Detect, Triage, and Report Cyber Threats Like a SOC Analyst Course Code: ICT-SOC-101 AI-Integrated Curriculum
Course Catalogue Prepared By
Great Enthusiasts of Skills Training Academy and Assessment Center Inc.
GESTAAC INC.
Course Overview
Become a Job-Ready Security Operations Analyst
This program trains learners to monitor networks and systems for security events, analyze logs and alerts using industry SIEM tools, and triage, escalate, and report incidents the way a real Security Operations Center (SOC) does. The course culminates in a simulated live-alert SOC exercise. No prior cybersecurity experience required.
6 Modules36 Training Hours Beginner Level Certificate of Completion
Prerequisites
Basic computer literacy and comfort navigating Windows. No networking or security background needed — fundamentals are covered from session one.
Methodology
Hands-on labs with real SIEM tools, log analysis exercises, guided alert investigations, and a capstone SOC simulation with live alerts.
Schedule
Weekend Class: Saturdays, 9:00 AM - 3:00 PM
Duration: 6 Sessions (6 Weekends)
* Weekend class only — designed for working professionals and students.
Training Investment
Training Fee:₱ 14,090
* Inclusive of training materials and certificate. Installment available: 50% down, balance at mid-course.
Curriculum Breakdown
Session 1
Cybersecurity Foundations & Threat Landscape
Think like a defender from day one.
CIA Triad & Security Terminology
Threat Actors, Attack Vectors & Malware
Cyber Kill Chain & MITRE ATT&CK
PH Cybercrime Law (RA 10175) & Data Privacy Act
Session 2
Network & System Fundamentals for Defenders
Know the terrain you are protecting.
TCP/IP, Ports & Protocols
Windows & Linux Essentials for Security
Firewalls, IDS/IPS & Endpoint Protection
Traffic Inspection with Wireshark
Session 3
Security Operations & SIEM
Step inside the Security Operations Center.
SOC Roles, Tiers & Analyst Workflow
SIEM Concepts & Log Sources
Hands-On SIEM Lab (Wazuh / Splunk Free)
Detection Use Cases & Dashboards
Cybersecurity Operations & Threat Monitoring | Prepared by GESTAAC INC. | Page 1
Detection, Response & Capstone
Session 4
Threat Detection & Log Analysis
Find the attacker hiding in the logs.
Windows Events, Syslog & Web Logs
Indicators of Compromise (IOCs)
Phishing & Malware Alert Investigation
Threat Intel Feeds & AI-Assisted Triage
Session 5
Incident Triage, Escalation & Reporting
Turn alerts into clear, actionable reports.
Alert Prioritization & Severity Levels
Incident Response Lifecycle (NIST)
Escalation Procedures & Ticketing
Shift Handover & Incident Reports
Session 6
Capstone: Simulated SOC & Assessment
One full day on the virtual SOC floor.
SOC Simulation: Monitor live alerts end-to-end — detect, triage, escalate, and report in real time.
Skills Assessment: Practical evaluation of monitoring, triage, escalation, and reporting skills.
Career Pathing: SOC Analyst Tier 1 roles, certifications roadmap, and resume guidance.
Certificate of Completion
Course Code: ICT-SOC-101
Skills Training Program
Prepared by: GESTAAC INC.
Cybersecurity Operations & Threat Monitoring | Prepared by GESTAAC INC. | Page 2