SOC Analyst TrainingEnroll
October 2026 COHORT — ENROLLMENT OPEN

Learn.
Investigate. Build.

Develop the practical cybersecurity and SOC skills needed to analyze security events, investigate alerts and work with industry-relevant SIEM platforms.

alert_stream.log

10:42:03 alert suspicious_login host=WEB-04 geo=unfamiliar

10:42:11 info auth_success user=svc-backup mfa=true

10:42:19 warn process_spawn parent=winword.exe child=powershell.exe

10:42:24 info dns_query domain=update-service.net

10:42:31 alert lateral_movement src=WKS-112 dst=DC-01

10:42:38 info firewall_allow rule=corp-outbound

10:42:47 warn priv_escalation user=jsmith group=domain_admins

10:42:55 info log_ingest source=sentinel events=4213

10:42:03 alert suspicious_login host=WEB-04 geo=unfamiliar

10:42:11 info auth_success user=svc-backup mfa=true

10:42:19 warn process_spawn parent=winword.exe child=powershell.exe

10:42:24 info dns_query domain=update-service.net

10:42:31 alert lateral_movement src=WKS-112 dst=DC-01

10:42:38 info firewall_allow rule=corp-outbound

10:42:47 warn priv_escalation user=jsmith group=domain_admins

10:42:55 info log_ingest source=sentinel events=4213

01

Tracks

Choose the path that matches your current level.

Zero to SOC

3 months · 2x/week

Build your cybersecurity foundation and progressively develop the skills needed to work with SOC processes, security telemetry, SIEM platforms and incident investigations.

Enroll in Zero to SOC
  • ·Cybersecurity fundamentals
  • ·Networking fundamentals
  • ·Windows & Linux fundamentals
  • ·SOC operations
  • ·Security logs and telemetry
  • ·SIEM fundamentals
  • ·Alert triage
  • ·Incident investigation
  • ·Threat intelligence
  • ·MITRE ATT&CK
  • ·Threat hunting fundamentals
  • ·SOC documentation
  • ·Practical SOC labs

Cybersecurity to SOC

2 months · 2x/week

Move beyond the fundamentals and focus on practical SOC operations, SIEM investigations, detection, threat hunting and hands-on security labs.

Enroll in Cybersecurity to SOC
  • ·SOC workflows
  • ·SIEM operations
  • ·Alert investigation
  • ·Detection engineering
  • ·Windows security monitoring
  • ·Active Directory monitoring
  • ·Threat hunting
  • ·Network investigation
  • ·Threat intelligence
  • ·MITRE ATT&CK
  • ·Incident response
  • ·Attack simulation and detection
  • ·SOC investigation documentation
  • ·Practical SOC labs
02

Platforms

Core SIEM platforms you'll work with

Develop practical experience working with three widely used SIEM platforms and learn how security telemetry can be collected, analyzed and investigated.

Microsoft Sentinel

Cloud-native SIEM and security analytics platform.

Log ingestion · Analytics · Alert investigation · Incident investigation · Security monitoring

Splunk

Security information and event management and log analysis platform.

Searching security data · Log analysis · Detection · Alert investigation · Investigation workflows

Wazuh

Open-source security monitoring and detection platform.

Endpoint telemetry · Security monitoring · Detection · Log analysis · Investigation

03

Method

More than learning tools.

The goal isn't just to learn how to navigate SIEM platforms. You'll learn how to use security telemetry to investigate what happened, identify suspicious activity and document your findings.

Analyze

Work with security logs and telemetry.

Investigate

Follow evidence to understand suspicious activity.

Detect

Identify suspicious behavior through security data.

Document

Communicate investigation findings clearly.

Practice

Work through controlled security scenarios and labs.

Built around practical SOC experience.

  • ·Live instructor-led classes
  • ·Guided SOC labs
  • ·Investigation exercises
  • ·Practical assignments
  • ·Security scenarios
  • ·SOC projects
  • ·Portfolio development
  • ·Final practical project
04

Fit check

Zero to SOC

This track is for you if:

  • ·You're new to cybersecurity.
  • ·You understand little or no SOC operations.
  • ·You want to build your foundation before specializing.
  • ·You want structured guidance through practical labs.

Cybersecurity to SOC

This track is for you if:

  • ·You already understand basic cybersecurity concepts.
  • ·You have some cybersecurity learning or lab experience.
  • ·You want to focus specifically on SOC operations.
  • ·You want more hands-on SIEM and investigation work.
05

Outcomes

What you'll work toward

By the end of the program, you'll have worked on real, hands-on SOC skills — not a promise of a job title.

Security monitoring / SIEM platforms / Alert triage / Security event analysis / Incident investigation / Threat intelligence / MITRE ATT&CK mapping / Threat hunting fundamentals / Detection concepts / SOC documentation / Practical security investigations

You'll leave with practical experience and projects that can contribute to your cybersecurity portfolio. The program is designed to develop practical skills and hands-on experience relevant to SOC Analyst work — it does not guarantee employment or certification.

06

Enroll

Choose your track

Zero to SOC

3 months · 2 classes / week

200,000

Enroll Now

Cybersecurity to SOC

2 months · 2 classes / week

150,000

Enroll Now
07

FAQ

Frequently asked questions

Do I need cybersecurity experience?+

Zero to SOC is designed for beginners. Cybersecurity to SOC is designed for learners who already understand cybersecurity fundamentals.

Will this guarantee me a SOC Analyst job?+

No. The program is designed to develop practical skills and hands-on experience relevant to SOC Analyst work. Employment depends on individual skills, experience, portfolio, interviews and employer requirements.

How long is the training?+

Zero to SOC: 3 months. Cybersecurity to SOC: 2 months. Both tracks have two classes per week.

Which SIEM platforms will I learn?+

Microsoft Sentinel, Splunk and Wazuh.

Are the classes live?+

Yes.

When will I receive class information?+

Class schedule and onboarding information will be sent one week before the cohort begins.

Can I join the Cybersecurity to SOC track if I'm a beginner?+

The Cybersecurity to SOC track assumes you already have basic cybersecurity knowledge. Beginners should choose Zero to SOC.