CySA+ / SOC Analyst Blue Team Course
0 of 18 lessons complete (0%)
Exit Course
The SOC and the Analyst
How a Security Operations Centre Works
Preview
The Analyst's Mindset and Method
Adversary Behaviour and the Kill Chain
3 lessons
Telemetry and Tooling
Endpoint Telemetry
Network and Cloud Telemetry
The Analyst Platform: SIEM, EDR and Beyond
3 lessons
Detection and Triage
How Detections Are Built and Tuned
Alert Triage Under Pressure
Vulnerability Management from the Analyst's Seat
3 lessons
Investigation and Threat Hunting
Investigating an Endpoint Compromise
Investigating Identity and Cloud Incidents
Threat Hunting
3 lessons
Incident Response
The Incident Response Lifecycle
Containment and Eradication
Recovery, Lessons Learned and Detection Improvement
3 lessons
Reporting and the Career
Writing Incident Reports and Briefings
Metrics, Improvement and Threat Intelligence
Preparing for CySA+ and the Analyst Career
3 lessons
Investigation and Threat Hunting
Threat Hunting
You don’t have access to this lesson
Please register or sign in to access the course content.
Take course
Sign in
Previous
Next