Use the code ‘FIREBRAND15’ at checkout for 15% off this month only!
15% Discount AvailableUse the code ‘FIREBRAND15’ at checkout
EC-Council Certified SOC Analyst® (CSA® v2)
Code: eccsa
What you'll learn
On this accelerated EC-Council Certified SOC Analyst® (CSA®) v2 course, you’ll gain the skills to identify, monitor, and respond to increasingly sophisticated cyber threats across on-premises and cloud environments.
Now aligned with CSA v2, this course goes beyond Tier 1 and Tier 2 SOC analyst skills to include Tier 3-level capabilities, such as threat hunting, malware analysis, and digital forensics.
In just 3 days, you’ll build a comprehensive skill set to operate effectively in a modern Security Operations Centre (SOC), including advanced use of AI/ML for threat detection, cloud security monitoring, and automated alert triage. You’ll also prepare for and sit Exam 312-39, returning to work as a Certified SOC Analyst equipped with cutting-edge, real-world skills.
This course is also designed for security professionals who handle and manage network security operations, like network and security administrators or engineers, or network security operators.
With Firebrand's unique Lecture | Lab | Review method, you'll become competent, confident, and certified faster than with traditional training. Learn in a distraction-free environment and become an EC-Council Certified SOC Analyst (CSA) in just 3 days.
Curriculum
0 modulesModule 01: Security Operations and Management
Learn how a SOC enhances an organization’s security management to maintain a strong security posture, focusing on the critical roles of people, technology, and processes in its operations.
Module 02:Understanding Cyber Threats, IoCs, and Attack Methodology
Learn various cyberattacks, their IoCs, and the attack tactics, techniques, and procedures (TTPs) cybercriminals use.
Module 03: Log Management
Learn log management in SIEM, including how logs are generated, stored, centrally collected, normalized, and correlated across systems.
Module 04: Incident Detection and Triage
Learn SIEM fundamentals, including its capabilities, deployment strategies, use case development, and how it helps SOC analysts detect anomalies, triage alerts, and report incidents.
Module 05: Proactive Threat Detection
Learn the importance of threat intelligence and threat hunting for SOC analysts and how its integration with SIEM helps reduce false positives and enables faster, more accurate alert triage.
Module 06: Incident Response
Learn the stages of incident response and how the IRT collaborates with SOC to handle and respond to escalated incidents.
Module 07 Forensics Investigation and Malware Analysis
Learn the importance of forensic investigation and malware analysis in SOC operations to understand attack methods, identify IoCs, and enhance future defenses.
Module 08 SOC for Cloud Environments
Learn the SOC processes in cloud environments, covering monitoring, incident detection, automated response, and security in AWS, Azure, and GCP using cloud-native tools.
Prerequisites
Before attending this accelerated course, you should have one year of work experience in network admin or security.
Exam info
You'll sit the following exam at the Firebrand Training Centre, covered by your Certification Guarantee:
EC-Council Certified SOC Analyst® (CSA® v2) Exam 312-39
- Exam format: Multiple-choice
- Exam duration: 120 minutes
- Number of questions: 100
- Passing score: 70%
- Language: English
- Domains:
- Domain 1: Security Operations and Management (5%)
- Domain 2: Understanding Cyber Threats, IoCs, and Attack Methodology (8%)
- Domain 3: Log Management (15%)
- Domain 4: Incident Detection and Triage (25%)
- Domain 5: Proactive Threat Detection (12%)
- Domain 6: Incident Response (25%)
- Domain 7: Forensics Investigation and Malware Analysis (5%)
- Domain 8: SOC for Cloud Environments (5%)
Course Dates
Sorry, there are currently no dates available for this course. Please submit an enquiry and one of our team will contact you about potential future dates or alternative options.
FAQs
4 questionYes, we do provide courses suitable for beginners. However, Firebrand's accelerated courses aren't easy and it's essential that you are interested and actively pursuing a career in IT.
Traditional training providers usually run their courses from 9am to 5pm. At Firebrand Training we maximise the number of learning hours to minimise the number of training days, so you’ll be back to your job as quickly as possible. You don’t waste time travelling to several courses and finding an exam centre after that.
Firebrand's accelerated courses are constantly reviewed. We ask our delegates for feedback after every course. We are official partners with leading vendors and therefore, we're provided with certification changes and updates, which we can then implement in our course delivery at a very early stage. This feedback is then analysed in view of changes or discrepancies. We will then address the topics mentioned and have a panel of subject matter experts provide us with valuable suggestions for improvement and solutions.
If you need to learn new skills and you want to be able to put them into practice quickly, then Firebrand is the right training company for you.
Our unique accelerated training method means that we are your fastest way to learn. By delivering training for up to 12 hours per day, seven days per week, with exam centres on-site, we ensure that you are trained and certified quicker than anywhere else, having spent less time out of the office away from the day job.
Can't find the answer you're looking for?
Our expert learning advisors are ready to help. Whether you need course recommendations, have technical queries, or want to discuss your learning goals, we're just a message away.
Related courses
All EC-Council CoursesTrain your team
Since 2001 we've trained 134,561 employees from thousands of large and small organisations, saving them more than one million hours in training time.
Learn More