BI / Excel reporting
Dec 2025 — Mar 2026 Incident Response Analyst — DFIR Support
Ministry of Education, Saudi Arabia
Windows artifacts · Event Logs · MFT/USN · Evidence handling · Chain of custody · Investigation documentation
Sep 2024 — Nov 2024 Cybersecurity Intern — Security Operations
Tatweer Educational Technologies (TETCO), Saudi Arabia
Security event review · SIEM alert validation · Triage support · Technical case documentation

DFIR Training & Education

Tuwaiq Academy

Advanced Cybercrime & Digital Forensic Investigation Bootcamp
Jun 2026 — Present · Riyadh

Evidence acquisition · Chain of custody · Forensic imaging · Windows Event Logs · MFT/USN · Memory forensics · Network forensics · Ransomware analysis · Structured forensic reporting

Gulf Colleges

Bachelor's Degree in Cybersecurity
Graduated May 2025 · Saudi Arabia

Focused on cybersecurity foundations with practical security projects and technical lab work.


Security Toolkit

SIEM DFIR MITRE IOC Windows Linux Python SQL PowerBI Excel

SOC & Monitoring · SOC Monitoring · SIEM Alert Triage · Initial Incident Analysis · Threat Detection · IOC Analysis · Log Analysis · Escalation · IDS/IPS · Firewalls
DFIR · Evidence Acquisition · Chain of Custody · Windows Forensics · Memory & Network Forensics · Ransomware Analysis · Forensic Reporting
Reporting · Power BI · Excel · KPI Dashboards · SQL · Python · Technical Documentation


Professional Memberships

  • Saudi Council of Engineers (SCE) — Specialist Membership, Cybersecurity · Membership No. 1278005 · Issued Jul 2026
  • Information Technology Specialist Membership — GOVI · Issued Aug 2025

GitHub Activity

GitHub statistics GitHub streak



Arabic — Native  ·  English — Intermediate

Pinned Loading

  1. SATR-NX-v0.1.0-Local-SOC-DFIR-Intelligence-Platform SATR-NX-v0.1.0-Local-SOC-DFIR-Intelligence-Platform Public

    Local-first SOC & DFIR Platform for Kali Linux

    Python 1

  2. tka2cy tka2cy Public

    JavaScript