← All trainingCourse in Guardian Foundry
SOC Analyst Tier 1 Triage
Practice the investigations a SOC analyst encounters across email, Windows hosts and security logs. Examine phishing messages, malware behavior and persistence, then use ELK queries and detection tools to follow the evidence.
What you’ll practice
- Analyze email headers, authentication results and URLs to investigate phishing.
- Inspect Windows processes, persistence mechanisms and network activity during host triage.
- Query security logs in ELK and investigate suspicious activity with detection tools.
Topics
- SOC analysis
- Windows
- Email security
Counts include distinct published activities in this course. Answer-based activities and labs count as exercises; assessments are separate. Repeated activities in a learning path count once.