From Basics to Breaches
Go from opening up a browser to hunting down malware while learning all relevant IT skills along the way, with no need to stitch together different content and courses to accomplish this.
Many students still find Level Effect after spending tens of thousands on entry-level bootcamps or live training vendors with not a lot to show for, or getting lost in a sea of 20-30 hour high-level courses that were never designed to connect to one another.
Let's change that - together with SOC100:
You invest, We invest. The course is pay-what-you-can with an affordable minimum pricing. Additionally, what ever you pay we'll credit toward CDA or any one of our other courses after completion.
It's taught by many top professionals in the field and features over 20 modules, 400+ hours of content, and 180+ labs, all instructed live and available on-demand afterward
Go from opening an app to removing malware and using a SIEM, to working in a Virtual SOC as a Tier 1 Cybersecurity Analyst
It readies you for Intermediate training by starting you in Detection Engineering, DFIR, and more
It offers experience to put on your resume as a Community SOC Analyst helping others just like you
Let's make an impact.
Welcome to "SOC100-3: Defend".
You've learned how to triage Tier 1 incidents in SOC100-2, now it's time to get to work in your own Virtual SOC! You'll choose your incidents to respond to and triage. You'll then need to validate your findings in order to complete the course.
Completing this course requires complete practical ability. No multiple choice guesswork or test-taking ability. You need to be able to do the work. Upon completion you will be rewarded with the SOC100-3 certification!
🔴 NOTE - This is Course 3 of the SOC100 Course Series here! If you want a visual you can check out the flowchart roadmap here.
SOC100-3 will be streamed on our Twitch channel here: https://www.twitch.tv/leveleffect
Tier 1 Triage
This course has full on-demand content that will also be instructed live fully the first time. Review the Stream Schedule above for timing.
The stream recordings will then be added in as recordings to the course content where the course will remain completely on-demand after that.
The on-demand content will consist of:
Video lectures and labs
Quizzes and challenges
Portfolio projects to build of your own
Industry speakers & CDA Alumni
PRE-REQUISITES
SOC Analyst Tier 1 Triage: Be able to respond to and remediate malicious incidents identifying persistence, process, and network related IOCs.
SOC100 students have access to an exclusive Discord help channel.
Help is provided during business hours.
You will find access to the channel within the SOC100 series of courses.
You will receive help from the Level Effect team as well as Community Analysts (see the next tab for more information on this).
Education is not enough. Our students can gain resume volunteer experience as per below and we will provide what you add on your resume:
SOC100 students can submit a form within the course to be Community Jr. SOC Analysts
CDA Students can submit a form to be Community SOC Analysts, and Community Malware & Challenge Developers
The expectations are as follows:
Community Jr. SOC Analysts are expected to help other SOC100 students in the Discord support channel get through the SOC100 series of content
Community SOC Analysts are expected to help SOC100 and CDA Students get through content
Community Malware & Challenge Developers are expected to contribute to our community GitHub
Pay what you can (PWYC) with a "You Invest, We Invest" model.
Minimum $59.
Suggested $89.
What you pay we'll credit toward our CDA course or one other course of your choice.
Owned forever after purchase, including updates.
50 lab hours are included in the purchase.
Additional lab time is $0.20 - $0.40 per hour and can be used on any courses you own in our platform.
DFIR Incidents*
Weeks+
Hours+
SOC100-3 consists of individual DFIR incidents in your own Virtual SOC to triage through per the competencies below. The course will release with several with more added monthly until we get to a minimum of 12.
UP TO BUT NOT LIMITED TO:
UP TO BUT NOT LIMITED TO:
UP TO BUT NOT LIMITED TO:
UP TO BUT NOT LIMITED TO:
Note - we do not get into code, or assembly at this level as that is much more advanced.
UP TO BUT NOT LIMITED TO:
Note - we use ELK as a SIEM for you.
UP TO BUT NOT LIMITED TO:
Choose from a list of individual DFIR scenarios to generate alerts and data for you to begin your hunt.
Investigate the incident, determine the extent of the threat, document a timeline and prepare your findings for validation.
Working in the Virtual SOC provides you with experience similar to working in the field, with an interface and environment of enriched data you'd see in a SOC/SOAR and challenging Tier 1 difficulty tickets.
You'll also be able to submit your reports for evaluation inside the VSOC itself as a feature coming soon.
Note - In the meantime you will submit your IOC findings individually for validation of your work.
Go from opening up a browser to hunting down malware while learning all relevant IT skills along the way, with no need to stitch together different content and courses to accomplish this.
You have more than one top experienced professional teaching you here, and a Discord community where you can reach them directly for support. Level Effect has also been doing this for 4 years now - check out our testimonials.
Gain experience in a virtualized Security Operations Center (SOC) environment triage incidents just like on the job, and complete 5 challenging certifications.
We're tired of overpriced content & bootcamps where you're paying for their marketing budget, and we bet that you are, too. This is our effort to put out a solid course with far better value, that shouldn't break your bank.
Once you own the content, you own it forever! This includes the updates we'll make to this course. The best part is once you learn the material, you can ask to help others and put various roles on your resume as Community SOC Analyst, or Malware Developer, and more.
The future of Cybersecurity at a technical level is Engineering. Develop your Tier 1 Analyst skills here to get going, as well as advanced foundations to get started on the needs of what's to come.
This is what John Hammond had to say about our Cyber Defense Analyst Program in its first iteration.
And guess what? It's only gotten better.
Sandra's reviewed a lot of training programs... hear what she has to say about our real SOC experience.
Learn about the origin story of Level Effect, why we made our original Cyber Defense Analyst program, and the problems we aimed to solve in the cybersecurity training landscape.
Yes.
And we'll credit you back what you pay for if you take future courses with us.
All content will be provided with enough VM hours for a single pass. We've kept the cost for additional hours as low as possible and will be within the $0.20 - 0.40 range per hour.
Any lab hours you purchase can be used in any other course you own in our https://training.leveleffect.com platform.
The majority if not 90% or more is completely fine to do on your own home lab.
Some students that come through are more proficient or “tech-savvy” and want to set up a virtual machine to continue their learning. We'll do our best to help you troubleshoot things in Discord if you choose this but we do also expect you to be willing to troubleshoot what we suggest so that we can maintain our time and resources for the delivery of this course to everyone.
Inside SOC100, you’ll have access to essential steps to build out some home lab virtual machines to continue the work there.
NOTE: This is not a requirement to complete SOC100; instead, this is optional for those who wish to step outside of the curriculum with their learning. You can still complete SOC100 without a home lab virtual machine.
Yes!
You can add all the SOC100 coursework as anything under Education and Training.
Afterwards you can add the following as Volunteer Experience:
You can also add any of the "Challenge" topics in the coursework under your portfolio as Home Lab based, as they will start you off but have you finish them on your own to your liking. We strongly recommend grouping up on this part for networking and feeling what it's like to work in technical teams!
Firstly, make sure to submit the Waitlist Form and provide your preferences for days and time for when you'd like the content to be instructed live.
If you want to see examples of what the classes might be like, click here to check out our Example Class section and more on our YouTube.
Live classes will be streamed on Twitch open to all to join. Questions can be asked live that can be answered right on the spot and we encourage it! Any further troubleshooting or deeper questions can be put inside our Discord where one of us will help you through it.
There is NO CAMERA for students, you will all be in the chat and it will be moderated.