Loading . . .

Detection Engineering and Threat Hunting Training

Empower your security team to outsmart adversaries with hands-on training based on real-life scenarios. Dive into critical concepts, improve practical skills, and accelerate threat hunting and detection engineering maturity through enhanced expertise.
400,000+
Library of rules & queries maintained by SOC Prime Team.
30+
SIEM, EDR, and Data Lake platforms we are experts in
100+
Training courses delivered

Advance Your Detection Engineering & Threat Hunting Skills

  • Become more specific in your hunts and research
  • Know how adversaries think and act
  • Become resilient in situations that require ultra-responsiveness
  • Avoid financial & reputation damage by minimizing the risk of a security incident
  • Create your custom detection rules
  • Stay ahead of cyber attacks challenging your business
AI
figure

Training Overview

Detection Engineering
1
day
  • What is Detection Engineering?
  • Pattern recognition
  • Turning logging into detection logic
  • Simple (baseline) vs complex
  • Detection-as-code
  • Signature (IOC) vs behavioral
  • Understanding your environment
  • Intro to resilient detections
  • “Jack of all trades” in Detection Engineering
2
day
  • From Threat to Detection
  • Writing an actual detection from source material (threat report, reverse engineering, sandbox, etc.)
  • Validation & testing
  • Tuning
3
day
  • Scenario
  • Detecting LOL attacks
  • Q&A
Threat Hunting
1
day
  • What is Threat Hunting?
  • Introduction to concepts (frameworks, outputs, CI/CD, threat hunting maturity)
2
day
  • Practical training: Proactive vs. Reactive
  • Approaches to Threat Hunting (hypothesis-based, targeted, freeform)
3
day
  • Introduction to a Threat Hunting scenario
  • Practical training
  • Scenario review
  • Q&A

SOC Prime
Expert Team

SOC Prime’s engineering expertise includes a diverse skill set ranging from Threat Hunting, Detection Engineering, Incident Response, Forensics, and Risk Assessment. Our team involves certified experts, including GREM, GCFE, CISSP, CEH, Security+ recognized professionals and MITRE ATT&CK Defenders.

  • 30+ Seasoned Experts

Elevate Your Cyber Defense at Scale

Rely on SOC Prime’s Professional Services to drive maximum value from your SIEM, EDR, or XDR, have complete visibility into your data, collect and parse all necessary logs, and take your SOC Prime Platform experience to the next level.

SOC planet