Tools to learn for SOC Analysts

Sdílet
Vložit
  • čas přidán 2. 07. 2024
  • Unlock the essential toolkit for SOC analysts! In this video, discover the must-learn tools that every Security Operations Center (SOC) analyst should have in their arsenal. Gain valuable insights into the tools that are expected to use in a SOC that will elevate your SOC game.
    Windows Event Resources
    www.ultimatewindowssecurity.c...
    www.malwarearchaeology.com/ch...
    _________________________________
    THE MYDFIR SOC ANALYST COURSE:
    With 8 chapters and 30+ hands-on labs tailored to security operations, I am focused on transforming you into a standout SOC analyst. Beyond tools, you'll master the investigation process and uncover hidden details. Let's make a real difference together.
    ▸Enroll here: academy.mydfir.com/p/soc
    _________________________________
    SIGN UP FOR FREE MENTORSHIP
    Getting started in Cybersecurity is difficult and you don't have to do it alone.
    Let me help you on your journey.
    ▸Sign up for FREE here: www.mydfir.com/mentorship
    _________________________________
    RECOMMEND COURSES FOR BEGINNERS:
    Coursera Google Cybersecurity Program
    Affiliate Link - imp.i384100.net/mydfir
    Microsoft Cybersecurity Analyst Professional Certificate
    Affiliate Link - imp.i384100.net/mydfir-MS
    Coursera Google IT Support Professional Certificate
    Affiliate Link - imp.i384100.net/mydfir-IT
    _________________________________
    PRODUCTS TO HELP YOU GET STARTED
    🗺️ 1-Year Cybersecurity Roadmap: mydfir.gumroad.com/l/roadmap
    📄 Resume Template: mydfir.gumroad.com/l/Resume-T...
    📑 Cover Letter Template: mydfir.gumroad.com/l/Cover-Le...
    🎙️ Interview Questions: www.mydfir.com/interview
    📚 Cybersecurity bookmarks: mydfir.gumroad.com/l/bookmarks
    _________________________________
    EARLY ACCESS & EXCLUSIVE VIDEOS
    Patreon: / mydfir
    _________________________________
    🕒 TIMELINE
    00:00 - Intro
    00:18 - Tool 1
    01:31 - Tool 2
    02:23 - Tool 3
    03:40 - Bonus
    _________________________________
    FOLLOW ME ON SOCIAL MEDIA:
    ▸Instagram: / mydfir
    ▸X: x.com/@MyDFIR
    Disclaimer: All opinions in my videos are solely my own. Some links provided are affiliate links!
    #cybersecurity #cybersecuritytrainingforbeginners #cybersecurityforbeginners #socanalyst #soc

Komentáře • 42

  • @thefrub
    @thefrub Před 7 měsíci +9

    SANS needs to hire this man! You have a really concise yet entertaining way of presenting, keep it up!

    • @MyDFIR
      @MyDFIR  Před 7 měsíci +1

      Haha thank you for the kind words!

  • @joshuaspeshock4636
    @joshuaspeshock4636 Před 7 měsíci +2

    Really like how you not only covered tools but resources that you can use to get more hands on practice with them whether it’s through investigations or home labs. Also, liked how you brought up the context of it’s great to know the tools but it’s more important to understand the value behind them and when is best to use them. Overall, great explanations and really well done great job!

    • @MyDFIR
      @MyDFIR  Před 7 měsíci +1

      Thanks! It’s always about the value, really understanding the WHY use a certain tool and how it functions.

  • @addey6323
    @addey6323 Před 7 měsíci +1

    Calmly waiting for a piece on tool for digital forensic/eDiscovery. Thanks for sharing. Been watching from Ghana 🇬🇭 West Africa

    • @MyDFIR
      @MyDFIR  Před 7 měsíci +1

      Soon 👀 will do a lot more DFIR related videos in the new year

  • @melaronvalkorith1301
    @melaronvalkorith1301 Před 7 měsíci +1

    Great video! I appreciate how you call out the fact that tools are only as good as what you use them for. I’d love to see a video about your way (or various ways you know) of approaching an investigation and the thought process that goes into each step. Keep up the great work!

    • @MyDFIR
      @MyDFIR  Před 7 měsíci

      Thanks! I have something similar coming out which is going through a PCAP. I do like the idea of talking about the thought process. Great suggestion ❤️

  • @user-ui6mj6bg7b
    @user-ui6mj6bg7b Před 6 měsíci +1

    Gracias por todo el contenido
    Nos ayuda mucho a la comunidad de Seguridad defensiva Blue Team. Normalmente en las Redes hay poca informacion.
    Un abrazo.

  • @Marilyn_ken
    @Marilyn_ken Před 5 měsíci +1

    Thanks for this video.. Been on ur page all night, this the answer I have been looking for

    • @MyDFIR
      @MyDFIR  Před 5 měsíci

      Happy to help! Thanks for watching ❤️ let me know if you have any questions!

  • @irocz5150
    @irocz5150 Před 7 měsíci +1

    Great content. No Tools will cover everything...and are not 100% perfect. You are right when you mention a SIEM is no required...now we have hyperautomation as a "new" trend SIEM killer. Sometimes tools go hand 2 hand with required compliance like hippa, gdpr etc etc.

    • @MyDFIR
      @MyDFIR  Před 7 měsíci +1

      Yup, “No Tools will cover everything” love it. ❤️

  • @gabegutz7120
    @gabegutz7120 Před 4 měsíci +1

    Kind of surprised to hear Arkime mentioned lol. My uncle helped develop the tool and the Cont3xt tool used within Arkime

    • @MyDFIR
      @MyDFIR  Před 4 měsíci +1

      Wow! Thats amazing. Arkime is great, it is one of those tools you never thought you needed until you use it haha - Indexed PCAPs ....beautiful

  • @b3rn4rd01
    @b3rn4rd01 Před 7 měsíci +1

    ❤❤❤❤❤❤❤❤
    Awesome SOC info!!!!

  • @mrgolbez
    @mrgolbez Před 7 měsíci +1

    ❤❤❤ best SOC info out there!

  • @abdoabdo-mj2hp
    @abdoabdo-mj2hp Před 5 měsíci +1

    Bro great job a lot important info

    • @MyDFIR
      @MyDFIR  Před 4 měsíci

      Thanks a lot!

  • @elliscaicedo9045
    @elliscaicedo9045 Před 4 měsíci +1

    thanks for you content bro

  • @RandyAinsworth-tx6vn
    @RandyAinsworth-tx6vn Před 6 měsíci +1

    Wireshark and splunk and suricata for ips and some through thm

    • @MyDFIR
      @MyDFIR  Před 6 měsíci +1

      Great choice of tools!

    • @RandyAinsworth-tx6vn
      @RandyAinsworth-tx6vn Před 6 měsíci

      @@MyDFIR but so many tools. Which best ips ids would be best suricata or solarwinds. Edr croudstrik or … lol but job wise learn splink and witeshark and see what ips ids and edr the company uses

    • @MyDFIR
      @MyDFIR  Před 6 měsíci +1

      @@RandyAinsworth-tx6vn Agreed which is why at the end of the day, a tool is just a tool. Understand the use case and pick one that fits the business budget. As long as a tool can provide visibility, have logging and ability to search within the tool. That is a good tool. To make it a great tool, have responsive capabilities.

  • @TheAshleyone
    @TheAshleyone Před 7 měsíci +1

    ❤❤❤❤❤

  • @dreamwilder
    @dreamwilder Před 3 měsíci

    Is a lab something I can download to my computer? What labs do you use for a windows based system?

    • @MyDFIR
      @MyDFIR  Před 3 měsíci +1

      Yeah you can, or you can use sites like cyberdefenders, blue team level one, letsdefend and many others.

  • @SamuelDarko-ql5ov
    @SamuelDarko-ql5ov Před 6 měsíci

    You are very good at what you do, and I want to be a SOC Analyst any mentorship available? Please help me.

    • @MyDFIR
      @MyDFIR  Před 6 měsíci

      Yeah! Feel free to sign up on my site mydfir.com

  • @TheSilentLearner786
    @TheSilentLearner786 Před 7 měsíci +1

    Sir plz do tutorial videos related python for cybersecurity

    • @MyDFIR
      @MyDFIR  Před 7 měsíci +1

      Anything specific you want to know? Thanks for the suggestion!

    • @estebangodoy386
      @estebangodoy386 Před 3 měsíci

      ​@@MyDFIRforensics or threat intelligence gathering with Python would be awesome 💯

  • @Kiran_gowda_kar
    @Kiran_gowda_kar Před 7 měsíci

    Sir can u please suggest some laptop configurations along with laptop brand for learning and practsing Cybersecurity.

    • @MyDFIR
      @MyDFIR  Před 7 měsíci

      Great question, for laptops you really need about 16GB+ RAM and the more the better. I don’t really have a particular brand I recommend, however a lot of my laptops (current & previous) are MSI laptops used for gaming. 😂

    • @Kiran_gowda_kar
      @Kiran_gowda_kar Před 7 měsíci

      @@MyDFIR Thanks for the Replay sir and can u please share the link of laptop u have currently (MSI laptop link) please kindly share sir

    • @Kiran_gowda_kar
      @Kiran_gowda_kar Před 7 měsíci

      Which graphics card is better NVidia or iris

  • @iamrestnpieces
    @iamrestnpieces Před 7 měsíci

    Your "Next Steps" page for your mentorship is asking for additional information but there are no input fields. Update: I just received an email. I will respond that way.

    • @MyDFIR
      @MyDFIR  Před 7 měsíci

      Awesome! Thanks for signing up, I’ll go over my emails soon ❤️