Are you ready to enter the high-demand field of cybersecurity? The EC-Council Certified SOC Analyst (CSA) program is your essential first step towards a thriving career in a Security Operations Center (SOC). This comprehensive training is specifically designed to equip both current and aspiring Tier I and Tier II SOC analysts with the proficiency needed to excel in entry-level and intermediate-level operations.
The CSA is an intensive 3-day training and credentialing program that provides candidates with trending and in-demand technical skills, delivered by some of the most experienced trainers in the industry. The program focuses on creating new career opportunities by providing extensive, meticulous knowledge and enhanced capabilities, enabling you to dynamically contribute to any SOC team.
You will gain a thorough understanding of the fundamentals of SOC operations, followed by in-depth knowledge of log management and correlation, SIEM deployment, advanced incident detection, and robust incident response strategies. Furthermore, you will learn to effectively manage various SOC processes and collaborate seamlessly with the Computer Security Incident Response Team (CSIRT) when critical situations arise.
Learning Outcomes
Who Should Take This Course ?
This course is ideal for current and aspiring Tier I and Tier II SOC analysts who want to achieve proficiency in performing entry-level and intermediate-level operations. Whether you're new to cybersecurity or looking to enhance your skills in a Security Operations Center, this program will equip you with comprehensive knowledge in SOC operations, log management, SIEM deployment, advanced incident detection, and incident response. It’s also a great fit for those interested in creating new career opportunities by gaining extensive and meticulous knowledge for dynamically contributing to a SOC team.
- Exam Format
-
The CSA exam is designed to test and validate a candidate’s comprehensive understanding of the job tasks required as a SOC analyst. This ensures a solid grasp of the complete SOC workflow.
-
The CSA program requires a candidate to have 1 year of work experience in the Network Admin/Security domain. Proof of this experience must be provided during the application process unless the candidate attends official training.
- Exam Title: Certified SOC Analyst
- Exam Code: 312-39
- Number of Questions: 100
- Duration: 3 Hours
- Test Format: Multiple Choice
- Passing Score: 70%
Module 01: Security Operations and Management
Module 02: Understanding Cyber Threats, IoCs, and Attack Methodology
Module 03: Incidents, Events, and Logging
Module 04: Incident Detection with Security Information and Event Management (SIEM)
Module 06: Incident Response
EC Council Accredited Training Center (ATC)

Upon successfully passing the examination for this course, participants will be awarded a certificate, an example of which is shown below.

EC-Council Certified SOC Analyst (CSA)
