Certified Security Operations Manager
Book online today or, if you need help choosing the right course or would like to discuss business discounts, call us on 0113 220 7150.
From £1,999+ VAT
Overview
The Certified Security Operations Manager (CSOM) from Security Blue Team, built by experienced security leaders across military, finance, telecommunications, healthcare, and managed security industries, CSOM has been designed to provide established or aspiring security managers with the knowledge they need to develop a high-performing security operations team.
Covers the following 4 domains:
Understanding Modern Security Operations
Building a Security Operations Centre
Capability and Function Development
Metrics, Maturity, and Measuring Success
200+ LESSONS, TESTS, AND LABS
2 Years - RELEVANT EXPERIENCE REQUIRED FOR CERTIFICATION
6 Months - ACCESS TO THE TRAINING MATERIAL
Prerequisites
- Senior Security Analysts
- Security Managers
- SOC Managers
- Heads of Security Operations
- Directors of Security Operations
- Consultants
Objectives
CSOM is designed to forge technical managers that already have experience and exposure to security operations. CSOM will develop you in both management principles and technical skills. Below are some examples of the skills and experience you will gain.
- Understand modern security operations across on-premise and cloud environments.
- Conduct static digital forensics and incident response to collect key artifacts for investigations.
- Understand and perform threat modelling and detection engineering to deploy a SIEM with relevant rules and alerting functionality.
- Understand the different sub-teams a security operations team could contain, and how each of them operates, and what value they bring to the organization.
- Demonstrate how to continuously assess the team to demonstrate increasing maturity and business offerings.
And much more!
Outline
Introduction
1. Welcome to CSOM
Modern Security Operations
2. Domain Introduction
3. Business Objectives, Legal Enablers, and Considerations
4. Security Operations Teams
5. Operational Environments
6. Cyber Threat Hunting
Building a Security Operations Centre
7. Domain Introduction
8. Threat Modelling
9. Building Your Team
10. SIEM & Detection Engineering
11. Case Management
12. Other Tooling & Administration
13. Processes and Policies
Capability Development
14. Domain Introduction
15. Incident Response
16. Threat Intelligence
17. Vulnerability Management
18. Digital Forensics
19. Malware Analysis
20. Threat Hunting
Metrics, Maturity, and Measuring Success
21. Domain Introduction
22. SOC Maturity Models
23. Operationalizing MITRE ATT&CK
24. Purple Team Engagements
25. Deception and Active Defense
26. Security Orchestration, Automation, and Response
27. Reporting and Metrics
28. Security Research and Presentation
29. Retaining Talent
30. Additional Activities
CSOM Exam Preparation
31. Theory Exam Format
32. Practical Exam Format
33. Preparation Tips
Content subject to change prior to release.
Approx 250 lessons, 15 labs
*To be eligible to take the CSOM exam, students must provide sufficient evidence of at least two years full-time experience working in a defensive cybersecurity role. Students are able to take and go through the course with any level of experience, however to become CSOM certified, this requirement must be met.
What's included
- Exam included
- Online exam voucher
Special Notices
QA is proud to be the exclusive UK partner for Security Blue Team.
You must activate your Security Blue Team account within 31 days of on-boarding, and take your exam within 12 months of activation.
This product contains approximately 40 hours of self paced learning, you will have access to the product for 6 months.
Cyber Security learning paths
Want to boost your career in cyber security? Click on the roles below to see QA's learning pathways, specially designed to give you the skills to succeed.