Step 03 · Defensive security
SOC Analyst
SOC analysis belongs to defensive cyber. The analyst's job is to monitor, detect and respond to attacks, working as part of a team that watches every digital asset — applications, websites, physical infrastructure, cloud environments and more. It is the most common first security role, and the fastest route into hands-on detection work.
Curriculum
- 01
Security Operations Fundamentals
SOC structure, tiers, escalation, shift discipline and metrics.
- 02
Log Analysis & SIEM
Event sources, correlation rules, dashboards and detection engineering basics.
- 03
Attack Techniques & MITRE ATT&CK
Mapping real-world adversary behaviour to detections.
- 04
Endpoint & Network Detection
EDR telemetry, packet and flow analysis, malicious traffic patterns.
- 05
Incident Handling & Reporting
Triage playbooks, containment decisions and clear written escalation.
Not sure which programme fits you?
Every learner arrives with a different background, experience and ambition. Tell us where you are and where you want to get to, and we will point you at the right track.
