Detection Engineering and Threat Hunting Training
Empower your security team to outsmart adversaries with hands-on training based on real-life scenarios.
Dive into critical concepts, improve practical skills, and accelerate threat hunting and detection
engineering maturity through enhanced expertise.
400,000+
Library of rules & queries maintained by SOC Prime Team.
30+
SIEM, EDR, and Data Lake platforms we are experts in
100+
Training courses delivered
Advance Your Detection Engineering & Threat Hunting Skills
- Become more specific in your hunts and research
- Know how adversaries think and act
- Become resilient in situations that require ultra-responsiveness
- Avoid financial & reputation damage by minimizing the risk of a security incident
- Create your custom detection rules
- Stay ahead of cyber attacks challenging your business
Training Overview
Detection Engineering
1
day
day
- What is Detection Engineering?
- Pattern recognition
- Turning logging into detection logic
- Simple (baseline) vs complex
- Detection-as-code
- Signature (IOC) vs behavioral
- Understanding your environment
- Intro to resilient detections
- “Jack of all trades” in Detection Engineering
2
day
day
- From Threat to Detection
- Writing an actual detection from source material (threat report, reverse engineering, sandbox, etc.)
- Validation & testing
- Tuning
3
day
day
- Scenario
- Detecting LOL attacks
- Q&A
Threat Hunting
1
day
day
- What is Threat Hunting?
- Introduction to concepts (frameworks, outputs, CI/CD, threat hunting maturity)
2
day
day
- Practical training: Proactive vs. Reactive
- Approaches to Threat Hunting (hypothesis-based, targeted, freeform)
3
day
day
- Introduction to a Threat Hunting scenario
- Practical training
- Scenario review
- Q&A
SOC Prime
Expert Team
SOC Prime’s engineering expertise includes a diverse skill set ranging from Threat Hunting, Detection Engineering, Incident Response, Forensics, and Risk Assessment. Our team involves certified experts, including GREM, GCFE, CISSP, CEH, Security+ recognized professionals and MITRE ATT&CK Defenders.
- 30+ Seasoned Experts
Explore Our On-Demand
Expertise-as-a-Service
Elevate Your Cyber Defense at Scale
Rely on SOC Prime’s Professional Services to drive maximum value from your SIEM, EDR, or XDR, have complete visibility into your data, collect and parse all necessary logs, and take your SOC Prime Platform experience to the next level.