Mastering SOC- Security Operation Center

About Course

  • Lectures
    Theoretical concepts explained with real-world examples.
  • Hands-on Labs
    Practical sessions using industry-standard tools.
  • Case Studies
    Analysis of real-world cybersecurity incidents.
  • Projects
    Simulated SOC operations to apply knowledge in a controlled environment.

Course Content

Phase 1: Fundamentals
Week 1: Networking Essentials What You’ll Learn: Understand the OSI Model and its layers. Dive into TCP/IP architecture, IP addressing, and subnetting. Explore key protocols like HTTP, DNS, FTP, and SMTP. Learn how to capture and analyze network traffic using Wireshark. Hands-On Activities: Install Wireshark and capture live network traffic. Analyze HTTP and DNS packets to understand their structure. Practice subnetting exercises to divide IP ranges efficiently. Tools You’ll Use: Free & Open Source: Wireshark, Nmap, tcpdump. Proprietary: SolarWinds Network Performance Monitor.

  • Week 1: Networking Essentials
  • Week 2: Networking Advanced Fundamentals
  • Week 3: Linux Fundamentals
  • Week 4: Linux System Administration
  • Week 5: Windows Server Basics

Phase 2: Core Defensive Security
Week 6-7: Windows System Administration What You’ll Learn: Configure Group Policy Objects (GPOs) in Active Directory. Understand LDAP and Kerberos authentication. Write advanced PowerShell scripts for automation. Integrate Azure AD with on-premise Active Directory. Hands-On Activities: Configure GPOs to enforce password policies. Write PowerShell scripts to manage users and roles. Integrate on-premise AD with Azure AD. Tools You’ll Use: Free & Open Source: PowerShell Core. Proprietary: Azure Active Directory, Microsoft Endpoint Manager Week 8: Security Fundamentals What You’ll Learn: Understand the CIA Triad (Confidentiality, Integrity, Availability). Explore common threats like phishing, malware, and DDoS. Learn about SOC functions and security tools (SIEM, EDR). Hands-On Activities: Simulate a phishing attack and analyze its impact. Use OpenVAS to scan for vulnerabilities. Tools You’ll Use: Free & Open Source: OpenVAS, Metasploit Community Edition. Proprietary: Qualys, Nessus Pro. Week 9: IDS/IPS Basics What You’ll Learn: Understand Intrusion Detection and Prevention Systems (IDS/IPS). Configure Snort or Suricata for intrusion detection. Hands-On Activities: Install and configure Snort for intrusion detection. Analyze alerts generated by Snort. Tools You’ll Use: Free & Open Source: Snort, Suricata. Proprietary: Palo Alto Threat Prevention, Cisco Firepower. Week 10: Threat Detection & SIEM Basics What You’ll Learn: Understand SIEM (Security Information and Event Management). Write correlation rules to detect threats. Hands-On Activities: Set up Wazuh or ELK Stack. Write correlation rules to detect suspicious activity. Tools You’ll Use: Free & Open Source: Wazuh, Graylog, ELK Stack. Proprietary: Splunk, QRadar

Phase 3: Advanced Security Operations
Week 14-15: Threat Intelligence What You’ll Learn: Gather Open Source Intelligence (OSINT). Use MISP and Shodan for threat intelligence Hands-On Activities: Use Shodan to identify exposed devices. Analyze threat feeds in MISP Tools You’ll Use: o Free & Open Source: MISP, Shodan. Proprietary: Recorded Future, ThreatConnect.

Phase 4: Capstone Projects & Placement Preparation
Week 21-22: Capstone Projects What You’ll Learn: Build a SOC environment from scratch. Simulate Advanced Persistent Threat (APT) attacks and respond. Hands-On Activities: Use VirtualBox and Docker to create a SOC lab. Simulate an APT attack and analyze logs using SIEM. Tools You’ll Use: Free & Open Source: VirtualBox, Vagrant, Docker, Kubernetes. Proprietary: VMware Workstation Pro. Week 23: Mock SOC Operations What You’ll Learn: Simulate real-world SOC analyst operations. Detect and respond to incidents. Hands-On Activities: Use TheHive to manage incidents. Analyze logs and respond to simulated threats Tools You’ll Use: Free & Open Source: VirtualBox, TheHive. Proprietary: Splunk, QRadar. Week 24: Placement Preparation What You’ll Learn: Build a cybersecurity-focused resume. Prepare for SOC-specific interview questions. Hands-On Activities: Participate in mock interviews. Prepare and refine your resume.

Professional Certification

Enhance your resume with this certificate to showcase your expertise and boost your visibility to employers.

selected template

Want to receive push notifications for all major on-site activities?