SOC Analyst

Practical course on monitoring and detection
Format
Online, onsite (for private groups)
Duration
3 days
Level
Basic
Language
English
English
Arabic
Arabic

Target participants

SOC analysts

Gain in-depth knowledge of Security Operations Center objectives and core technologies, focusing on tools for advanced threat detection, log-based threat analysis, and the identification of threat indicators.

Information security specialists

Develop a comprehensive understanding of cyberattack methodologies and common attack vectors while building practical expertise in endpoint monitoring and analysis.

CERT analysts

Strengthen incident response capabilities by mastering the interpretation of Windows event logs, analyzing system behavior, and applying knowledge to effective threat detection and remediation workflows.

Network security specialists

Acquire practical proficiency in network traffic analysis and packet capture tools to identify complex threats, correlate network-level evidence, and fortify organizational infrastructure against evolving attack vectors.

Course modules

SOC fundamentals
  • SOC architectures and operating models
  • Defense-in-depth framework
  • Common cyberattacks and vectors
  • People, process, and technology in the SOC
Network and endpoint analysis
  • Network protocols and encapsulation
  • Network traffic capture and analysis tools
  • Process monitoring
  • Endpoint detection and response (EDR)
Web, email, and log analysis
  • Web application analysis and OWASP Top 10
  • Email analysis and threat indicators
  • Windows event log analysis
  • SIEM solutions, architectures, and rule creation
Malware analysis
  • Introduction to sandbox analysis
  • AnyRun and Hybrid Analysis
Course certificate
At the end of the course, you will receive a personal certificate confirming your expertise and strengthening your professional credibility
Trainers
Ahmed Nosir
Cybersecurity Consultant
Ahmed Nosir

Ahmed has been working in Security Operations Center over the last three years, transitioning his expertise from penetration testing to Digital Forensics and Incident Response and regularly takes part in complex incident response operations. Ahmed has conducted numerous training sessions, molding the new age cybersecurity professionals. His expertise doesn’t just stop at identifying digital threats, but extends to fostering a culture of continuous learning and curiosity among aspiring cyber experts.

Moataz Nasr
Cybersecurity Consultant
Moataz Nasr

Moataz carries over three years of specialized cybersecurity expertise, particularly in the realm of red teaming and penetration testing, where he has honed his skills in identifying and mitigating vulnerabilities within various systems and networks. Moataz has led several training sessions, playing a pivotal role in shaping and developing the next generation of cybersecurity professionals helping them navigate the landscape of modern cyber threats.

Prev
Next
Why choose
Group-IB training
50+
50+
countries
where we deliver
training programs
6,000+
6,000+
students
have taken part in
our training courses
15+
15+
expert trainers
with hands-on
experience
Multi-disciplinary expertise
Multi-disciplinary expertise
in fraud prevention, investigations, DFIR, consulting, and red teaming
4
4
Group-IB products
integrated into training for realistic experience
90%
90%
satisfaction rate
among participants

Ready to upskill your cybersecurity expertise?

Join thousands of cybersecurity professionals who have advanced their careers
with Group-IB's expert-led training