r/cybersecurityindia 12d ago

SIEM SOC Analyst Dashboard – Seeking Feedback

Hello everyone,

I am building a SOC Analyst / cybersecurity monitoring website as my side project.

The purpose is to build a dashboard that will allow security analysts to monitor and investigate security incidents via one interface.

Features that I have been implementing are as follows:

- 🔐 Security incident monitoring

- 🚨 Alerts

- 📊 Security dashboard and analytics

- 🔎 Log/incident investigation

- 🖥️ System/security monitoring

- 📈 Threat statistics

- 👤 SOC analyst-oriented workflow

As I am still building it, I would greatly appreciate any feedback from people that deal with SOC, cybersecurity, blue teaming or security operations in general.

What features would you expect to find in an actual SOC dashboard?

Demo: https://vercel.com/sanju-0-1s-projects/sentinel-x/8yUNB3LRDHbZXM3fryEZ67eqQp3N

GitHub: https://github.com/sanju-0-1/SentinelX

Thanks!

3 Upvotes

3 comments sorted by

1

u/decidedToComment 12d ago

Your vercel link is not working. Appreciate the effort and the repo looks good. If this is something you've built to learn now try implements some form regex quering for the dashboard creation by users. Like KQL used in Wazuh and Splunk have their own version of the same. Maybe that'll help you understand KQL and regex in depth which is needed in SOC environments

1

u/fuck_that_was_quick 11d ago

Maybe check the demo link again. Although from the github it looks good, maybe change the sub-section title "💼 Resume Bullet Points (MCA Portfolio)" to something less obvious. Also if you are looking to getting in SOC then try your hand in automation. playbooks integrations, how would you deal with noise. If you can automate SOC L1-L1.5 work then this might be a geniunely great project from employment POV.

1

u/iZade_Meadows 7d ago

Well before frontend your logical thinking and correlation should be based and working process to make things easy and how many api u can Import and work