Certified SOC Analyst Training Program

Certified Soc Analyst (CSA) Become a cyber first responder Monitor, Detect, Prevent & Document Cyber Incidents

Talk to a Career Counselor

Fill out the form and an expert EC-Council Training Consultant will contact you to help you get all your questions answered.

Name(Required)
Country(Required)

Certified SOC Analyst Certification | EC-Council iClass

The Certified SOC Analyst (CSA) program is the first step to joining a security operations center (SOC). It is engineered for current and aspiring Tier I and Tier II SOC analysts to achieve proficiency in performing entry-level and intermediate-level operations.

CSA is a training and credentialing program that helps the candidate acquire trending and in-demand technical skills through instruction by some of the most experienced trainers in the industry. The program focuses on creating new career opportunities through extensive, meticulous knowledge with enhanced level capabilities for dynamically contributing to a SOC team. Being an intense 3-day program, it thoroughly covers the fundamentals of SOC operations, before relaying the knowledge of log management and correlation, SIEM deployment, advanced incident detection, and incident response. Additionally, the candidate will learn to manage various SOC processes and collaborate with CSIRT at the time of need.

Pricing Options

On
Demand

On Demand Instructor-led Training Videos

Official E-Courseware

Online CyberQ Labs

Certification Exam

Certificate of Completion

One Additional Certification Course Included

Live Instructor-led Training (in-person or online)

Online Exam Prep (CEH, CHFI, CND Only)

CodeRed Continuing Education Video Subscription

$1,399
$806
$388
$1,069

*Financing Available (US Only)

Unlimited On Demand
(Club)

On Demand Instructor-led Training Videos

Official E-Courseware

Online CyberQ Labs

Certification Exam

Certificate of Completion

Unlimited Additional Certification Courses Included

Live Instructor-led Training (in-person or online)*

Online Exam Prep (CEH, CHFI, CND Only)

CodeRed Continuing Education Video Subscription

$2,999
$2,999
$2,999
$2,999

*Financing Available (US Only)


Live

On Demand Instructor-led Training Videos

Official E-Courseware

Online CyberQ Labs

Certification Exam

Certificate of Completion

One Additional Certification Course Included

Live Instructor-led Training (in-person or online)

Online Exam Prep (CEH, CHFI, CND Only)

CodeRed Continuing Education Video Subscription

$3,499
$3,499
$3,499
$3,499

*Financing Available (US Only)

*Upgrade any course to live training for $499

About the Certified SOC Analyst Course

Course Outline

  • Module 01 – Security Operations and Management
  • Module 02: Understanding Cyber Threats, IoCs, and Attack Methodology
  • Module 03: Incidents, Events, and Logging
  • Module 04: Incident Detection with Security Information and Event Management (SIEM)
  • Module 05: Enhanced Incident Detection with Threat Intelligence
  • Module 06: Incident Response

The Certified SOC Analyst (CSA) program is the first step to joining a security operations center (SOC). It is engineered for current and aspiring Tier I and Tier II SOC analysts to achieve proficiency in performing entry-level and intermediate-level operations.

CSA is a training and credentialing program that helps the candidate acquire trending and in-demand technical skills through instruction by some of the most experienced trainers in the industry. The program focuses on creating new career opportunities through extensive, meticulous knowledge with enhanced level capabilities for dynamically contributing to a SOC team. Being an intense 3-day program, it thoroughly covers the fundamentals of SOC operations, before relaying the knowledge of log management and correlation, SIEM deployment, advanced incident detection, and incident response. Additionally, the candidate will learn to manage various SOC processes and collaborate with CSIRT at the time of need.

As the security landscape is expanding, a SOC team offers high quality IT-security services to actively detect potential cyber threats/attacks and quickly respond to security incidents. Organizations need skilled SOC Analysts who can serve as the front-line defenders, warning other professionals of emerging and present cyber threats.

The lab-intensive CSA program emphasizes the holistic approach to deliver elementary as well as advanced knowledge of how to identify and validate intrusion attempts. Through this, the candidate will learn to use SIEM solutions and predictive capabilities using threat intelligence. The program also introduces the practical aspect of SIEM using advanced and the most frequently used tools. The candidate will learn to perform enhanced threat detection using the predictive capabilities of Threat Intelligence.

Recent years have witnessed the evolution of cyber risks, creating an unsafe environment for the players of various sectors.

To handle these sophisticated threats, enterprises need advanced cybersecurity solutions along with traditional methods of defense. Practicing good cybersecurity hygiene and implementing an appropriate line of defense, and incorporating a security operations center (SOC) have become reasonable solutions. The team pursues twenty-four-hour and “follow-the-sun” coverage for performing security monitoring, security incident management, vulnerability management, security device management, and network flow monitoring.

A SOC Analyst continuously monitors and detects potential threats, triages the alerts, and appropriately escalates them. Without a SOC analyst, processes such as monitoring, detection, analysis, and triaging will lose their effectiveness, ultimately negatively affecting the organization.

Meet Your Instructor

iLabs Demo:

The CSA exam is designed to test and validate a candidate’s comprehensive understanding of the jobs tasks required as a SOC analyst. Thereby validating their comprehensive understanding of a complete SOC workflow.

Credit Towards Certification: Certified SOC Analyst

Exam Code: 312-39

Number of Questions: 100

Passing Score: 70%

Test Duration: 3 Hours

Test Format: Multiple Choice

Test Delivery: ECC Exam Portal

  • SOC Tier 3 Analyst
  • SOC Security Analyst
  • SOC Analyst I
  • Cyber Security Analyst
  • Security Incident Response Analyst / SOC Analyst
  • Information Assurance Compliance Analyst
  • Junior SOC Analyst
  • Junior Program Analyst

  • Junior Program Analyst
  • SOC Tier 2 Analyst
  • Cyber Incident Response Analyst / SOC Analyst
  • Junior Monitoring Analyst
  • Security Analyst I
  • Jr. Vulnerability Analyst
  • Global Information Security SOC Team Lead
  • Program Analyst

Don’t just take a class. Join a program.

Spend 5 days with the MasterClass SOC Analyst Program and get two courses and two certifications!

We have combined the three-day Certified SOC Analyst (CSA) course with the two-day Certified Threat Intelligence (CTIA) course into five days of intense learning where you will master how to triage and classify incidents as well as how to coordinate incident handling and response efforts. While our more technical programs like the Certified Ethical Hacker focus on the tactical cyber security elements you commonly see with a threat hunter or SOC level 2 and 3 roles, our SOC analyst course is a great entry point to establish common definitions across the entire SOC team from entry level analysts to managers.

Certifed SOC Analyst

The CSA program is the first step to joining a security operations center (SOC). It is engineered for current and aspiring SOC analysts to achieve proficiency in performing entry-level and intermediate-level operations. The program focuses on creating new career opportunities through extensive, meticulous knowledge with enhanced capabilities for dynamically contributing to a SOC team.

Certifed Threat Intelligence Analyst

The CTIA course provides a threat intelligence deep dive to further round out the MasterClass Soc Analyst program. The CTIA is a method-driven program that uses a holistic approach, covering concepts from planning the threat intelligence project to building a report to disseminating threat intelligence. These concepts are highly essential while building effective threat intelligence and, when used properly, can secure organizations from future threats or attacks.

The MasterClass package includes:


Certified SOC Analyst
(CSA):

  • Certified SOC Analyst (CSA) 3 Day Live Course
    • CSA E-Courseware
    • CSA iLabs, Live Labs/Cyber Range
    • CSA Certification Exam
    • Exam Insurance Program
  • CSA Online Self-Paced Streaming Video Course (1 year access)

AND

Certified Threat
Intelligence (CTIA):

  • Certified Threat Intelligence (CTIA) 2 Day Live Course
    • CTIA E-Courseware
    • CTIA iLabs, Live Labs/3 Cyber Ranges
    • CTIA Certification Exam
    • Exam Insurance Program
  • CTIA Online Self-Paced Streaming Video Course (1 year access)

About MasterClass

The Most Robust

The MasterClass SOC Analyst Program includes two courses and two certifications. We have combined the three-day CSA course with the two-day CTIA course.

The CSA program is the first step to joining a security operations center (SOC). It is engineered for current and aspiring Tier I and Tier II SOC analysts to achieve proficiency in performing entry-level and intermediate-level operations. The program focuses on creating new career opportunities through extensive, meticulous knowledge with enhanced level capabilities for dynamically contributing to a SOC team.

The CTIA course provides a threat intelligence deep dive to further round out the MasterClass Soc Analyst program. The CTIA is a method-driven program that uses a holistic approach, covering concepts from planning the threat intelligence project to building a report to disseminating threat intelligence. These concepts are highly essential while building effective threat intelligence and, when used properly, can secure organizations from future threats or attacks.

Practical Knowledge

In addition to the 22 practical labs included in the SOC Analyst program, MasterClass teaches the commonly used SIEM use-cases across all SIEM deployments:

  • ArcSight use-cases
  • LogRythym use-cases
  • QRadar use-cases
  • Splunk use-cases
  • Windows security audit eventsthis program includes hands-on learning delivered through iLabs, online labs.

The Most Labs

  • CSA
    • 22 Exercises
    • Approximately 11 Hours

  • CTIA
    • 20 Exercises
    • Approximately 8 Hours

Exam Insurance Program

Here at Masterclass we know that test taking can be very stressful, so we have developed a program to put your mind at ease.

While no one can guarantee that you will pass the exam, we can offer you Exam Insurance: If you fail either certification exam included in this program on the first attempt, EC-Council will pay for the next attempt. Any further attempts can be purchased at the reduced “retake” rate.

Who Should Attend?

  • SOC Analysts (Tier I and Tier II)
  • Network and Security Administrators
  • Network and Security Engineers
  • Network Defense Analyst
  • Network Defense Technicians

  • Network Security Specialist
  • Network Security Operator
  • Cybersecurity Analyst
  • Entry-level cybersecurity professionals

Live Course Dates in North America

Live Course Dates outside of North America

Save big. Join the club.

As an iClass Club member, you receive unlimited access to EC-Council’s library of video courses. Upgrade to live classes for only $499 each during the subscription year.

You can even finance your Club membership through our partnership with Affirm. In the cart, you’ll be able to split your purchase into easy monthly payments. Term lengths range from 3 to 36 months depending on eligibility and purchase amount, with rates starting as low as 0% APR.

*Your rate will be 0% APR or 10–30% APR based on credit and is subject to an eligibility check. 0% APR is subject to change. Payment options through Affirm are provided by these lending partners: affirm.com/lenders. Options depend on your purchase amount, and a down payment may be required. US Residents Only.

Certification Club Benefits:

Don’t limit yourself to one class per year, join the iClass Club and get your cybersecurity training directly from the source! No one course can make you an expert, so take advantage of EC-Council Master trainers in each subject area and become a well-rounded cybersecurity professional.

For approximately the cost of one live course, the iClass Club will stretch your budget from one course to many. With savings like that, you can afford to build a strong foundation of cybersecurity knowledge in ethical hacking, pen testing, network defense, incident response, computer forensics, and so much more!

Get Started

One Year Subscription

$2,999

Access to EC-Council’s full library of on-demand courses

Official e-courseware

iLabs*

Certification exam*

Move to “enhance” to upgrade your experience.

Enhance

During your subscription, you can upgrade to a live course for $499!

Official Printed Courseware

iLabs*

Certification exam*

Lastly, receive ongoing professional development by moving to the Continuing Education phase!

Continuing Education

One year of CodeRed

Included

Continue to learn and gather continuing education credits with CODERED!

Premium Content: 4000+ Premium Videos

Fresh Content: New courses and content are added weekly to keep up with the latest skills and technologies.

CodeRed course videos come with lab demos to reinforce course learning concepts and create a constant career learning companion.


Club Subscription in North America

Club Subscription outside of North America

Certification Club Terms:

*Not all courses and workshops have associated Labs and exams. Club members must complete 100% of a course before requesting their next course and to be eligible for that course’s exam voucher. CCISO students must meet the eligibility requirements to challenge the CCISO exam. Students who do not meet the CCISO qualifications must take the EISM exam. CodeRed subscription 12 months. Club membership applicable to EC-Council classes only and does not apply to third party or Hacker Halted classes. Devices such as drones or STORMs must be purchased separately at regular price. Drones and STORMs only ship to the US. Students outside of the US can attend drone workshops but must obtain a drone on their own. If a course version changes while your program is still active, you will be given updated material. If a course version changes after your Club is expired, you will need to purchase an extension to get the new version. Club valid for one year and term begins 24 hours after payment is received. After a period of one (1) year the program expires, and all courses are turned off. Lab access term is for 6 months from when a course is assigned. Additional lab time can be added for no extra charge upon request. Labs will not be extended beyond the Club term. Speak to your rep to extend your Club term for 1 year. Renewal price for the Club is $999. Discount not stackable. The Club is a single user license meaning that the courses cannot be shared, and the club is non-transferable.


If you are outside of North America and are interested in the club subscription, please click here.

If you are outside of North America and are interested in the club subscription, please click here.

If you are outside of North America and are interested in the club subscription, please click here.

Think you’re ready?

Have questions?

How do you like to learn?

Join us for a free half-day of Certified SOC Analyst (CSA) through our new First Look Cybersecurity Learning Events!