<?xml version="1.0" encoding="utf-8" ?>
<!DOCTYPE FL_Course SYSTEM "https://www.flane.de/dtd/fl_course095.dtd"><?xml-stylesheet type="text/xsl" href="https://portal.flane.ch/css/xml-course.xsl"?><course productid="34472" language="de" source="https://portal.flane.ch/swisscom/xml-course/fortinet-soc-ans" lastchanged="2026-02-26T10:35:45+01:00" parent="https://portal.flane.ch/swisscom/xml-courses"><title>Security Operations Analyst</title><productcode>SOC-ANS</productcode><vendorcode>FO</vendorcode><vendorname>Fortinet</vendorname><fullproductcode>FO-SOC-ANS</fullproductcode><version>7.4</version><objective>&lt;p&gt;After completing this course, you will be able to:
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Describe the main functions and roles within a SOC&lt;/li&gt;&lt;li&gt;Identify common security challenges that Fortinet SOC solutions address&lt;/li&gt;&lt;li&gt;Analyze simulated attacks and categorize attacker tactics using industry frameworks&lt;/li&gt;&lt;li&gt;Analyze and respond to security incidents according to industry best practices for incident handling&lt;/li&gt;&lt;li&gt;Describe basic FortiAnalyzer SOC concepts, definitions, and features&lt;/li&gt;&lt;li&gt;Manage administrative domains&lt;/li&gt;&lt;li&gt;Describe FortiAnalyzer operation modes&lt;/li&gt;&lt;li&gt;Configure FortiAnalyzer collectors and analyzers&lt;/li&gt;&lt;li&gt;Design and deploy FortiAnalyzer Fabric deployments&lt;/li&gt;&lt;li&gt;Manage Fabric groups&lt;/li&gt;&lt;li&gt;Analyze and manage events, and customize event handlers&lt;/li&gt;&lt;li&gt;Analyze and create incidents&lt;/li&gt;&lt;li&gt;Analyze threat hunting dashboards&lt;/li&gt;&lt;li&gt;Analyze indicators of compromise (IOC) information from compromised hosts&lt;/li&gt;&lt;li&gt;Manage outbreak alerts&lt;/li&gt;&lt;li&gt;Identify playbook components&lt;/li&gt;&lt;li&gt;Describe trigger types and their properties&lt;/li&gt;&lt;li&gt;Create and customize playbooks from a template&lt;/li&gt;&lt;li&gt;Create new playbooks from scratch&lt;/li&gt;&lt;li&gt;Use variables in tasks&lt;/li&gt;&lt;li&gt;Configure connector actions&lt;/li&gt;&lt;li&gt;Monitor playbooks&lt;/li&gt;&lt;li&gt;Export and import playbooks&lt;/li&gt;&lt;/ul&gt;</objective><essentials>&lt;p&gt;You must have an understanding of the topics covered in the following courses, or have equivalent experience:
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;span class=&quot;cms-link-marked&quot;&gt;&lt;a class=&quot;fl-href-prod&quot; href=&quot;/swisscom/course/fortinet-faz-ans&quot;&gt;&lt;svg role=&quot;img&quot; aria-hidden=&quot;true&quot; focusable=&quot;false&quot; data-nosnippet class=&quot;cms-linkmark&quot;&gt;&lt;use xlink:href=&quot;/css/img/icnset-linkmarks.svg#linkmark&quot;&gt;&lt;/use&gt;&lt;/svg&gt;FortiAnalyzer Analyst &lt;span class=&quot;fl-prod-pcode&quot;&gt;(FAZ-ANS)&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;/li&gt;&lt;li&gt;&lt;span class=&quot;cms-link-marked&quot;&gt;&lt;a class=&quot;fl-href-prod&quot; href=&quot;/swisscom/course/fortinet-anlzr-admn&quot;&gt;&lt;svg role=&quot;img&quot; aria-hidden=&quot;true&quot; focusable=&quot;false&quot; data-nosnippet class=&quot;cms-linkmark&quot;&gt;&lt;use xlink:href=&quot;/css/img/icnset-linkmarks.svg#linkmark&quot;&gt;&lt;/use&gt;&lt;/svg&gt;FortiAnalyzer Administrator &lt;span class=&quot;fl-prod-pcode&quot;&gt;(ANLZR-ADMN)&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;/li&gt;&lt;/ul&gt;</essentials><audience>&lt;p&gt;Security professionals involved in the design, implementation, and monitoring of Fortinet SOC solutions based on FortiAnalyzer should attend this course.&lt;/p&gt;</audience><outline>&lt;ul&gt;
&lt;li&gt;1. SOC Concepts and Security Frameworks&lt;/li&gt;&lt;li&gt;2. FortiAnalyzer Architecture&lt;/li&gt;&lt;li&gt;3. SOC Operations&lt;/li&gt;&lt;li&gt;4. SOC Automation&lt;/li&gt;&lt;/ul&gt;</outline><objective_plain>After completing this course, you will be able to:



- Describe the main functions and roles within a SOC
- Identify common security challenges that Fortinet SOC solutions address
- Analyze simulated attacks and categorize attacker tactics using industry frameworks
- Analyze and respond to security incidents according to industry best practices for incident handling
- Describe basic FortiAnalyzer SOC concepts, definitions, and features
- Manage administrative domains
- Describe FortiAnalyzer operation modes
- Configure FortiAnalyzer collectors and analyzers
- Design and deploy FortiAnalyzer Fabric deployments
- Manage Fabric groups
- Analyze and manage events, and customize event handlers
- Analyze and create incidents
- Analyze threat hunting dashboards
- Analyze indicators of compromise (IOC) information from compromised hosts
- Manage outbreak alerts
- Identify playbook components
- Describe trigger types and their properties
- Create and customize playbooks from a template
- Create new playbooks from scratch
- Use variables in tasks
- Configure connector actions
- Monitor playbooks
- Export and import playbooks</objective_plain><essentials_plain>You must have an understanding of the topics covered in the following courses, or have equivalent experience:



- FortiAnalyzer Analyst (FAZ-ANS)
- FortiAnalyzer Administrator (ANLZR-ADMN)</essentials_plain><audience_plain>Security professionals involved in the design, implementation, and monitoring of Fortinet SOC solutions based on FortiAnalyzer should attend this course.</audience_plain><outline_plain>- 1. SOC Concepts and Security Frameworks
- 2. FortiAnalyzer Architecture
- 3. SOC Operations
- 4. SOC Automation</outline_plain><duration unit="d" days="1">1 Tag</duration><pricelist><price country="US" currency="USD">950.00</price><price country="CA" currency="CAD">1310.00</price></pricelist><miles/></course>