CySA+ / SOC Analyst Blue Team Course
0 of 18 lessons complete (0%)
Exit Course
The SOC and the Analyst
How a Security Operations Centre Works
Preview
The Analyst's Mindset and Method
Adversary Behaviour and the Kill Chain
3 lessons
Telemetry and Tooling
Endpoint Telemetry
Network and Cloud Telemetry
The Analyst Platform: SIEM, EDR and Beyond
3 lessons
Detection and Triage
How Detections Are Built and Tuned
Alert Triage Under Pressure
Vulnerability Management from the Analyst's Seat
3 lessons
Investigation and Threat Hunting
Investigating an Endpoint Compromise
Investigating Identity and Cloud Incidents
Threat Hunting
3 lessons
Incident Response
The Incident Response Lifecycle
Containment and Eradication
Recovery, Lessons Learned and Detection Improvement
3 lessons
Reporting and the Career
Writing Incident Reports and Briefings
Metrics, Improvement and Threat Intelligence
Preparing for CySA+ and the Analyst Career
3 lessons
Detection and Triage
How Detections Are Built and Tuned
You don’t have access to this lesson
Please register or sign in to access the course content.
Take course
Sign in
Previous
Next