← All trainingCourse in Guardian Foundry

SOC Analyst Tier 1 Triage

Practice the investigations a SOC analyst encounters across email, Windows hosts and security logs. Examine phishing messages, malware behavior and persistence, then use ELK queries and detection tools to follow the evidence.

What you’ll practice

  • Analyze email headers, authentication results and URLs to investigate phishing.
  • Inspect Windows processes, persistence mechanisms and network activity during host triage.
  • Query security logs in ELK and investigate suspicious activity with detection tools.

Topics

  • SOC analysis
  • Windows
  • Email security

Counts include distinct published activities in this course. Answer-based activities and labs count as exercises; assessments are separate. Repeated activities in a learning path count once.

Talk to Rob or Anthony

Plan your team’s training.

Tell us how many people you’re training, their experience levels, and what they need to practice. We’ll discuss a training plan, learner support, and the reporting your team needs.

info@leveleffect.com
Email the team

We aim to respond within 1–2 business days.