SOC Analyst Training

BY
Infosec Train

Level up your SOC skills and improve your career prospects with Infosec Train’s SOC Analyst Training course.

Mode

Online

Quick Facts

particular details
Medium of instructions English
Mode of learning Self study, Virtual Classroom
Mode of Delivery Video and Text Based
Frequency of Classes Weekends

Course overview

Are you a current or aspiring SOC analyst looking to get a firmer grip on the domain? Then, the SOC Analyst Training course by Infosec Train is the programme you’re looking for! Via 80 hours of instructor-led training, you will receive comprehensive insights into SOC concepts, operations, and workflows. This curriculum is a fantastic choice for current and aspiring SOC analysts in L1/L2/L3 to comfortably upskill and mitigate business risks. 

The SOC Analyst syllabus can be customised as per your requirements, for which you need to speak to the training advisor. There are three kinds of learning modes available – one-to-one training, online training, and corporate training. 

In the SOC Analyst certification, you will also have access to recorded sessions if you fail to attend one. Free demo classes are available to give you an idea of how the curriculum works, the instructors involved, and the approach required. 

Also Read: Cyber Security Certification Courses

The highlights

  • 80 hours of learning
  • Multiple learning options available 
  • Instructor-led curriculum
  • Customised training
  • Certified trainers 
  • Free demo class available 
  • Training certificate available 
  • Access to recorded sessions 
  • Post-completion assistance

Program offerings

  • Certified instructors
  • Customised curriculum
  • Multiple learning modes
  • Free demo class
  • Placement assistance
  • Certificate of completion.

Course and certificate fees

certificate availability

Yes

certificate providing authority

Infosec Train

Who it is for

The SOC Analyst programme by Infosec Train is ideal for –

  • L1, L2, and L3 SOC analysts 
  • Technical support engineers 
  • System administrators 
  • Security consultants 
  • Security system engineers 
  • Cybersecurity analysts 

Eligibility criteria

Enrolling on the SOC Analyst course by Infosec Train requires that you possess prior knowledge of basic networking, OS, and troubleshooting. You must also have entry-level experience as a SOC analyst, cybersecurity analyst, or in an Information Security role. For the Information Security domain, you must have 2 years of experience or more.

What you will learn

Knowledge of cyber security

After undertaking the SOC Analyst online Training course, you will be able to –

  • Secure data for your organisation using technical tools, strategies, and techniques
  • Understand data threats and their countermeasures 
  • Have a deep knowledge of network forensics and incident response 
  • Analyse and classify malware
  • Understand the Cybersecurity industry in depth

The syllabus

Module 1: Introduction to SOC & Lab Environment Setup

  • What is a SOC?
  • Role of the SOC in cybersecurity defence
  • SOC structures:
    • Centralized SOC
    • Distributed SOC
    • Virtual SOC
  • SOC analyst roles
  • SOC analyst roles and responsibilities
  • Core L1 SOC analyst activities:
    • Monitoring
    • Triage
    • Escalation
  • Overview of L2 and L3 SOC analyst responsibilities
  • Key SOC functions:
    • Log monitoring
    • Alert triage
    • Threat detection
    • Incident response
  • SOC maturity model:
    • Reactive
    • Proactive
    • Predictive

Module 2: Network Security & Threat Landscape

  • Networking basics for SOC analysts
  • OSI model
  • TCP/IP
  • Ports and protocols
  • Introduction to Cybersecurity & Information Security
  • Elements of Information Security
  • Understanding Hackers
    • Types of Hackers
  • Common attack types:
    • DDoS
    • Brute force
    • Phishing
    • Ransomware
  • Brief case studies of well-known attacks
  • Threat Intelligence
  • Types of threat intelligence
  • Indicators of Compromise
  • Introduction to MITRE ATT&CK for SOC analysts
  • MITRE ATT&CK navigation and lookup
  • AI in threat intelligence:
    • Summarizing threat feeds
    • Correlating Indicators of Compromise
  • Introducing Wireshark

Module 3: AI for Cybersecurity Foundations

  • Introduction to Artificial Intelligence in Cybersecurity
  • Role of AI in Modern Security Operations Centres
  • Understanding the Core AI Technologies:
    • Artificial Intelligence
    • Machine Learning
    • Deep Learning
    • Natural Language Processing
    • Large Language Models
  • Relationship and Differences Between AI, ML, DL, NLP and LLMs
  • Predictive AI and Its Role in Threat Detection
  • Generative AI and Its Role in SOC Operations
  • Learning Prompt Injections & its types
  • Why AI is used in SOC operations:
    • Reducing false positives
    • Handling large log volumes
    • Speeding up response
  • AI use cases in SOC:
    • Log summarization
    • Phishing detection
    • Anomaly detection
    • Report generation
  • AI limitations SOC analysts must understand:
    • Hallucination
    • Bias
    • Explainability
    • Data privacy
  • Free and open AI tools:
    • ChatGPT free tier
    • Claude
    • Ollama
    • Hugging Face
  • Windows Events Analysis
  • How to investigate it manually
  • How to correlate it with other evidence

Module 4: AI in Vulnerability Management & Assessment

  • Vulnerability basics and Pentesting Foundation
  • CVE: Common Vulnerabilities and Exposures
  • CVSS: Common Vulnerability Scoring System
  • Exploitability
  • Vulnerability-management lifecycle:
    • Scan
    • Assess
    • Prioritize
    • Remediate
    • Report
  • Tools:
    • OpenVAS
    • Nmap
    • Nmap Scripting Engine
  • AI for CVE explanation
  • Converting technical CVEs into analyst-friendly notes
  • AI for vulnerability prioritization
  • Combining:
    • Severity
    • Exploitability
    • Asset criticality
  • AI-assisted vulnerability-report drafting
  • Reports for management and non-technical audiences

Module 5: SIEM, EDR & AI-Assisted Log Analysis

Module 5A: Splunk Free
  • Splunk architecture basics:
    • Forwarders
    • Indexers
    • Search Heads
  • Splunk limitations and licensing awareness
  • Daily ingestion limits
  • SPL fundamentals:
    • Search
    • Stats
    • Timechart
  • Ingesting endpoint security and authentication logs
  • AI-assisted SPL query generation
  • AI-assisted alert summarization
Module 5B: Wazuh – EDR
  • Wazuh architecture:
    • Manager
    • Agent
  • Built-in capabilities:
    • File Integrity Monitoring
    • Vulnerability detection
    • Compliance dashboards
  • Deploying the Wazuh agent on the lab endpoint
  • Working with default detection rules
  • Writing custom rule
  • Using AI to explain a noisy or false-positive-prone rule
  • Using AI to tune a detection rule

Module 6: Phishing, Malware & Insider Threats

  • Phishing types:
    • Email phishing
    • Smishing
    • Vishing
    • Spear phishing
    • Whaling
  • Analyzing Email Headers
    • SPF
    • DKIM
    • DMARC
  • MFA abuse
  • Brief real-world case studies
  • Malware basics:
    • Malware types
    • Malware-family naming conventions
    • Behavioural detection
    • Signature-based detection
  • Insider threats:
    • Privilege misuse
    • Data-exfiltration patterns
  • AI in detection:
    • Phishing-email classification
    • Malware-family recognition using static information or metadata

Module 7: Incident Management & Forensics

  • Incident-response lifecycle:
    • Preparation
    • Detection
    • Containment
    • Eradication
    • Recovery
    • Lessons Learned
  • AI-guided incident-response playbook templates
  • Beginner-to-intermediate use of existing templates
  • Automating IOC enrichment
  • IP reputation lookups
  • Domain reputation lookups
  • AI-assisted Root Cause Analysis report writing
  • Memory Analysis
  • Understanding Process Hierarchy

Module 8: SOC Interview Preparation

  • Role-Based Interview Questions
  • Scenario-Based Mock Interviews

Multiple Failed Login Attempts

  • A user account generates several failed login attempts within a short period.
  • After the failed attempts, a successful login is recorded from the same source.

Admission details

Follow the steps mentioned below to get yourself enrolled for the SOC Analyst course –

  • Click here: https://www.infosectrain.com/courses/soc-analyst-training/ to visit the SOC Analyst Training course. 
  • Use the ‘Enrol Now’ tab to fill an application form with your basic details such as full name, email address, etc. 
  • You will receive a confirmation call from Infosec Train’s team within the next 24 hours. Course details will be sent to your email id. 

Filling the form

A simple application form must be filled to enrol for Infosec Train’s SOC Analyst classes programme. You will need to enter basic details such as your full name, contact number, email address, and country of residence. 

How it helps

Successful completion of the SOC Analyst Training course will help you improve your prospects as a SOC analyst, Cybersecurity analyst, or security administrator. The valuable certificate will also accelerate your chances of securing a job position in top companies. Moreover, this customised curriculum ensures that you have dealt with your unique weaknesses and nurtured your unique strengths. 

Instructors

Mr Abhy
Trainer
Freelancer

Mr Sanyam Negi
Instructor
Freelancer

Other Bachelors

FAQs

What is the course duration?

The curriculum duration is 80 hours. 

Are flexible timings available for online SOC Analyst Training course?

No. You will need to devote 4 hours per day until course completion.

What if I miss any class?

If you miss any session, you can access the recorded versions of each session to keep up.

Is placement support available for the SOC Analyst Training course?

Yes, placement support is available in the form of job interview preparation.

What are the training’s best features?

The training offers key features like a free demo class, access to recorded sessions, and post-training support, 

Trending Courses

Popular Courses

Popular Platforms

Learn more about the Courses