Cyber-attacks, breaches, and incidents continue to grow. The sophistication and complexity of these attacks continue to evolve. More than ever organizations need to plan, prepare, and defend against a potential cyber incident. Security Operation Centers (SOCs) act as an organization's front-line defense against cyber incidents. SOC analyst accomplishes this by monitoring and responding to network and host anomalies, performing an in-depth analysis of suspicious events, and when necessary, aiding in forensic investigations.
This course is designed to be a primer for anyone planning on taking the EC-Council CSA course. We will discuss the structure, organization, and general daily activities of SOC analysts. We will also look at several defensive tools including SEIMs, IDS, and IPS. We will talk about event monitoring and vulnerability management. Finally, we will talk about what to expect when an incident happens.
Here, you will understand the goals, objectives, and summary of the entire course. You will get to know the author, his areas of expertise and his accomplishments. In this section, you will learn how to setup the lab environment to get started.
What's included
3 videos2 assignments
Show info about module content
3 videos•Total 29 minutes
Course Overview•6 minutes
Author Introduction•1 minute
Video 1.1 : Setting up Target Virtual Machines and Applications •22 minutes
2 assignments•Total 50 minutes
Module Quiz•20 minutes
1.1 - Quiz•30 minutes
Enterprise Security Operations
Module 2•2 hours to complete
Module details
In this section, you will start learning about Security Operations Center. You will also learn what they are, how the functions, and what they do.
What's included
2 videos3 assignments
Show info about module content
2 videos•Total 35 minutes
Video 2.1 : Introduction to Security Operations Center •9 minutes
Video 2.2 : Security Operations Center •25 minutes
3 assignments•Total 70 minutes
Module Quiz•20 minutes
2.1 - Quiz•20 minutes
2.2 - Quiz•30 minutes
Hacker Tactics, Techniques, and Procedures
Module 3•2 hours to complete
Module details
In this section, you will start learning about Security Operations Center. You will also learn what they are, how the functions, and what they do.
What's included
2 videos3 assignments
Show info about module content
2 videos•Total 37 minutes
Video 3.1 : Hacker Tactics, Techniques, and Procedures •26 minutes
Video 3.2 : Hacker Tactics, Techniques, and Procedures – ATT&CK •11 minutes
3 assignments•Total 70 minutes
Module Quiz•20 minutes
3.1 - Quiz•30 minutes
3.2 - Quiz•20 minutes
Defensive Tools for the Modern Enterprise
Module 4•2 hours to complete
Module details
In this section, you will learn various practices that organizations use to protect their sensitive data.
What's included
3 videos4 assignments
Show info about module content
3 videos•Total 35 minutes
Video 4.1 : Intrusion Detection Software •14 minutes
Video 4.2 : Intrusion Prevention Software •5 minutes
Video 4.3 : Data Loss Prevention •16 minutes
4 assignments•Total 85 minutes
Module Quiz•20 minutes
4.1 - Quiz•20 minutes
4.2 - Quiz•20 minutes
4.3 - Quiz•25 minutes
Event Monitoring and Threat Hunting
Module 5•2 hours to complete
Module details
This section will teach you some other advanced practices being followed at various organizations as their security measures.
What's included
3 videos3 assignments
Show info about module content
3 videos•Total 49 minutes
Video 5.1 : Indicators of Compromise •13 minutes
Video 5.2 : Find Evil with Security Onion – Part 1 •22 minutes
Video 5.3 : Find Evil with Security Onion – Part 2•14 minutes
3 assignments•Total 60 minutes
Module Quiz•20 minutes
5.1 - Quiz•30 minutes
5.2 - Quiz•10 minutes
Vulnerability Management
Module 6•1 hour to complete
Module details
Vulnerability can be easily used to enter your organizations security systems and steal or misuse your data. We will learn about vulnerabilties in this lesson.
What's included
1 video2 assignments
Show info about module content
1 video•Total 21 minutes
Video 6.1 : Vulnerability Management •21 minutes
2 assignments•Total 50 minutes
Module Quiz•20 minutes
6.1 - Quiz•30 minutes
Incident Response
Module 7•1 hour to complete
Module details
Incident means any situation that appears and needs attention. This section will teach you about incidents and how to deal with them
What's included
1 video2 assignments
Show info about module content
1 video•Total 19 minutes
Video 7.1 : Incident Response •19 minutes
2 assignments•Total 50 minutes
Module Quiz•20 minutes
7.1 - Quiz•30 minutes
Course Conclusion and Final Comments
Module 8•7 minutes to complete
Module details
Final thoughts by the instructor
What's included
1 video
Show info about module content
1 video•Total 7 minutes
Video 8.1 : Course Conclusion and Final Comments •7 minutes
Instructor
Instructor ratings
Instructor ratings
We asked all learners to give feedback on our instructors based on the quality of their teaching style.
Best known for the Certified Ethical Hacker program, EC-Council builds individual and team/organization cyber capabilities through the Certified Ethical Hacker Program and other programs including Certified Secure Computer User, Computer Hacking Forensic Investigator, Certified Security Analyst, Certified Network Defender, Certified SOC Analyst, Certified Threat Intelligence Analyst, Certified Incident Handler, as well as the Certified Chief Information Security Officer.
When will I have access to the lectures and assignments?
To access the course materials, assignments and to earn a Certificate, you will need to purchase the Certificate experience when you enroll in a course. You can try a Free Trial instead, or apply for Financial Aid. The course may offer 'Full Course, No Certificate' instead. This option lets you see all course materials, submit required assessments, and get a final grade. This also means that you will not be able to purchase a Certificate experience.
What will I get if I purchase the Certificate?
When you purchase a Certificate you get access to all course materials, including graded assignments. Upon completing the course, your electronic Certificate will be added to your Accomplishments page - from there, you can print your Certificate or add it to your LinkedIn profile.
Is financial aid available?
Yes. In select learning programs, you can apply for financial aid or a scholarship if you can’t afford the enrollment fee. If fin aid or scholarship is available for your learning program selection, you’ll find a link to apply on the description page.