Scenario
You are stepping into the role of SOC analyst and detection engineer. Your job is to map the Cybersecurity Blue Team / SOC Analyst environment before making changes.
Workspace
Topology: SOC range practice with endpoint telemetry, controlled events, and analyst reporting.
Primary tools: Wazuh, Linux, Windows
Tasks
- Launch the course pod and wait for the VM status to become running.
- Open every available console and record host names, IP addresses, and access methods.
- Identify the service boundary, management path, and rollback point.
- Create a short implementation note that explains what this lab proves.
Validation Focus
- siem-receiving-logs
- firewall-rules-active
- vm-reachable
Reflection
Explain how soc, blue-team, detection appears in the workspace and what evidence an instructor should expect from a Beginner learner.
Sign in to record your progress
Completion, lab access and any certificate are recorded on your account.