Nice — I’ll give you two clear, step-by-step pathways (SOC Analyst and Network Admin).
For each: what to learn at every step, best free/paid places to learn (YouTube / platforms), and
where to practice so you become job-ready for the Australian market. I’ll keep it practical —
follow this and you’ll have a portfolio, certs and labs to show employers.
SOC ANALYST — step-by-step pathway
Goal: junior SOC / Tier-1 Analyst (ANZSCO 262112)
Step 0 — mindset & timeline (0–1 week)
Set a 6–9 month plan if you study full-time (part-time 9–12+ months). Focus on fundamentals
first, then tools, then hands-on labs + projects.
Step 1 — Fundamentals (2–6 weeks)
What to learn
Basic networking: OSI, IP/TCP, DNS, HTTP, ports.
Basic Linux commands (ls, grep, netstat, tcpdump).
Basic Windows fundamentals (Event Viewer, PowerShell basics).
Cybersecurity basics: CIA triad, types of attacks (phishing, malware, brute force).
Where to learn
YouTube: search “networking basics” and “Linux for beginners” (NetworkChuck has
excellent CCNA/Networking playlists). YouTube+1
Google / Coursera “Foundations of Cybersecurity” (part of Google cert). Coursera
Step 2 — SOC tools & workflows (4–8 weeks)
What to learn
SIEM basics: what logs look like, how to triage alerts, alert lifecycle (triage →
investigate → escalate).
One SIEM platform (Splunk or Microsoft Sentinel).
IDS/IPS basics, host and network logs, syslog format, basic regular expressions for
searching.
Where to learn
Splunk free training + sandbox (Splunk free courses / Fundamentals). Splunk
Microsoft Learn & Sentinel tutorials for Azure Sentinel. (search Microsoft Sentinel
beginner)
YouTube: “Splunk for beginners”, “Azure Sentinel tutorial”.
Step 3 — Hands-on labs (ongoing; start asap)
What to do
Follow a SOC learning path with realistic labs: alert triage, log parsing, incident
investigation, write playbooks.
Where to practice
TryHackMe — SOC Level 1 path (hands-on labs, day-in-SOC scenarios). Highly
recommended for juniors. TryHackMe+1
LetsDefend — simulated SOC / blue team exercises. [Link]
Build a small home lab: run ELK or Splunk Free, ingest Windows/Linux logs, create
dashboards.
Step 4 — Certifications & structured courses (optional but
helpful)
Good choices
IBM Cybersecurity Analyst Professional Certificate (Coursera) — practical SOC-
focused series. Coursera
Google Cybersecurity Certificate — beginner friendly and recognized. Coursera+1
These certificates help if you lack work experience and give projects to show employers.
Step 5 — Projects, portfolio & interview prep (2–4 weeks)
What to build
2–3 small projects: SIEM dashboard screenshot + explanation; a triage report for a
simulated incident; walkthrough of investigating a phishing/malware alert.
How to present
Host writeups on GitHub / Google Docs; include screenshots, timeline of investigation
and IOC (indicator) findings.
Step 6 — Job search & on-the-job learning
Apply for “Junior SOC Analyst”, “Security Operations Analyst”, “Triage Analyst”.
Emphasize labs, certs, and incident writeups. In interviews, talk through how you triaged
and escalated incidents.
NETWORK ADMIN — step-by-step
pathway
Goal: Junior Network Administrator / Network Analyst (ANZSCO 263112 / 263113)
Step 1 — Fundamentals (2–6 weeks)
What to learn
OSI & TCP/IP in more depth, VLANs, subnetting, routing vs switching.
Basic network services: DHCP, DNS, NAT.
Ethernet, cabling basics, wireless fundamentals.
Where to learn
YouTube CCNA playlists (free CCNA 200-301 full course — NetworkChuck and
several playlists). YouTube+1
CompTIA Network+ materials if you prefer vendor-neutral study. CompTIA
Step 2 — Hands-on networking (4–8 weeks)
What to practice
Packet tracer / GNS3 / Cisco Packet Tracer labs: configure VLANs, static/dynamic
routing, ACLs.
Practice subnetting exercises daily.
Where to practice
Cisco Packet Tracer (student download), GNS3.
YouTube labs walk-through (search “Packet Tracer lab VLAN routing”).
Step 3 — Certifications (optional but valuable)
CCNA (Cisco Certified Network Associate) — widely respected, shows you can
configure network devices. Use free CCNA playlists + practice labs. YouTube+1
CompTIA Network+ — good vendor-neutral alternative. CompTIA
Certs help in Australia for entry roles, especially in regional employers.
Step 4 — Real-world practice & projects
What to build
Home lab: small router+switch configs in Packet Tracer; a pfSense firewall VM; a small
Wi-Fi network; document troubleshooting steps.
Create a “network handbook” for your lab: topology diagram, addressing plan, ACL
rules.
Where to get real tasks
Volunteer IT roles (local NGO/school) — real hardware experience is gold.
Step 5 — Job search & on-job growth
Apply for “Junior Network Admin”, “NOC Technician”, “IT Support with networking”
roles.
On the job, learn network monitoring tools (SolarWinds, PRTG) and basic security
hardening.
Comparison & how to combine both (smart
approach)
Start with network fundamentals + Linux (both paths need this).
Month 2–3: run parallel learning — SIEM basics (Splunk) + Packet Tracer labs.
After 3–6 months, choose first job target: apply to SOC roles if you like monitoring and
investigations; apply to Network Admin if you like device/config work. Both paths make
you employable quickly.
Best free/paid platforms & resources (quick
list)
TryHackMe (SOC Level 1 & 2) — hands-on SOC labs. TryHackMe+1
LetsDefend — blue team/SOC simulation. [Link]
Splunk free courses / Splunk sandbox — learn SIEM. Splunk
IBM Cybersecurity Analyst (Coursera) — structured SOC certificate. Coursera
Google Cybersecurity Certificate / Coursera — good beginner path. Coursera+1
YouTube CCNA playlists (NetworkChuck, free CCNA 200-301) — networking
fundamentals and labs. YouTube+1
Cisco Packet Tracer / GNS3 — practice network labs locally.
(You can get many Coursera professional certs with free audit or by using Coursera Plus during
discounts — useful if you want certificates.) Business Insider
Quick 6-month study plan (example)
Month 1: Networking basics + Linux basics + cybersecurity fundamentals
Month 2: SIEM intro (Splunk) + Packet Tracer basics + TryHackMe beginner path
Month 3: TryHackMe SOC Level 1 + build small SIEM lab ingesting logs
Month 4: CCNA basics / Network+ OR finish Google/IBM certificate + projects
Month 5: Build 2 portfolio projects (SIEM dashboard + network topology & configs)
Month 6: Apply for jobs / internships / volunteer roles; prep interviews
How to show employers (portfolio checklist)
1 page resume tailored to SOC/Network role.
2 project writeups (GitHub/Google Doc): SOC incident triage / SIEM dashboard;
Network lab with topology diagrams.
LinkedIn profile + completed cert badges (IBM/Google/Splunk).
Hands-on lab evidence: TryHackMe progress screenshots / Splunk dashboards.
If you want I can make a personalised 6-month schedule for you right now (weekly tasks +
exact free videos and lab links) — say “make my 6-month plan” and I’ll create it.
You said:
this 2 are diff job right
ChatGPT said:
Yes — SOC Analyst and Network Administrator are two different jobs, but they overlap a
little in fundamentals (like networking and basic IT knowledge). Here’s the breakdown:
1️⃣ SOC Analyst (Security Operations Center
Analyst)
Focus: Cybersecurity monitoring and incident response.
Key Responsibilities:
Monitor alerts from SIEM tools (Splunk, Microsoft Sentinel).
Investigate suspicious activities, malware, or attacks.
Report incidents and escalate threats.
Follow security playbooks and compliance rules.
Skills Needed:
Networking basics (TCP/IP, OSI)
Linux/Windows basics
SIEM tools
Incident response & log analysis
Low coding required (optional Python or Bash scripting)
ANZSCO Code (PR): 262112 – ICT Security Specialist
Pros:
High demand in Australia
Good salary (AU$85k–120k)
PR-friendly occupation
Less coding than Penetration Testing or Security Engineering
2️⃣ Network Administrator / Network Analyst
Focus: Managing and maintaining computer networks and infrastructure.
Key Responsibilities:
Configure and maintain routers, switches, firewalls.
Monitor network performance and troubleshoot issues.
Manage IP addresses, VLANs, and network security settings.
Ensure reliable connectivity for users.
Skills Needed:
Networking fundamentals (routing, switching, subnetting)
Hardware knowledge (routers, switches, firewalls)
Windows/Linux server basics
Zero or very little coding
ANZSCO Code (PR): 263112 / 263113 – Network Administrator / Network Analyst
Pros:
Easier to start than SOC Analyst
Almost no coding
Good salary (AU$80k–115k)
PR-friendly, especially in regional areas
🔹 Key Differences
Feature SOC Analyst Network Admin
Cybersecurity monitoring &
Focus Network setup, maintenance & performance
incidents
Routers, switches, firewalls, network
Tools SIEM, logs, security dashboards
monitoring tools
Coding Low / optional Very low / none
PR
262112 263112 / 263113
ANZSCO
Salary AU$85k–120k AU$80k–115k
Feature SOC Analyst Network Admin
(entry)
Networking basics,
Skill Overlap Networking basics, Linux/Windows
Linux/Windows
🔹 Overlap / Combo
Both require networking basics and Linux/Windows fundamentals.
That’s why learning the fundamentals first lets you switch easily between SOC or
Network roles.