
Real shift floor training, built by an active SOC analyst, not theory slides.
I'm an active SOC Analyst. This isn't a certification prep course built from someone else's slides, every lab, log, and playbook here comes from real shift floor incident handling.
Runs entirely offline in your browser once downloaded. No subscription, no recurring fee, you own it.
Built for aspiring SOC analysts who are tired of theory only content and want to see what the job actually looks like.
Module 1: Foundations. Internet, networking basics, CIA triad, attacker mindset, real breach case studies.
Module 2: Networking. OSI model, TCP/IP, packet analysis, Wireshark, DNS, port scanning.
Module 3: Linux Fundamentals & Security Operations. CLI, log forensics, privilege escalation, rootkits.
Module 4: Cybersecurity Foundations. Cryptography, OWASP Top 10, Active Directory, Kerberos attacks.
Module 5: Security Operations. SIEM (Splunk), log analysis, detection engineering, Sysmon, SOAR.
Module 6: Log Analysis & Detection. Windows Event IDs, Sigma rules, malware detection, ransomware indicators.
Module 7: Incident Response & Digital Forensics. IR lifecycle, memory forensics, disk forensics, BEC, ransomware response.
Module 8: Malware Analysis. Static/dynamic analysis, reverse engineering basics, C2 infrastructure, YARA.
Module 9: Threat Hunting. Hypothesis-driven hunting, Active Directory attacks, cloud hunting, EDR telemetry.
Module 10: Cloud Security Operations. AWS CloudTrail, Microsoft Sentinel, Entra ID, cloud incident response.
Module 11: SOC Tools Mastery. Splunk SPL, Sigma, YARA at an advanced level.
Final Capstones. 3+ full-scale simulated enterprise breaches (ransomware + cloud insider threat).
Career Track. Certifications, resume optimization, home lab setup, SOC interview prep.
After purchase, you'll receive a download link to the full course folder.
To run it: