Security Operation Center (SOC) Analyst Training draft
Program Overview
The Security Operation Center (SOC) Analyst Training program prepares individuals to join or enhance their skills in a SOC team. It covers SOC operations, SIEM deployment, incident detection, and threat intelligence. The program includes hands-on training, equipping participants with skills to identify, validate, and respond to cyber threats, preparing them for careers as SOC analysts.
Program Outline
It offers comprehensive training in SOC operations, log management and correlation, SIEM deployment, advanced incident detection, and response. The program blends theoretical knowledge with hands-on practice, equipping participants with skills to identify and validate intrusion attempts, utilize SIEM solutions, and predict potential threats using threat intelligence. Upon completion, participants can effectively monitor and respond to cyber-attacks and protect their organization's network security. The program aims to prepare individuals for a career in a security operations center within the ever-evolving cybersecurity landscape.
Outline:
The course is structured into eight modules:
- Module 4: Incident Detection and Threat Intelligence: Explores the use of Cyber Threat Intelligence (CTI) with SIEM solutions, MITRE ATT&CK and its integration with SIEM solutions, and advanced threat detection using the predictive capabilities of CTI.
- Module 6: Network and Host-based Security: Covers fundamentals of network and host-based security, common security protocols, different types of firewalls and intrusion detection/prevention systems (IDS/IPS), and implementing security controls for network and host-based systems.
- Module 8: Capstone Project: A hands-on project applying learned knowledge and skills to simulate a real-world cyber incident, analyze and respond to the simulated incident, and present findings and recommendations. It also helps create new career opportunities for those wanting to contribute to a SOC team.
Other:
The administration is rescheduling upcoming events due to the COVID-19 situation. Updates will be posted.