Back to Projects
Security

Automated Threat Hunter

An AI-powered system using n8n to detect and respond to security anomalies in real-time.

Automated Threat Hunter

Project Overview

An automated SOC analyst that never sleeps. This system digests logs from various sources (SIEM, CloudWatch, Firewall), analyzes them for anomalous patterns using AI models, and triggers automated response playbooks via n8n to isolate compromised assets or block malicious IPs.

Key Features

Real-time log anomaly detection
Automated incident response playbooks
Integration with major cloud providers
Alert enrichment with threat intelligence

Tech Stack

n8nElasticsearchPythonAWS Lambda

Tags

#n8n#AWS#AI