HOW I WORK
- Identify a need
- Build a first version
- Test it in context
- Document the work
BURGOS · SPAINPERSONAL ARCHIVE
Junior SOC Analyst / Blue Team · SAL1 certified
Computer Engineering graduate from the University of Burgos. I practise triage in Splunk and Elastic, traffic analysis with Wireshark and investigations using MITRE ATT&CK. Top 2% on TryHackMe (Sep 2026), with my own SOC lab featuring 30 scenarios.
View CVScroll to explore my projects

PROFILE · CASE FILE 00
ABOUT MEDiego UrbanejaJunior SOC Analyst · Burgos · open to relocation within Spain / EUView profile
CYBERSECURITY · 2026THM Fieldbook NOW
HOW I WORK
SOC-Simulator / triage console GITHUB / URBII22
SOC-Simulatorthm-fieldbookthm-academyView projects CASE FILES 01–03
Projects I use to practise security analysis, and tools I have built to support study and investigation.
Local SOC lab with 30 triage and investigation scenarios covering around 2,950 synthetic events from 12 sources, with SPL/KQL queries and Sigma rules for each scenario.
Lab notebook: records each finding with its evidence, suggests the next check and exports writeups and playbooks.
Case study of the previous version of this website, which included a private workspace: how I separated it from the public site using server-side authorisation, row-level security (RLS) and publication snapshots without private data.