SOC-200: Security Operations and Defensive Analysis
Learn the foundations of cybersecurity defense with Security Operations and Defensive Analysis (SOC-200).
-
Module 1: Copyright
-
Module 2: Introduction to SOC-200
-
Module 3: Attacker Methodology Introduction
-
Module 4: Windows Endpoint Introduction
-
Module 5: Windows Server Side Attacks
-
Module 6: Windows Client-Side Attacks
-
Module 7: Windows Privilege Escalation
-
Module 8: Windows Persistence
-
Module 9: Linux Endpoint Introduction
-
Module 10: Linux Server Side Attacks
-
Module 11: Linux Privilege Escalation
-
Module 12: Network Detections
-
Module 13: Antivirus Alerts and Evasion
-
Module 14: Network Evasion and Tunneling
-
Module 15: Active Directory Enumeration
-
Module 16: Windows Lateral Movement
-
Module 17: Active Directory Persistence
-
Module 18: SIEM Part One: Intro to ELK
-
Module 19: SIEM Part Two: Combining the Logs
-
Module 20: Trying Harder: The Labs
About The Course
Learn the foundations of cybersecurity defense with Security Operations and Defensive Analysis (SOC-200), a course designed for job roles such as Security Operations Center (SOC) Analysts and Threat Hunters. Students gain hands-on experience with a SIEM, identifying and assessing a variety of live, end-to-end attacks against a number of different network architectures. Students who complete the course and pass the exam earn the Offensive Security Defence Analyst (OSDA) certification, demonstrating their ability to detect and assess security incidents.
Course Objectives
- Develop a working knowledge of security operations and best practices
- Experience investigating the evidence left behind in log files from a wide variety of common attack methods
- Configure and monitor a SIEM for active attacks on a network
- Manually inspect logs in order to be able to recognize both normal and abnormal or benign and malicious activity
Pre-Requisites
All prerequisites for SOC-200 can be found within the Offsec Fundamentals Program, included with a Learn Subscription
Prerequisite Topics include:
- SOC-100: Linux Basics 1 & 2
- SOC-100: Windows Basics 1 & 2
- SOC-100: Networking Basics
What's included
- 40 Hours Training Course
- Certificate
- 20 Modules
- 24/7 Support