12 Sections
73 Lessons
10 Weeks
Expand all sections
Collapse all sections
SOC Fundamentals
7
1.1
1.1 SOC Organisational Structure
1.2
1.2 SOC Workflow
1.3
1.3 Introduction to SOC Tools Part-1
1.4
1.4 Introduction to SOC Tools Part-2
1.5
1.5 Day in the life of a SOC Analyst
1.6
1.6 SOC KPIs and Metrics
1.7
1.7 Practical Task
Networking for SOC Analysts
6
2.1
2.1 OSI & TCP-IP Models
2.2
2.2 Ports and Protocols
2.3
2.4 DNS Tunnelling and Beaconing
2.4
2.3 Packet Inspection
2.5
2.5 Common Attack Paths
2.6
2.6 Practical Task PCAP Analysis
OS Internals – Windows & Linux
7
3.1
3.2 Windows Core Processes
3.2
3.3 Windows Registry and Logs
3.3
3.1 Windows Architecture
3.4
3.4 Linux architecture
3.5
3.5 Linux Logs
3.6
3.6 Common Commands
3.7
3.7 Common Commands Part-2
Threat Landscape & MITRE ATTACK
5
4.1
4.1 Understanding Threats
4.2
4.2 Understanding TTPs
4.3
4.4 Threat Intelligence Platforms
4.4
4.3 Mitre Attack
4.5
4.5 Practical Task
SIEM & Log Management
7
5.1
5.1 What is SIEM
5.2
5.2 Log types in SIEM
5.3
5.3 Log Lifecycle
5.4
5.6 Simple SPL Queries
5.5
5.5 Sigma Rules
5.6
5.4 Splunk
5.7
5.7 Practical Task
L1 Alert Monitoring & Triage
5
6.1
6.2 Alert Categories
6.2
6.1 How alerts are generated
6.3
6.3 Alert Enrichment
6.4
6.4 Alert Correaltion
6.5
6.5 Practical Task
L1-Level Investigations
7
7.1
7.1 Investigating a brute force attack
7.2
7.3 Investigating Malwares
7.3
7.2 Investigating Phishing Attacks
7.4
7.4 Investigating Data Exfiltration Attack
7.5
7.5 Investigating C2
7.6
7.6 Root Cause Analysis
7.7
7.7 Practical Task
SOC Documentation & Escalation
4
8.1
8.1 SOC Ticket Lifecycle
8.2
8.3 Communication With Stakeholders
8.3
8.2 SOC Investigation Reports
8.4
8.4 Practical Task
Threat Intelligence in Practice
8
9.1
9.2 Operationalising Threat Feeds
9.2
9.3 OSINT in SOC
9.3
9.4 Playbooks in SOC
9.4
9.1 Threat Actor Profiling
9.5
9.5 Playbooks Practical Task
9.6
9.6 AI Augmented Triage
9.7
9.8 CTI Practical Task
9.8
9.7 AI in Threat Intelligence
Detection Engineering & Log Correlation (L2 Focus)
7
10.1
10.2 Rule Development
10.2
10.5 Reverse Engineering Detection Failures
10.3
10.1 Detection Engineering 101
10.4
10.4 Deception Techniques in Detection
10.5
10.7 Practical Task 2
10.6
10.3 Validating Detections
10.7
10.6 Practical Task 1
Incident Response & Case Management
6
11.1
11.3 Eradication
11.2
11.1 Incident Response in SOC
11.3
11.2 Containment
11.4
11.6 Practical Task
11.5
11.4 Recovery and Back-up
11.6
11.5 Lessons Learned
Capstone – Simulated SOC Investigation
4
12.1
12.1 Capstone Project Part-1
12.2
12.3 Additional Project 1
12.3
12.2 Capstone Project Part-2
12.4
12.4 Additional Project 2
SOC Analyst Level 1 & 2 Masterclass
Curriculum
This content is protected, please
login
and enroll in the course to view this content!
Home
Courses
Search
Search
Account
Login with your site account
Lost your password?
Remember Me
Modal title
Main Content