SOC
ANAYLST
TRAINING
Programme Overview
The cybersecurity industry is
experiencing significant growth and PwC's 2023 Global Risk
according to Statista 2024, Survey India edition found that
cybersecurity market is projected to
reach US$183.10bn in 2024. As cyber
threats continue to disrupt critical
38%
of all respondents felt that
services and infrastructure globally, the
demand for skilled leaders capable of their organisation is highly
detecting, mitigating and preventing exposed to cyber threats.
cyber attacks is skyrocketing.
\
This strategically curated programme
offers a pathway to a high- growth
career as a cybersecurity leader by
teaching you how to become proactive
and versatile in this dynamic field.
With an anticipated 1 million job
opportunities in cybersecurity in
India by 2027 (forecasted by
NASSCOM), this programme
addresses this demand surge by
offering you a comprehensive
cybersecurity curriculum that includes
cybersecurity regulation and
compliance as well as the use of
Generative AI and AI to improve
decision-making, build robust teams
and become a fully equipped
cybersecurity leader.
A Brief About
CYBERTHREYA
India’s Most Trusted IT Training Institute
Cyberthreya is a distinguished ISO-certified cybersecurity company
based in Andhra Pradesh, dedicated to providing robust cybersecurity
services and cutting-edge training for both corporations and
individuals.
Renowned as the foremost cybersecurity company in Andhra Pradesh,
we specialize in live training sessions that empower students with the
knowledge and skills needed in the dynamic field of cybersecurity and
ethical hacking.
Our commitment extends beyond services. We've established
partnerships with prestigious universities and colleges to offer
comprehensive cybersecurity training. Cyberthreya collaborates with
academic institutions to bridge the gap between theoretical knowledge
and practical industry expertise.
With a track record of training over 15,000 individuals, we take pride
in certifying more than 5,000 cybersecurity professionals. Our alumni
contribute their expertise to various industries, bolstering the global
cybersecurity workforce
At Cyberthreya, we believe in proactive cybersecurity solutions. Our
team of experts stays ahead of emerging threats, ensuring that our
clients are equipped with the latest tools and strategies to safeguard
their digital assets.
Join us on the journey to a safer digital future. Explore our
cybersecurity services and training programs to stay resilient in an
ever-evolving cyber lan
d
c
sp
ae
.
Why
Choose
Cyberthreya
for
SOC
Analyst Training
Completely Practical-Oriented
Ethical Hacking is a skill that requires immense
practice. For that, we offer 100% practical training
with regular assignments, assessments.
Comprehensive Curriculum
The ethical hacking course by Cyberthreya includes
India’s most comprehensive curriculum, cover- ing all
breadths and depths in de- tail & practically.
Expert Trainers
You will learn ethical hacking from expert trainers
having 10+ years of experience in the field. We
ensure high-quality training always.
24/7 LABS
You will apply all the practices on real websites
(no dummies), do everything on your own, and make
use of premium tools.
ILABS ACCESS
Access iLab's round-the-clock to utilize integrated browser
labs featuring Kali Linux, Windows Server 2019, Windows
10, and a web application server. No need for individual lab
setups; effortlessly access and work on these machines
directly through the browser interface, enabling seamless
experimentation and learning
Kali Linux
Windows server 2019
RECORDING VIDEOS
Students have the advantage of accessing comprehensive
learning resources through recorded videos spanning across
all 20 modules. These videos cover in-depth lectures,
practical demonstrations, and supplementary materials,
providing a robust educational experience for self-paced
learning and comprehensive understanding of the course
content.
Programme Modules
Module 1
Overview of SOC :
Roles, Responsibilities, Tools, and Explanation
Understanding the functions of a Security Operations Center (SOC)
Key roles in a SOC (SOC Analyst, Incident Responder, SOC Manager, etc.)
Responsibilities of a SOC Analyst.
Tools commonly used in a SOC
Module 2
Networking Concepts :
Introduction to networking fundamentals.
Types of networks (LAN, WAN, VPN).
IP addressing and types of ip address.
Module 3
Linux Introduction :
Basic Linux commands and operations.
Linux file system structure.
User permissions and security in Linux.
Module 4
Portsand Services :
Common ports and associated services.
How services communicate over different ports.
Understanding well-known ports and their risks.
Module 5
TCP VS UDP :
Differences between TCP and UDP.
Applications and use cases for both protocols.
TCP three-way handshake and UDP connectionless nature.
Module 6
VAPT: Host Discovery with Nmap:
Introduction to Vulnerability Assessment and Penetration Testing (VAPT).
How Nmap is used for host discovery and scanning.
Techniques to identify live hosts on a network.
Module 7
VAPT: Learning about Exploits of Windowsand Linux :
Common vulnerabilities in Windows and Linux systems.
How attackers exploit these vulnerabilities.
Mitigation techniques.
Module 8
VAPT: Malware Development with Winspy :
Basic principles of malware development.
Creating a Windows-based spy tool using WinSpy.
Techniques for evading detection.
Module 9
VAPT: Persistence Attackswith Malware:
Understanding persistence in malware.
Techniques to maintain access to compromised systems.
How to detect and remove persistence mechanisms.
Module 10
Brute Force Attacks with Hydra on SMB, SSH, and HTTP :
Understanding brute-force attacks.
Using Hydra for brute-forcing SMB, SSH, and HTTP services.
Techniques for evading brute force detection.
Module 11
Defending Brute Force Attacks of Hydra and Similar Tools :
Techniques for detecting brute-force attacks.
Using firewalls and rate-limiting to block brute-force attempts.
Implementing fail2ban or similar tools.
Implementing python scripts to detect and block brute force attacks Strengthening
passwords and authentication methods.
Module 12
Threat intelligence/MITRE ATTACK:
understanding mitre att&ck techniquesmalware detection and response
Tactics
procedures with practical questions
Module 13
Network Analysis and Monitoring with Wireshark :
Introduction to Wireshark and its use in network analysis.
Capturing network traffic and filtering data.
Analyzing packets and understanding protocol structure.
Module 14
Understanding Nmap Scanning Through Wireshark :
Using Wireshark to capture Nmap scanning traffic.
Identifying and analyzing different types of scans.
Detecting network scanning activities.
Module 15
Wireshark : Detecting Attacks
Analyzing traffic to detect DoS/DDoS attacks.
Identifying SQL injection and application-level attacks in packet captures.
Recognizing brute-force attempts based on network traffic.
Module 16
Wireshark Hands-on Practical with Sample Attack Logs :
Practical exercises using Wireshark to analyze attack logs.
Identifying common attack patterns.
Creating and analyzing network traffic capture files (PCAP)
Module 17
Log Analysis : Event Log Analysis with different Logs
Analyzing logs from different sources.
Identifying suspicious activities and correlating log data.
Log management and interpretation.
Module 18
Introduction to IDS , IPS, Firewall, and snort rules :
Overview of Intrusion Detection Systems (IDS) and Intrusion Prevention Systems (IPS).
Understanding firewalls and how they function.
Introduction to Snort IDS and how to write and use Snort rules.
Module 19
Snort Rule Set to Defend Against Nmap System Scans :
Writing Snort rules to detect network scans like Nmap.
Using Snort to block malicious traffic.
Understanding rule syntax and how to apply them effectively.
Module 20
Introduction to Security Onion SOC Tool and How to use it :
Overview of Security Onion as a SOC tool.
How to use Security Onion for network monitoring and log analysis.
Hands-on exercises with Security Onion.
Module 21
Introduction to Splunk :
Overview of Splunk and its role in log management and analysis.
Understanding Splunk's interface and key components.
Module 22
Splunk Usage and Log Analysis :
How to perform log analysis with Splunk.
Searching, filtering, and visualizing log data.
Using Splunk for detecting suspicious activities and attacks.
Module 23
Simulating Incidents with Splunk :
Creating and simulating security incidents in Splunk.
Analyzing the impact of simulated incidents.
Generating alerts and responding to incidents.
Module 24
End point detection wazuh :
File integrity monitoring
detection and removal of malware using virus total
threat hunting using wazuh
command monitoring
testing web-based attacks using dvwa
alerts and notifications
sending alert notifications via email
incident response automation
blocking brute force attacks 2
Module 25
Threat hunting :
identifying Arp spoofing attacks.
denial of service dos attacks.
identifying malware communication & byte size patterns.
Module 26
Phishing Analysis : Types of phishing attacks:
Email analysis
Email header and sender analysis
Email authentication methods& Email content analysis
Understanding the anatomy of a URL
Email URL analysis & Email attachment analysis
Automated email analysis using phishing tools
IP reputation checks
Module 27
Vapt : Web Based Attacks
SQL Injection (Structured Query Language Injection)
XSS – Cross-Site Scripting.
LFI – Local File Inclusion & RFI – Remote File Inclusion.
Command Injection Attack
Module 28
Understanding Splunk Search Parameters :
search techniques in Splunk.
Using search parameters to filter and analyze large volumes of log data.
Module 29
Microsoft Azure Sentinel :
configuration and deployment of VM in Azure and connected to sentinel for real-time monitoring
creating detection rules to identify cyber attacks
creating log analytic workspaces to analyze logs using kql language
creating dashboards for real time monitoring and updates
COURSE OUTLINE :
This SOC Analyst Training Course is perfect for
beginners and mid-level security professionals
looking to build foundational skills in cybersecurity.
It covers key topics like network security, threat
detection, log analysis, and defense against
common attacks. With hands-on experience using
tools like Wireshark, Nmap, Splunk, and Security
Onion, participants will gain practical knowledge to
identify and mitigate security threats, making them
valuable assets in any Security Operations Center
(SOC).
Programme Certificate
Complete all the courses in the mandatory learning path successfully to obtain this
industry-wide recognized course completion certificate . When you have achieved this
Certification, you acquire the necessary skills helping you to stay competitive in the
cybersecurity industry. The certification proves to be a testimonial that you have gained
in-depth knowledge of the underlying technology needed to perform the tasks efficiently
in your job.
Sujatha Kumaraswamy
Executive Director
Executive Education and Digital Learning
Indian School of Business
Key Takeaways of the
Programme
Describe key cyber security concepts and security objectives.
Discuss the strategy and functional implementation of
cybersecurity protocols, defensive and offensive strategies.
Analyse the ethical considerations in cybersecurity.
Examine cybersecurity compliance and regulations.
Discuss how cybersecurity impacts the value chain of
a company.
Evaluate considerations for developing business
continuity and resilience during disruptions.
Interpret the role of emerging trends and technologies
in cyberspace.
Discuss key components of creating and managing
high-performing cyber teams.