I will be your soc analyst for elastic, sentinel, defender
SOC and Automation Engineer
About this Gig
Your SIEM is only as good as the analyst watching it.
Most businesses deploy Elastic, Sentinel, or Wazuh and assume they're protected but alerts pile up unreviewed, rules stay at default, and real threats hide in the noise. By the time something is caught, it's already too late.
I'm a SOC Engineer with hands-on experience detecting and responding to real threats in production environment.
What makes me different from every other SOC analyst on Fiverr: I don't just analyze I
automate. My n8n background means I can build self-monitoring systems that alert your team
24/7, even when no one is watching.
What I Can Do For You:
- Real-time log analysis & alert triage
- Threat hunting across your environment
- Active incident response & containment
- Custom KQL/Sigma detection rules
- False positive reduction & rule tuning
- Automated alerting via Slack/Email/WhatsApp
- SIEM health monitoring & dashboards
Tools: Elastic/ELK · Microsoft Sentinel · Wazuh · Microsoft Defender · KQL · Sigma
Message me describing your environment and I'll tell you exactly where your gaps are
Device:
Desktop
•
Laptop
•
Server
•
Router
Operating system:
Windows
•
Linux
•
Ubuntu
My Portfolio
FAQ
What do you deliver at the end?
A written findings report covering every alert reviewed, confirmed threats, false positives tuned, and recommended next steps. Plus any rules or automation built during the engagement.
Do you work with environments outside Elastic, Sentinel, and Defender?
No
Can you provide real-time 24/7 monitoring?
I provide monitoring on a set schedule, and for continuous 24/7 monitoring we can design a flexible plan with multiple slots.
Can you set up automated alerting alongside the SOC work?
Yes, this is my biggest differentiator. Using n8n, I can build automated alert pipelines that notify your team via Slack, Email, or WhatsApp the moment something suspicious is detected. Available in the Premium package.
Is my data safe during the engagement?
Yes. I operate under strict confidentiality.

