GETTING STARTED AS A SOC ANALYST ?
Here are some must-learn tools for your skillset:
๐ Nmap - An open source scanning tool that helps map out networks and identify vulnerabilities. It's critical for understanding the assets SOC analysts need to protect.
๐ฉ๐ฝโ๐ป Splunk - A SIEM platform for collecting, analyzing and correlating security data. Splunk helps SOC teams monitor, investigate threats, and comply with regulations.
โ๏ธ Wireshark - A network protocol analyzer lets you inspect traffic and dig into anomalies. Great for troubleshooting network issues and understanding attacks.
๐ต Snort - An open source intrusion detection and prevention system. Snort uses rules to identify suspicious network activity and malware behaviors.
๐ซ Nessus - A vulnerability scanner that detects weaknesses in systems, networks, and applications. Helps SOC analysts proactively identify risks before attackers do.
๐ MALTEGO - A network reconnaissance tool for mapping networks and identifying relationships.
These tools form a powerful toolkit for monitoring, detecting, investigating and responding to security incidents. Master them to excel as a SOC analyst!
CERTIFICATIONS IN CYBERSECURITY
Blue Team Certifications (Defensive Security)
Beginner:
Security+ (CompTIA Security+): Covers foundational cybersecurity skills like network security, threat detection, and risk management.
Intermediate:
GSEC (GIAC Security Essentials): Focuses on practical defensive security skills and operational knowledge.
Advanced:
CISSP (Certified Information Systems Security Professional): Comprehensive certification for designing and managing security programs.
CISM (Certified Information Security Manager): Emphasizes security governance and management for leadership roles.
GCFE (GIAC Certified Forensic Examiner): Specializes in digital forensics and evidence analysis.
GCIH (GIAC Certified Incident Handler): Trains professionals in incident response and handling cyber threats.
CSA (Certified SOC Analyst): Prepares individuals for Security Operations Center (SOC) roles, focusing on monitoring and response.
Red Team Certifications (Offensive Security)
Beginner:
OSCP (Offensive Security Certified Professional): Hands-on penetration testing and ethical hacking fundamentals.
PenTest+ (CompTIA Penetration Testing): Entry-level certification for penetration testing and vulnerability assessment.
CEH (Certified Ethical Hacker): Introduces ethical hacking techniques and tools.
Intermediate:
GPEN (GIAC Penetration Tester): Practical penetration testing skills for real-world scenarios.
CRTP (Certified Red Team Professional): Focuses on Active Directory exploitation and Red Team tactics.
Advanced:
GXPN (GIAC Exploit Researcher and Advanced Penetration Tester): Advanced exploit development and penetration testing expertise.
PNPT (Practical Network Penetration Tester): In-depth network attack techniques and methodologies.
Back in 2021, my friend Belinda Osei Asibey messaged me on WhatsApp. I just checked today after extraction and analysis and realised where she sent it from: she was at the Ministry of Lands and Natural Resources at the time. Looks like she sent it right from her office ๐๐.
Resources That Can Help:
Achievers Scholars Forum YouTube Channel โ This channel was really helpful for me!
Resources that can help:
https://t.co/n3y0DUwJoO
Check out https://t.co/isravp1KvS for a list of schools that offer your courses and their rankings
If you're applying for fall 2025 and you need quality info & resources, I'd strongly recommend that you subscribe to the Achievers Scholars Forum YouTube channel for valuable tips! You can also connect with the founder for direct Q&A or join the FREE mentorship group.@Bolapius_
I will be giving away a few of these certification exam vouchers later this year:
- Security+
- CASP+
- Cloud+
- CCNA
Which ones should it be? Reply below
Must be following @ablativetech to participate!