Leading Effective Security Operations Centers (SEC-551)

Build and manage a high-performing Security Operations Center (SOC). Learn threat modeling, detection, and response planning.

Course Thumbnail

Essential Skills Gained

Checkmark

Prepare for the GIAC Security Operations Manager (GSOM) certification

Checkmark

Learn mechanisms to improve the SOC and supporting team

Checkmark

Work with tools like Wireshark, TCPDump, ATT&CK Navigator & more

Checkmark

Perform proactive threat scanning and incident response planning

Format

  • Instructor-led
  • 5 days with lectures and hands-on labs.

Audience

  • Cybersecurity professionals
  • Business leaders
  • Developers exploring security trends
  • Managers creating secure programs

Description

This hands-on course prepares aspiring and current security leaders to build, lead, and optimize a modern Security Operations Center (SOC). Whether you're launching a SOC or improving an existing one, you'll gain the strategic, operational, and technical skills to align SOC efforts with business and security goals. Over 5 days, students will explore SOC design, threat modeling, detection strategies, incident response planning, team development, and cloud-based operations. You'll work with tools like MITRE ATT&CK, Wireshark, STIX, TCPdump, and Jupyter to implement real-world use cases and improve SOC performance.

By the end of this course, you will be able to:

• Build and operate a SOC aligned to business needs
• Apply frameworks to improve threat detection and response
• Lead incident response with structured playbooks
• Define and use SOC metrics for performance improvement
• Recruit and retain effective, high-performing teams

The course also prepares students for the GIAC Security Operations Manager (GSOM) certification and reinforces leadership through practical application.

Calendar icon

Upcoming Course Dates

July 14-18, 2025

10:00 AM - 6:00 PM

Virtual: Online - US/Eastern

Enroll

$3995

October 27-31, 2025

10:00 AM - 6:00 PM

Virtual: Online - US/Eastern

Enroll

$3995

Course Outline

Download PDF

Day 01 - Foundations of SOC Leadership and Strategic Planning

What Business Are You In?

What are Cyber Security Threats?

Overview of SOC Operations

Day 02 - Core SOC Functions and Tools

Cyber Defense Industry Trends

Building SOC Types

Capturing Events

Network Security Monitoring

Mapping the Core SOC Functions

SOC Tools & Tech Overview

Day 03 - Build and Maintain SOC

SOC Network Tracing Tools

SOC Scripting and Data Tools

Day 04 - Incident Response and Improvement

Day 05 - Metrics, Performance, and Strategic Leadership

Appendix

Your Team has Unique Training Needs.

Your team deserves training as unique as they are.

Let us tailor the course to your needs at no extra cost.