References and Source Register
This register separates source-derived learner information from recommended technical-development references.
Learner source material
The public IDR was built from:
- the submitted Career Growth and Learning Assessment response for Nkateko Mtembi;
- the supplied professional profile / resume PDF;
- the existing public SOC Analyst portfolio referenced by the supplied profile.
The public website intentionally does not reproduce private contact details or the complete raw questionnaire response.
Source-derived learner facts represented in the IDR
- junior SOC analyst career direction;
- Wazuh SIEM home-lab experience;
- interest in SIEM platforms;
- threat detection, log analysis and incident-response focus;
- cloud security, security monitoring and Windows strengths listed in the supplied profile;
- Cisco, GitHub, Google and professional-skills interests from the assessment;
- self-paced learning preference;
- preference for regular one-on-one feedback;
- willingness to participate in cross-functional work;
- stated long-term leadership ambition;
- communication support need and time-management challenge;
- foundation cybersecurity/networking learning listed in the supplied profile.
Technical-development references
Wazuh
- Wazuh Documentation — https://documentation.wazuh.com/
- Wazuh Ruleset — https://documentation.wazuh.com/current/user-manual/ruleset/index.html
Windows and Microsoft security
- Windows Security documentation — https://learn.microsoft.com/windows/security/
- Windows security auditing — https://learn.microsoft.com/windows/security/threat-protection/auditing/
- Microsoft Sentinel — https://learn.microsoft.com/azure/sentinel/
- Kusto Query Language — https://learn.microsoft.com/kusto/query/
Threat behaviour and incident response
- MITRE ATT&CK — https://attack.mitre.org/
- NIST Cybersecurity Framework — https://www.nist.gov/cyberframework
- CISA — https://www.cisa.gov/
Networking
- Cisco Skills for All — https://skillsforall.com/
- Cisco Networking Academy — https://www.netacad.com/
Cloud security
- Google Cloud Security — https://cloud.google.com/security
- Microsoft Azure Security — https://learn.microsoft.com/azure/security/
- AWS Security — https://docs.aws.amazon.com/security/
GitHub and engineering workflow
- GitHub Skills — https://skills.github.com/
- GitHub Docs — https://docs.github.com/
- GitHub Actions — https://docs.github.com/actions
Broad junior-security framework
- CompTIA Security+ — https://www.comptia.org/certifications/security
Reference-use rules
- Re-check vendor certification pages before booking an exam because names and requirements change.
- Use primary documentation to support technical conclusions.
- Frameworks organise thinking; they do not replace investigation evidence.
- Public portfolio artefacts must use safe, sanitised or synthetic data.