<?xml version="1.0" encoding="utf-8" ?>
<!DOCTYPE FL_Course SYSTEM "https://www.flane.de/dtd/fl_course095.dtd"><?xml-stylesheet type="text/xsl" href="https://portal.flane.ch/css/xml-course.xsl"?><course productid="36488" language="en" source="https://portal.flane.ch/swisscom/en/xml-course/innovator-mcsoc" lastchanged="2026-05-04T09:59:30+02:00" parent="https://portal.flane.ch/swisscom/en/xml-courses"><title>SOC – Security Operations Center – Hands On Cyber Attack Simulation</title><productcode>MCSOC</productcode><vendorcode>IC</vendorcode><vendorname>Innovator Class</vendorname><fullproductcode>IC-MCSOC</fullproductcode><version>2.1</version><essentials>&lt;p&gt;The Master Class does not require specialized knowledge of specific technologies. Knowledge of IT security principles and information security management should be present.&lt;/p&gt;</essentials><audience>&lt;p&gt;Executives, managers and auditors for IT and information security, employees from the areas of IT and information security.&lt;/p&gt;</audience><contents>&lt;p&gt;In the area of malware, students learn about current threats and the fundamentals of analysis, and apply this knowledge in practical exercises.&lt;/p&gt;
&lt;p&gt;In the context of SIEM, participants will learn about architectures, log analysis, and security incident management, and will use Splunk for attack detection.&lt;/p&gt;
&lt;p&gt;Network forensics involves the analysis of network traffic and the detection of attacks at the protocol level.&lt;/p&gt;
&lt;p&gt;In this advanced SIEM workshop, participants will create and optimize their own detection rules based on real-world scenarios.&lt;/p&gt;
&lt;p&gt;SOC processes and reporting cover roles, procedures, and the creation of structured reports.&lt;/p&gt;
&lt;p&gt;The exercises are an integral part of all modules and are based on realistic attack scenarios. AI tools are specifically used to support analysis and decision-making processes.&lt;/p&gt;</contents><essentials_plain>The Master Class does not require specialized knowledge of specific technologies. Knowledge of IT security principles and information security management should be present.</essentials_plain><audience_plain>Executives, managers and auditors for IT and information security, employees from the areas of IT and information security.</audience_plain><contents_plain>In the area of malware, students learn about current threats and the fundamentals of analysis, and apply this knowledge in practical exercises.

In the context of SIEM, participants will learn about architectures, log analysis, and security incident management, and will use Splunk for attack detection.

Network forensics involves the analysis of network traffic and the detection of attacks at the protocol level.

In this advanced SIEM workshop, participants will create and optimize their own detection rules based on real-world scenarios.

SOC processes and reporting cover roles, procedures, and the creation of structured reports.

The exercises are an integral part of all modules and are based on realistic attack scenarios. AI tools are specifically used to support analysis and decision-making processes.</contents_plain><duration unit="d" days="3">3 days</duration><pricelist><price country="DE" currency="EUR">2490.00</price><price country="CH" currency="CHF">2490.00</price><price country="AT" currency="EUR">2490.00</price><price country="SE" currency="EUR">2490.00</price><price country="SI" currency="EUR">2490.00</price></pricelist><miles/></course>