Step 03 · Defensive security

SOC Analyst

SOC analysis belongs to defensive cyber. The analyst's job is to monitor, detect and respond to attacks, working as part of a team that watches every digital asset — applications, websites, physical infrastructure, cloud environments and more. It is the most common first security role, and the fastest route into hands-on detection work.

Curriculum

  1. 01

    Security Operations Fundamentals

    SOC structure, tiers, escalation, shift discipline and metrics.

  2. 02

    Log Analysis & SIEM

    Event sources, correlation rules, dashboards and detection engineering basics.

  3. 03

    Attack Techniques & MITRE ATT&CK

    Mapping real-world adversary behaviour to detections.

  4. 04

    Endpoint & Network Detection

    EDR telemetry, packet and flow analysis, malicious traffic patterns.

  5. 05

    Incident Handling & Reporting

    Triage playbooks, containment decisions and clear written escalation.

Next step on the ladderPenetration Tester

Not sure which programme fits you?

Every learner arrives with a different background, experience and ambition. Tell us where you are and where you want to get to, and we will point you at the right track.

Talk to us