SOC Analyst Course
The SOC Analyst course provides comprehensive training on the role of a Security Operations Center (SOC) analyst. It covers essential skills such as monitoring security alerts, analyzing threats, responding to incidents, and using various security tools and technologies. Participants will learn about network and system security, threat intelligence, and incident management to effectively protect organizations from cyber threats. The course typically includes practical exercises, real-world scenarios, and hands-on experience to prepare individuals for a career in cybersecurity.
SOC Analyst Course Highlights
-
01
Lifetime access
-
02
Real-time case studies
-
03
24*7 Support from our team of administrators
-
04
Lifetime video access
-
05
The project integrated into the Curriculum
-
06
Access to Recorded Sessions
-
07
Interview Prep
-
08
Lab Access – Virtual Labs
Training Calender
Start Date | End Date | Start-End Time | Batch Type | Training Mode | Batch Status | Start Learning |
---|---|---|---|---|---|---|
27th Sep 2024 | 25th Nov 2024 | 09:00 - 13:00 IST | Weekend | Online | (Open) | Enroll Now |
Course Syllabus
Module - 1 (Networking)
Networking
• Understanding of Network
• Network Types
• Network Device Types
• Understanding of IP address
• Understanding OSI Layers
• Understanding Protocols /Port Numbers
• DNS Server and Various types of DNS records
• Understanding of Corporate Network Architecture
Module - 2 (Security Concept)
Security Concept
• Understanding of Security Concept
• Understanding Encryption/Decryption
• Symetric-Asymetric Keys
• Understanding of Firewall Device
• Understanding IPS/IDS Device
• Understanding Proxy Device
• Understanding of Antivirus (AV)
• Understanding Web Application Firewall (WAF)
• Understanding Email Gateway (Email Security)
• Understanding DLP Device
• Understanding of EDR Solutions
• Cyber Kill Chain Process
• Attack Types.
• OWASP TOP 10 Attack
• Understanding Security Frameworks
Module - 3 (Cyber Security)
Cyber Security
•Introduction of SIEM and Splunk Tools.
•Understanding various components of Splunk.
• Various deployment Architecture of Splunk.
•Installation of Splunk Enterprise and Search head.
•Installation of Splunk Universal Forwarders.
•Introduction to Splunk Configuration files
•Integration of Various devices with Splunk such as Windows, Unix, Firewall Syslog etc.
•Understanding various parameter of universal Introduction to Splunk’s User Interface.
•Define Splunk Apps, Installation Splunk Apps and Add-On Learn basic navigations in Splunk.
•Learning about Splunk bucket and Bucket Creating new index.
•Creating Reports and Visualizations, Working with Dashboards
•Creating, managing & Investigating the Alerts.
•Creation of Correlation Rules. Managing Incidents reviewing Splunk Enterprise.
•Analyzing the incidents whether it’s true Positive or False positive.
•Investigating Multiple log sources like Firewall Logs, IDS/IPS Logs, Proxy Logs and Antivirus logs.
Module - 4 (EDR– SentinelOne & Microsoft Defender)
(EDR– SentinelOne & Microsoft Defender)
1. Course Introduction
• Introductions and course logistics
• Course objectives
2. SentinelOne EDR & Incident Response
• Framework identification and process
3. Preparation
• Implement the SentinelOneEDR instance according to organizational requirements
4. Identification
• Use initial detection mechanisms
• Process alerts • Proactive threat hunting
• Incident determination
5. Containment
• Incident scoping
• Artifact collection
• Investigation
6. Eradication
• Hash banning
• Removing artifacts
• Continuous monitoring
7. Recovery
• Rebuilding endpoints
• Getting to a more secure state
8. Lessons Learned
• Tuning SentinelOne EDR
• Incident close out
Our Reviews
What Says Our Happy Clients
START LEARNING
Still Unsure ? Contact us & we will get back to you.
Let’s Connect
Email Information
Trainings: trainings@cyberhuntit.com
Business : sales@cyberhuntit.com
Recruitment information / General – hr@cyberhuntit.com
Address
Meridian Plaza, office No-301A, 3rd floor, Ameerpet Rd, Greenlands, Begumpet, Hyderabad, Telangana 500016