Detect
Suricata and CrowdSec identify suspicious activity from network and reverse-proxy telemetry.
Security Operations
A joined-up set of homelab security controls that turns telemetry, scan results and protective services into actions that can be reviewed and operated with confidence.
Why SecOps Matters
A collection of security tools does not create a security operation on its own. Signals need to be monitored, findings need context, and changes need to be controlled so protective measures improve the platform rather than create new risk.
SecOps brings prevention, detection, vulnerability assessment and response into one operating model. It supports quicker investigation and provides evidence that controls are working as intended.
Operating Model
Security controls are useful only when they are visible, maintained and understood.
Suricata and CrowdSec identify suspicious activity from network and reverse-proxy telemetry.
Cloudflare edge controls and Pi-hole DNS filtering reduce exposure before traffic reaches services or client devices.
Greenbone scans surface credible weaknesses and prioritise new or worsened findings.
Observability and review-led playbooks support measured, repeatable remediation.
Security Capabilities
01 · Prevention
Cloudflare provides the first external layer of prevention through DNS, TLS, web application firewall rules, rate limiting and DDoS mitigation for publicly exposed services routed through it.
Pi-hole adds an internal layer, filtering DNS requests across the network and stopping client devices resolving known advertising, tracking and unwanted domains before a connection can be made.
View Pi-hole project →View dashboard snapshot →02 · Detection
CrowdSec combines behavioural detection, community intelligence and automated firewall decisions for internet-facing and infrastructure services. For direct access through the public IP or DuckDNS, it sees the real source address and can block decisions at the origin firewall.
View CrowdSec case study →03 · Response
Greenbone identifies credible weaknesses across managed Linux systems so remediation can be prioritised, approved and applied in a controlled way.
View Greenbone case study →Engineering Outcome
SecOps ties together prevention, detection, assessment and remediation so the individual tools form one understandable, supportable service.