Just as IT careers often start at the help desk, it is much the same when it comes to cybersecurity. Only the cybersecurity help desk is the Security Operations Center (SOC). There are many roles in a modern SOC, but the one for budding security professionals is the Jr. SOC Analyst. This entry-level cybersecurity job is a great way to see a wide variety of different types of scenarios and can be a great way to figure out in what direction your cybersecurity career should go.
There’s no single path to a lucrative career in cybersecurity and many have jumped the line to go straight into specific, higher-end jobs such as penetration testing or incident response, but a proven path historically has been through the SOC. In SOC Analyst 101, Dr. Ali Hadi teaches foundational SOC Operations from log analysis and threat triage to SIEM and EDR workflows through hands-on labs. It is ideal for aspiring SOC Analysts looking to build real-world defensive skills.
Price = $50
This is a “Name Your Price” course. Your options include:
- Minimum Price = $25
- Suggested Price = $50
- Pay more to support our community efforts
What do I get?
Students get their own web-based virtual environment to get hands-on experience with the tools and techniques taught in the course. It is also web-based, so you need nothing else other than a computer and Internet access. The image below shows the 2 VMs needed for your studies, SOC_Analyst, which is a Kali Linux box, and an Ubuntu Server where you’ll be taught how to setup the Elastic Stack.

SOC Analyst 101 covers the following topics:
0️⃣ SOC Basics
1️⃣ Log Sources
2️⃣ Threat Intelligence
3️⃣ Case Management
4️⃣ Building a SOC
5️⃣ Extending Logging
6️⃣ Case Study
7️⃣ Wrap-Up
Prerequisites for SOC Analyst 101
No prior knowledge is assumed although general IT, basic networking and familiarity with virtual machines (VMs) are recommended.
Further Recommendations
Is this SOC Analyst 101 course a bit too easy for you, but you’re not quite sure what to do next? Try Constructing Defense 2025 for a mile-wide view of the entire blue team side of the cybersecurity equation. ConDef is a 3-Course Path touching on a number of different job responsibilities that will help you determine YOUR next step.
Many SOC Analysts also do some basic IR or help in relaying important information to the Incident Responders. Therefore, a standard next step on JHT for blue teamers is to do Incident Response 101.