Post Job Free
Sign in

SOC Analyst Intern - Cybersecurity Enthusiast and SOC Lab Builder

Location:
Di An, Vietnam
Posted:
April 03, 2026

Contact this candidate

Resume:

LU HOANG DUY

*************@*****.*** +84-082*-***-*** github.com/duylu306 Ho Chi Minh City, VN Summary

Third-year Computer Science student at HCMUT with a strong focus on cybersecurity and building practical SOC labs. Experienced with ELK Stack, Zeek, Suricata, Wazuh, and basic incident response workflows. Passionate about digital forensics, CTF challenges, and cryptography attacks. Seeking a SOC Analyst or cybersecurity internship role.

Education

Ho Chi Minh City University of Technology (HCMUT) - VNU-HCM 2023 – Present Bachelor of Computer Science (3rd Year)

• Certifications & Training: Hack The Box (HTB) SOC Analyst Path, TOEIC (990/990)

• Relevant Coursework: Advanced Cryptography & Coding Theory, Network Security, Operating Systems, Cryptography and Network Security

Skills

Security Monitoring: ELK Stack (Elasticsearch, Kibana, Logstash, Filebeat), Wazuh, Splunk, TheHive Network Security: Zeek, Suricata IDS/IPS, Nmap, Wireshark, Cisco Configuration, TCP/IP, OSI Model Crypto & Forensics: Lattice Attacks (HNP, ECDSA), pwntools, binwalk, zsteg, HxD, FTK imager, Votality, Autopsy

Programming & Scripting: Python, PowerShell, Shell Script, SageMath, C/C++ Other Tools: Docker, VirtualBox

Projects & Competitions

Autonomous SOC Framework github.com/duylu306/Autonomous-SOC-Framework

• Built a fully containerized end-to-end SOC lab using ELK Stack, Zeek, Suricata, Filebeat, and ML detection

• Engineered layered detection rules mapped to MITRE ATT&CK, covering signature-based network threats, suspicious parent-child process chains (T1059.001), DNS tunneling exfiltration via entropy analysis, and C2 beaconing periodicity.

• Implemented an Isolation Forest ML model to dynamically detect unusual authentication spikes and reduce false positives.

• Developed Python SOAR playbooks to automate incident response, enabling instant endpoint isolation via local firewalls.

SOC Home Lab github.com/duylu306/SOC-HomeLab-projects

• Deployed Wazuh and TheHive for centralized log analysis and active threat hunting

• Created practical detection labs for DLL Hijacking and Unmanaged PowerShell + C# injection ECDSA Hidden Number Problem (HNP) Lattice Attack github.com/duylu306/ECDSA_HNP_exploit

• Developed a working lattice reduction attack (LLL) in Python and SageMath to recover the private key from 5 biased nonces on NIST P-256

• Automated signature collection from SMC challenge server and full verification CTF Competitions Oct 2025 – Present

• Actively compete in Capture The Flag (CTF) events with a focus on Forensics

• Cleared the majority of Forensics challenges on picoCTF

• Published comprehensive writeups and solutions for CryptoHack cryptography challenges on GitHub



Contact this candidate