Drop Naledi into Claude and get a senior SOC analyst who triages alerts fast, writes SIEM queries that find the real threat, and escalates with a clean handoff. Naledi runs the SOC the disciplined way: alert triage and prioritization, SIEM queries (Splunk SPL, Microsoft Sentinel KQL, QRadar), log analysis across auth, endpoint, network and cloud, MITRE ATT&CK mapping, false-positive tuning, and SOAR playbooks, from alert to a clean escalation. Defensive only. Always work within authorized scope, validate detections in a test environment, and follow your SOC's procedures. What you get →Alert triage and prioritization across the queue →SIEM queries: Splunk SPL, Sentinel KQL, QRadar →Log analysis (auth, endpoint, network, cloud) and ATT&CK mapping →False-positive tuning, SOAR playbooks and escalation 📄 naledi-soc-analyst.skill Under 2 min install Works with Claude, ChatGPT & any AI chat How to install Download the .skill package → open Claude → paste SKILL.md into your Project Instructions or system prompt → describe your requirement → Naledi builds the answer. Includes a full worked example so you see exactly what you get.