Cybersecurity: SOC Analyst Mini-Course (Training)

With our SOC Analyst Mini-Course, students will obtain a better understanding of what a security operation centre is. From understanding the SOC Analyst workflow to frameworks & tools used, this is tailored for beginners and professionals who are looking to transition into cybersecurity specifically in the Security Operations domain.
We end off with a practical hands-on lab to setup SecurityOnion and walkthrough a malicious PCAP together.
Links
SecurityOnion: github.com/Security-Onion-Sol...
VirtualBox: www.virtualbox.org/wiki/Downl...
SecurityOnion How To PCAP: docs.securityonion.net/en/lat...
PCAP Used in Lab: www.malware-traffic-analysis....
If you want to become a SOC Analyst grab the no BS SOC roadmap here
mydfir.gumroad.com/l/SOC-Anal...
_________________________________
THE MYDFIR SOC ANALYST COURSE:
With 8 chapters and 30+ hands-on labs tailored to security operations, I am focused on transforming you into a standout SOC analyst. Beyond tools, you'll master the investigation process and uncover hidden details. Let's make a real difference together.
▸Enroll here: academy.mydfir.com/p/soc
_________________________________
SIGN UP FOR FREE MENTORSHIP
Getting started in Cybersecurity is difficult and you don't have to do it alone.
Let me help you on your journey.
▸Sign up for FREE here: www.mydfir.com/mentorship
_________________________________
RECOMMEND COURSES FOR BEGINNERS:
Coursera Google Cybersecurity Program
Affiliate Link - imp.i384100.net/mydfir
Microsoft Cybersecurity Analyst Professional Certificate
Affiliate Link - imp.i384100.net/mydfir-MS
Coursera Google IT Support Professional Certificate
Affiliate Link - imp.i384100.net/mydfir-IT
_________________________________
PRODUCTS TO HELP YOU GET STARTED
🗺️ 1-Year Cybersecurity Roadmap: mydfir.gumroad.com/l/roadmap
📄 Resume Template: mydfir.gumroad.com/l/Resume-T...
📑 Cover Letter Template: mydfir.gumroad.com/l/Cover-Le...
🎙️ Interview Questions: www.mydfir.com/interview
📚 Cybersecurity bookmarks: mydfir.gumroad.com/l/bookmarks
_________________________________
EARLY ACCESS & EXCLUSIVE VIDEOS
Patreon: / mydfir
_________________________________
🕒 TIMELINE
00:00 - Intro
02:16 - What is a SOC
09:38 - Common Threats
11:57 - Frameworks & OSINT Tools
19:39 - What is a SIEM
21:27 - Hands On Lab
_________________________________
FOLLOW ME ON SOCIAL MEDIA:
▸Instagram: / mydfir
▸X: x.com/@MyDFIR
Disclaimer: All opinions in my videos are solely my own. Some links provided are affiliate links!
#cybersecurity #cybersecuritytrainingforbeginners #cybersecurityforbeginners #socanalyst #soc

Пікірлер: 203

  • @kid809
    @kid8098 ай бұрын

    Awesome work! For once a detail video implementing the work flow of a SOC analyst.

  • @MyDFIR

    @MyDFIR

    8 ай бұрын

    Thank you very much!

  • @diegomed3364
    @diegomed33647 ай бұрын

    Damn!! This is a min of $2500 Soc course and 4 days in less than 1h video ❤❤

  • @MyDFIR

    @MyDFIR

    7 ай бұрын

    Haha thanks for watching! Hopefully you've learned something new 😀

  • @nathpatrick1104
    @nathpatrick11045 ай бұрын

    This is undoubtedly the best teaching video on SOC/Cyber Security analyst. It was well detailed and so practical that beginners could understand the scope and the workings of a SOC analyst. Well done 👍.

  • @MyDFIR

    @MyDFIR

    5 ай бұрын

    Thank you!! I appreciate that ❤️

  • @MrByonghacho
    @MrByonghacho8 ай бұрын

    Course sounds like it'll be great. Can't wait!

  • @JoshAnthonyMcDowell
    @JoshAnthonyMcDowell6 ай бұрын

    Best video on cyber security I’ve seen so far, thank you!!

  • @MyDFIR

    @MyDFIR

    6 ай бұрын

    Wow, thank you!

  • @Mystery_uncut
    @Mystery_uncut12 күн бұрын

    thank you for being so apt with your videos. you've got one sub😁

  • @eke313
    @eke3137 ай бұрын

    This guy is GOATED 💯

  • @MyDFIR

    @MyDFIR

    7 ай бұрын

    Haha thanks ❤️

  • @ShaySoFresh777
    @ShaySoFresh7777 ай бұрын

    Totally underrated channel!! How do you not have 1M subscribers??? I hope you blow up this year! This channel is so on point. No fluff, no bs - just straight knowledge and industry relevant content.

  • @MyDFIR

    @MyDFIR

    7 ай бұрын

    Thank you! ❤️ 1M would be crazy haha

  • @bebryan1201
    @bebryan12017 ай бұрын

    This is absolutely fantastic. Thank you

  • @MyDFIR

    @MyDFIR

    7 ай бұрын

    You're very welcome!

  • @sleepfighter3438
    @sleepfighter34385 ай бұрын

    Wow! Thanks for the quality content. You are straight up legit!

  • @MyDFIR

    @MyDFIR

    5 ай бұрын

    Thank you! Much appreciated

  • @Cyber.Panda.
    @Cyber.Panda.8 ай бұрын

    Awesome video!! Thanks for the lab 👏🏻👏🏻👏🏻🔥🔥

  • @MyDFIR

    @MyDFIR

    8 ай бұрын

    Any time! Hopefully you learned something new!

  • @jasonlayton8760
    @jasonlayton87608 ай бұрын

    Dude. You are awesome. I hope you win it all in life.

  • @MyDFIR

    @MyDFIR

    8 ай бұрын

    Thank you ❤️

  • @johnrodrigoasiado517
    @johnrodrigoasiado5175 ай бұрын

    This is awesome bro! the best i've seen so far and it will help us "aspiring to work in cybersecurity"❤

  • @MyDFIR

    @MyDFIR

    5 ай бұрын

    Happy to hear that!

  • @stanleyzogli5695
    @stanleyzogli56957 ай бұрын

    Great video with remarkable explanations.

  • @MyDFIR

    @MyDFIR

    7 ай бұрын

    Many thanks! This was my first time doing something like this so I am happy it all worked out haha

  • @pardonmagaba3643
    @pardonmagaba36432 ай бұрын

    This is by far the best channel that I have come across. Thank you Sir, what an amazing channel. You are destined for greatness.

  • @MyDFIR

    @MyDFIR

    2 ай бұрын

    Wow, thank you!

  • @mutungidenissharp7783
    @mutungidenissharp77833 ай бұрын

    The content here is top notch, grateful for this knowledge transfer. The course can't come soon enough-I'm eager to get started!

  • @MyDFIR

    @MyDFIR

    3 ай бұрын

    Great to hear! Thanks for watching ❤️

  • @TheSilentLearner786
    @TheSilentLearner7868 ай бұрын

    You are great sir , super motive for every cyber enthusiastic love you

  • @MyDFIR

    @MyDFIR

    8 ай бұрын

    Thank you!

  • @Sp512
    @Sp5125 ай бұрын

    I am in the field for more than two years, randomly landed on your profile loved it!!!! So much good stuff still trying to figure out why this channel is so underrated. Hope you get more publicity in upcoming days!!! Keep up the good work! Looking forward to new learning video.

  • @MyDFIR

    @MyDFIR

    5 ай бұрын

    Awesome! Thank you!! ❤️

  • @prashantmishra5691
    @prashantmishra5691Ай бұрын

    Thanks for this amazing course.

  • @MyDFIR

    @MyDFIR

    Ай бұрын

    You're very welcome! Hope you learned a lot ❤️

  • @MB-hz7wm
    @MB-hz7wm5 ай бұрын

    After a year of traversing between instructors and courses, this is hands-down, the most streamlined, easy to understand instruction I've found. No distracting music, simple slides... Well done ~ thanks so much for giving back to the community in this way.

  • @MyDFIR

    @MyDFIR

    5 ай бұрын

    Thank you! That means a lot ❤️

  • @irocz5150
    @irocz51508 ай бұрын

    Amazing Work!!!!! Keep the good work

  • @MyDFIR

    @MyDFIR

    8 ай бұрын

    Thank you! ❤️

  • @VerSatileMusliMah
    @VerSatileMusliMah7 ай бұрын

    Great video! Eagerly waiting for full course 👍

  • @MyDFIR

    @MyDFIR

    7 ай бұрын

    Thanks! ❤️

  • @oziegbeaaron5809
    @oziegbeaaron58096 ай бұрын

    i am learning a lot from you keep up the good work

  • @MyDFIR

    @MyDFIR

    6 ай бұрын

    Glad to hear that! Thank you ❤️

  • @hobgoblin4614
    @hobgoblin46147 ай бұрын

    Bro - This video was awesome/amazing. A+. Am going through some interviews now and this definitely helps. Looking forward to your labs, etc. will add myself to wait list!

  • @MyDFIR

    @MyDFIR

    7 ай бұрын

    Glad it was helpful! The full course will be 10x better than this 😃

  • @hobgoblin4614

    @hobgoblin4614

    7 ай бұрын

    @@MyDFIR can't wait. Do you have a timeline on when it will be released?

  • @MyDFIR

    @MyDFIR

    7 ай бұрын

    @@hobgoblin4614 My goal is before May. I really want this to be something special

  • @iamrestnpieces
    @iamrestnpieces8 ай бұрын

    Great job bro! The course was very detailed and beginner friendly. I am studying Cybersecurity and Information Assurance at WGU and your course content is pretty much the same as what we are being taught in college.

  • @MyDFIR

    @MyDFIR

    8 ай бұрын

    Oh wow, I am happy to hear that 😁 thank you for watching! I am here if you ever have any questions.

  • @iamrestnpieces

    @iamrestnpieces

    8 ай бұрын

    Thanks!@@MyDFIR

  • @alanjaf9879
    @alanjaf98796 ай бұрын

    Thank you ,very usefull chanel you operate on this platform. Best of luck, you will grow big soon here😀

  • @MyDFIR

    @MyDFIR

    6 ай бұрын

    Thanks a lot 😊

  • @bulba888
    @bulba8888 ай бұрын

    Thats what doctor ordered, thx a lot

  • @MyDFIR

    @MyDFIR

    8 ай бұрын

    Haha thanks for watching!

  • @zeeshanansari-kl4tk
    @zeeshanansari-kl4tk3 ай бұрын

    your all videos are very helpful , its have very informative things in it , as i am a Linux system admin and i also learn and study about cyber security from the different platform , the way you explain is very simple and good manner

  • @MyDFIR

    @MyDFIR

    3 ай бұрын

    You are most welcome! Thanks for watching ❤️

  • @khalivalabi2089
    @khalivalabi20892 ай бұрын

    This is just great. thanks Steven

  • @MyDFIR

    @MyDFIR

    2 ай бұрын

    Thanks for watching ❤️

  • @ishwaryanarayan1010
    @ishwaryanarayan10105 ай бұрын

    Great video. Thank you 🙏

  • @MyDFIR

    @MyDFIR

    5 ай бұрын

    Glad it was helpful!

  • @myNameIsEmanon
    @myNameIsEmanon7 ай бұрын

    This is GREAT!

  • @MyDFIR

    @MyDFIR

    7 ай бұрын

    Thanks for watching! ❤️

  • @myNameIsEmanon

    @myNameIsEmanon

    7 ай бұрын

    @@MyDFIR Thanks for posting. This is the exact content Ive been looking for. Im an embedded sys security researcher and know NOTHING about enterprise security. Your videos have been awesome.

  • @mohh4252
    @mohh42522 ай бұрын

    I like to see more videos. Very clear demonstration thank u

  • @MyDFIR

    @MyDFIR

    2 ай бұрын

    Thank you!

  • @deanhaycox
    @deanhaycox7 ай бұрын

    Loved this video, cant wait for the new SOC course. when is it out please :)? oh, and fantastic channel. Its nice to see someone talk about SOC training, skills and the job from somebody who as actually done it

  • @MyDFIR

    @MyDFIR

    7 ай бұрын

    Working hard on it, expect to release it by May at the latest. Could be earlier!

  • @RozzClips
    @RozzClips8 ай бұрын

    Thank you so much, it helps alot.

  • @MyDFIR

    @MyDFIR

    8 ай бұрын

    Glad to hear that! Thank you ❤️

  • @SecurifyU
    @SecurifyU8 ай бұрын

    Keep up the good work!

  • @MyDFIR

    @MyDFIR

    8 ай бұрын

    Thanks, will do!

  • @getrobbed7818
    @getrobbed78188 ай бұрын

    Thank you this is very informative.

  • @MyDFIR

    @MyDFIR

    8 ай бұрын

    You are very welcome. Thanks for watching ❤️

  • @Nate_Vee
    @Nate_Vee5 ай бұрын

    Thanks for sharing this vital information

  • @MyDFIR

    @MyDFIR

    5 ай бұрын

    Glad it was helpful!

  • @godsblessings1924
    @godsblessings19248 ай бұрын

    🔥🔥🔥

  • @ram_bam
    @ram_bam8 ай бұрын

    I’m excited to watch this tomorrow. How do you manage two jobs at once? - edit - This was incredibly well done! You have a knack for teaching in a practical way.

  • @MyDFIR

    @MyDFIR

    8 ай бұрын

    Great question, not going to lie its not easy. Thankfully my 2nd job is not THAT bad so the workload is manageable but it sucks when I have an active incident on going.

  • @Eudawg101
    @Eudawg1014 ай бұрын

    Really great work.

  • @MyDFIR

    @MyDFIR

    4 ай бұрын

    Thanks a lot!

  • @jayantakumarbose4264
    @jayantakumarbose42642 ай бұрын

    Very good presentation and love from India ❤

  • @MyDFIR

    @MyDFIR

    2 ай бұрын

    Thank you ❤️

  • @brycesipes
    @brycesipes8 ай бұрын

    Great content

  • @MyDFIR

    @MyDFIR

    8 ай бұрын

    Thanks for watching ❤️

  • @GlobalEdukasiInfotamaSolusi
    @GlobalEdukasiInfotamaSolusi5 ай бұрын

    This is awesome work...

  • @MyDFIR

    @MyDFIR

    5 ай бұрын

    Thanks a lot 😊

  • @Streetrack
    @Streetrack8 ай бұрын

    This is pure gold!!!! I just passed my Cysa+ exam today and this walkthrough is much needed to gain some hands on experience. Question, Let's Defend or Cyber Defenders?

  • @MyDFIR

    @MyDFIR

    8 ай бұрын

    Thanks and congratulations!!! Regarding LetsDefend vs CyberDefenders, I personally like CyberDefenders more but it all boils down to what you can afford. (Assuming you are talking about the paid courses) - Both will offer you with a lot of hands on skills. Hope that helps!

  • @Streetrack

    @Streetrack

    8 ай бұрын

    @@MyDFIR Thanks Steven! Your content is amazing. Keep blessing us with your knowledge! 🫡

  • @digitalapriko
    @digitalapriko8 ай бұрын

    Great video

  • @MyDFIR

    @MyDFIR

    8 ай бұрын

    Thanks!

  • @Nuhuh130
    @Nuhuh1305 ай бұрын

    I am to cybersecurity and I am seeking a job as a SOC analyst, this video is a big help! Thanks

  • @MyDFIR

    @MyDFIR

    5 ай бұрын

    Glad it was helpful!

  • @Nuhuh130

    @Nuhuh130

    5 ай бұрын

    @@MyDFIR any tips on how to land my 1st job

  • @F3f33f
    @F3f33f7 ай бұрын

    Legend!

  • @MyDFIR

    @MyDFIR

    7 ай бұрын

    Thanks 🤗

  • @renewmediainc7663
    @renewmediainc76637 ай бұрын

    everyday fire you are on fire very great video

  • @MyDFIR

    @MyDFIR

    7 ай бұрын

    Thanks 🔥

  • @mapletech_22
    @mapletech_228 ай бұрын

    This is awesome. 🎉🎉

  • @MyDFIR

    @MyDFIR

    8 ай бұрын

    Thanks! Hopefully you learned something new ❤️

  • @mapletech_22

    @mapletech_22

    8 ай бұрын

    @MyDFIR sure. I learnt a lot. I graduated this year with a degree in cybersecurity, and the information you shared helped a lot.

  • @melaronvalkorith1301
    @melaronvalkorith13018 ай бұрын

    Looking forward to digging into this. Keep up the great work man!

  • @MyDFIR

    @MyDFIR

    8 ай бұрын

    Hope you enjoy it!

  • @melaronvalkorith1301

    @melaronvalkorith1301

    8 ай бұрын

    I am! You take the fundamentals and most important subjects and make them simple. You are clearly putting a lot of time, effort, and love into making MyDFIR a success. Keep up the great work, us newbies are lucky to have someone like you 🤟

  • @user-mr1hh6pb8h
    @user-mr1hh6pb8h7 ай бұрын

    Bravo ❤

  • @MyDFIR

    @MyDFIR

    7 ай бұрын

    Thanks for watching ❤️

  • @b3rn4rd01
    @b3rn4rd018 ай бұрын

    ❤❤❤❤❤❤

  • @Jesse_Johnson
    @Jesse_Johnson7 ай бұрын

    Just found you!! This is phenomenal content. Refreshing. Need to collaborate with Dr. Gerry Auger. Cheers 🍻

  • @MyDFIR

    @MyDFIR

    7 ай бұрын

    Awesome! Thank you! Gerry is awesome, I’ve recommended folks over to his channel for GRC advice since that is not really my specialty 😅

  • @josesosa181990
    @josesosa1819906 ай бұрын

    Fella your are doing the Lord's work.

  • @MyDFIR

    @MyDFIR

    6 ай бұрын

    Thanks for watching!

  • @genjimccorkle5518
    @genjimccorkle55183 ай бұрын

    Trying to make a jump right now from MSP to Network Technician to SOC. Hopefully your courses can help.

  • @MyDFIR

    @MyDFIR

    3 ай бұрын

    I hope so too! Let me know if you have questions 👍

  • @genjimccorkle5518

    @genjimccorkle5518

    3 ай бұрын

    @@MyDFIR No questions. Appreciate you reaching out. I am on the waitlist fyi.

  • @mamh6
    @mamh612 күн бұрын

    Very Informative 👌 moreover Paloalto does not offer WAF Services

  • @musicalprodigy1
    @musicalprodigy18 ай бұрын

    In your description, the last word in the 4th line should read "are". Great content, well made and informative. Thanks Also, some of your scenes are blank, so the examples aren't clear.

  • @MyDFIR

    @MyDFIR

    8 ай бұрын

    Appreciate it and thank you for watching! Thanks for catching that error in my description, I just fixed it. Could you also provide me with an example about the scenes being blank? I would like to fix that as well.

  • @yeshichophel5428
    @yeshichophel54285 ай бұрын

    damn its pretty good content !

  • @MyDFIR

    @MyDFIR

    5 ай бұрын

    Thank you ❤️

  • @yeshichophel5428

    @yeshichophel5428

    5 ай бұрын

    @@MyDFIR you’re welcome bro 🙂

  • @CurlyQ97
    @CurlyQ976 ай бұрын

    I loved this video!! I did run into an issue with the Security Onion in the VM...when I run the VM, it tells me I need at least 99 GB of storage. That seems almost impossible. Is there something I am doing wrong since the 16 GB was not enough?

  • @MyDFIR

    @MyDFIR

    6 ай бұрын

    You may need to adjust the disk space to meet the requirement. I dont think you are doing anything wrong, just Security Onion does require more resources as it comes with a bunch of tools built in.

  • @user-he2np4yf4q
    @user-he2np4yf4q3 ай бұрын

    Thank you for the video and all you are offering. I come from a Non-technical background and recently completed a SOC certification. I am preparing for my 1st SOC interview. Could you please advise on how to prepare regarding Real Time Scenario interview questions, since I have no hands on experience!! Thank you!!

  • @MyDFIR

    @MyDFIR

    3 ай бұрын

    Congratulations on getting that interview! take a look at this video to help you prepare. kzread.info/dash/bejne/d2eJ0JeaXaW2ksY.html

  • @user-he2np4yf4q

    @user-he2np4yf4q

    3 ай бұрын

    @@MyDFIR Thank you :)

  • @Maha-rm3oy
    @Maha-rm3oy6 ай бұрын

    Great, Thank you! I've just graduated and I will start my first job as SOC Analyst L1 in couple days and I only know the basics of using Linux.... am I in trouble ?

  • @MyDFIR

    @MyDFIR

    6 ай бұрын

    It’s going to be rough but as long as you keep learning and ask questions, you should be OK. Up to you but I would dedicate some time after work for self studying and complete hands on labs to level up my skills. This should translate to your job making you a better analyst.

  • @pankajg9348
    @pankajg93485 ай бұрын

    Hey, when I am going through the Security Onion Setup, it says: "This machine currently has 1 NIC, but needs 2 to meet minimum requirements. Select OK to exit setup and reconfigure the machine." But, when I was setting up the VM in virtualbox, I followed all the instructions exactly as you mentioned (except for RAM and storage). There wasn't any option in the virtualbox setup to select the number of NICs. IDK why I got this error. Confusing. This error showed up after the step @30:34. Please help

  • @MyDFIR

    @MyDFIR

    5 ай бұрын

    You will be required to add an additional NIC - wiki.dave.eu/index.php/VirtualBox_Network_Configuration

  • @pankajg9348

    @pankajg9348

    5 ай бұрын

    @@MyDFIR Got it. Thanks!

  • @EvelynRobert-rs5br
    @EvelynRobert-rs5br4 ай бұрын

    Hey my verification brought up different SHA256, it seems it was tampered with. What should I do?

  • @MyDFIR

    @MyDFIR

    4 ай бұрын

    Try re-downloading it, due to Security Onion being a large file, it has a risk of corruption during downloads which can alter the hash. I've seen this happen a couple of times.

  • @Kimichi1
    @Kimichi14 ай бұрын

    Hello, during the installation I kept getting the error "The IP being routed by Linux is not the IP address assigned to the management interface (enp0s3). This is not a supported configuration, please remediate and rerun. " I tried a lot of things but can't manage to solve this problem

  • @MyDFIR

    @MyDFIR

    4 ай бұрын

    Please take a look here: github.com/Security-Onion-Solutions/securityonion/discussions/2441

  • @soundsfromthebasement
    @soundsfromthebasement7 ай бұрын

    Thanks so much for this, but i'm getting an error loading my VM. Can you help? it keeps saying aborted.

  • @MyDFIR

    @MyDFIR

    7 ай бұрын

    Strange, have you moved the VM by any chance? If anything, try a clean install.

  • @TheLogan1186
    @TheLogan11866 ай бұрын

    Hey man really nice work and insight. I’m completely new to CS. Is there anything I can check out as a pre req to this video to have a better comprehension of this material. Thanks again

  • @MyDFIR

    @MyDFIR

    6 ай бұрын

    Thank you! Absolutely, there is a free course that ISC2 offers called Certified Cybersecurity. This is a great place to start. I’ve also created a video on where to start in Cybersecurity as well. www.isc2.org/certifications/cc Video: kzread.info/dash/bejne/dXWn16yafsqXqKg.html Hope that helps!

  • @TheLogan1186

    @TheLogan1186

    6 ай бұрын

    @@MyDFIR thank you 🙏 🙏

  • @stanleyzogli5695
    @stanleyzogli56957 ай бұрын

    MyDFIR, please can you make a detailed video with demo on True positive, false positive in EDR? Thanks

  • @MyDFIR

    @MyDFIR

    7 ай бұрын

    Great suggestion! I’ll add it to the list.

  • @Tech-nicallyBlack
    @Tech-nicallyBlack4 ай бұрын

    Great course! I ran into trouble with the ip address and gateway, do I use my own?

  • @MyDFIR

    @MyDFIR

    4 ай бұрын

    Thanks! I am assuming you are talking about setting up Security Onion and for that, you can set the network to NAT and it should grab the IP and gateway automatically.

  • @Tech-nicallyBlack

    @Tech-nicallyBlack

    4 ай бұрын

    @@MyDFIR I used hyper V and set it to external but it didn't grab it, I'll try it again later. Thank you!

  • @pankajg9348
    @pankajg93485 ай бұрын

    Hey, thanks for the valuable content! Can we set up the SecurityOnion environment shown in the above video in virtual box on Macs with Apple silicon? Will it run without any issues (because it's not Intel based Mac)? Thanks in advance!

  • @MyDFIR

    @MyDFIR

    5 ай бұрын

    I don't believe you can spin this up using Apple silicon unfortunately. If you would like to gain some hands on experience, you can think about using the cloud as an alternative.

  • @pankajg9348

    @pankajg9348

    5 ай бұрын

    @@MyDFIR Thanks for the quick response! Do you have any tutorial on how to use the cloud for this purpose?

  • @MyDFIR

    @MyDFIR

    5 ай бұрын

    Not specifically this but I have a video on how I spin up a VM in the cloud. You can do something similar. @15:16 SOC Automation Project (Home Lab) | Part 2 kzread.info/dash/bejne/i6ykt9ppk93NqJc.html

  • @pankajg9348

    @pankajg9348

    5 ай бұрын

    Got it. Thanks!@@MyDFIR

  • @triumphant_54
    @triumphant_542 ай бұрын

    Hi Steven, can someone who is trying to get into the filed focus on forensic as their first job?

  • @MyDFIR

    @MyDFIR

    2 ай бұрын

    If say anything is “possible” but is it likely? Prob not but if forensics is what you want to do, I would think about what kind of forensics you want to get into and learn as much as possible.

  • @triumphant_54

    @triumphant_54

    2 ай бұрын

    @@MyDFIR for now, i want to get good @ window forensic before focusing on linux .

  • @tone396
    @tone3967 ай бұрын

    in the SO setup i get a message the says "the machine currently has 1 NIC but needs 2 to meet minimum requirements. and it tell me to exit setup to reconfigure the machine.

  • @MyDFIR

    @MyDFIR

    7 ай бұрын

    On your VM try adding another NIC to it and restart the setup

  • @tone396

    @tone396

    7 ай бұрын

    @@MyDFIR ok that worked then i got an error message saying currently the this machinee had 10. GB memenry but needs 16 to meet requirements

  • @tone396

    @tone396

    7 ай бұрын

    @MyDFIR i dont have the option to put more memory it limits me to 10. Is this from the host? cuz this has 16. im confused as to what is happening

  • @dsiisus
    @dsiisus7 ай бұрын

    I downloaded the latest SecurityOnion 2.4.30-20231219. I use Oracle VirtualBox for installation and I choose Standalone version, almost all minimum requirements are met (16GB Ram, 4 Cores, 200GB HDD and only one NIC, unfortunately it wont let me continue because I have only one NIC. Any solutions?

  • @MyDFIR

    @MyDFIR

    7 ай бұрын

    you can simply add a logical NIC card and that should satisfy the requirement

  • @dsiisus

    @dsiisus

    7 ай бұрын

    @@MyDFIR I got it sorted but installation didn't work.

  • @diegomed3364
    @diegomed33647 ай бұрын

    What mini computer do you recommend to get to run efficiently security onion? I gotk 16 base memory it can t run security onion. I am using : Beelink Mini PC AMD Ryzen 7 5800H,Mini Desktop Computers 32GB DDR4/500GB M.2

  • @MyDFIR

    @MyDFIR

    7 ай бұрын

    Odd, that should be enough to run Security Onion for a lab - Is it giving you errors? If so, what is it saying?

  • @diegomed3364

    @diegomed3364

    7 ай бұрын

    @@MyDFIR it said no enough memory. You need 16GB of memory.

  • @MyDFIR

    @MyDFIR

    7 ай бұрын

    @@diegomed3364I thought you have 32 GB RAM or I am misinterpreting your comment. From their documentation "In a standalone deployment, the manager components and the sensor components all run on a single box, therefore, your hardware requirements will reflect that. You’ll need at minimum 16GB RAM, 4 CPU cores, and 200GB storage. At the bare minimum of 16GB RAM, you will need swap space to avoid issues. We recommend a minimum of 24GB of RAM if you plan on monitoring traffic. The more traffic you plan on monitoring this RAM requirement will also increase."

  • @diegomed3364

    @diegomed3364

    7 ай бұрын

    @@MyDFIR it worked!!! I just had to update my and change RAM to 64

  • @sincedayjuan
    @sincedayjuan3 ай бұрын

    how sad, the sample pcap is not available anymore...

  • @MyDFIR

    @MyDFIR

    3 ай бұрын

    Hmmm It appears its all compiled under archive but if you don’t want to download GBs of pcaps, you can use any other pcap as the concept still applies. Let me know if you have any questions!

  • @TimCummingsFatLoss
    @TimCummingsFatLoss3 ай бұрын

    Go straight to security + or network?

  • @MyDFIR

    @MyDFIR

    3 ай бұрын

    Depending on your networking skills, if its lacking id go for network first.

  • @dancingkidkul9325
    @dancingkidkul93257 ай бұрын

    Hey @MyDFIR, Does SOC Analyst should know the MITRE ATT&CK Framework or what because I talked many SOC analysts and they are not aware about it and whether it is for them or not? So can you make a video on it so as SOC analysts what all things they needs to know from MITRE ATT&CK Framework?

  • @MyDFIR

    @MyDFIR

    7 ай бұрын

    YES. They should know the MITRE ATT&CK. This is what I am talking about, many analysts unfortunately are not aware of many things thus providing clients with 0 value in their escalations and it is NOT their fault. You don’t know what you don’t know. I am trying to shift this and train new or existing soc analysts to get to that next level. Don’t become those analysts who just copy and paste and hope for the best. I’ve created a video on MITRE here: kzread.info/dash/bejne/lGdr1JWdj6_UprA.htmlfeature=shared

  • @dancingkidkul9325

    @dancingkidkul9325

    7 ай бұрын

    @@MyDFIR Thanks for reply here. Appreciate that

  • @pankajg9348
    @pankajg93485 ай бұрын

    Hey, this time it says: “This machine currently has 14 GB memory, but needs 16 GB to meet minimum requirements. Select YES to continue anyway, or select NO to cancel.” I selected YES and then this showed up: “This install type will fail with less than 16 GB of memory. Exiting setup.” I assigned the maximum amount of memory I could (my laptop has only 16 GB of RAM). And I assigned 4 processor cores. How do I solve this? Please help.

  • @MyDFIR

    @MyDFIR

    5 ай бұрын

    What have you tried so far? Have you tried researching how to solve this? You might need to select a different security onion option if you do not meet the minimum requirements.

  • @pankajg9348

    @pankajg9348

    5 ай бұрын

    I googled it but couldn't find anything useful. By "different security onion option" do you mean a different version of security onion? An older version? @@MyDFIR

  • @pankajg9348

    @pankajg9348

    5 ай бұрын

    @@MyDFIR I googled it but couldn't find anything useful. By "different security onion option" do you mean a different version of security onion? An older version? (Actually, I replied to your comment 3 days ago, soon after your reply but IDK why it isn't visible now. Hence, replying again.)

  • @MyDFIR

    @MyDFIR

    5 ай бұрын

    @@pankajg9348 Take a look at the documentation: docs.securityonion.net/en/2.4/hardware.html#cpu-architecture - I mean different as in try using Eval rather than standalone. If that fails, you can always try spinning this up in the cloud using free credits!

  • @pankajg9348

    @pankajg9348

    5 ай бұрын

    Oh! Got it. Thanks!@@MyDFIR

  • @vasanthakumar525
    @vasanthakumar5257 ай бұрын

    Where can we master and practice soc skills? Like hack the box which will be good?

  • @dancingkidkul9325

    @dancingkidkul9325

    7 ай бұрын

    You can create labs in the cloud if you don't have devices and by using other different tools

  • @MyDFIR

    @MyDFIR

    7 ай бұрын

    This right here! But any simulated training is good - I personally use cyberdefenders & blue team level one.

  • @vasanthakumar525

    @vasanthakumar525

    7 ай бұрын

    @@MyDFIR thank you

  • @jarrettseymore7805
    @jarrettseymore78058 ай бұрын

    Do you have a paid Version on Udemy ?

  • @MyDFIR

    @MyDFIR

    8 ай бұрын

    Great question - I do not, is there anything specific you might be looking for?

  • @ThorsdaleNigeriaLtd
    @ThorsdaleNigeriaLtd7 ай бұрын

    Doesnt allow me use 8GB for Memory

  • @MyDFIR

    @MyDFIR

    7 ай бұрын

    Interesting, what does the error say?

  • @vitache1276
    @vitache12767 ай бұрын

    Do you offer trainings

  • @MyDFIR

    @MyDFIR

    7 ай бұрын

    Coming soon! But for now you can check out my products that I’ve created and the free videos on my channel ❤️

  • @nevoh4940
    @nevoh49404 ай бұрын

    I dont know if soc analyst will suit me

  • @MyDFIR

    @MyDFIR

    4 ай бұрын

    It definitely is not for everyone and can be pretty stressful.

  • @cedrickmuluhh5793
    @cedrickmuluhh57934 ай бұрын

    How can i contact you?

  • @MyDFIR

    @MyDFIR

    4 ай бұрын

    Via DM on socials or email if you sign up on my site.

  • @oliviangwa3473
    @oliviangwa34732 ай бұрын

    Hi Sir, how can I sign up for your free Mentorship Program 🙏🏽🙏🏽

  • @MyDFIR

    @MyDFIR

    2 ай бұрын

    You can sign up via my site however there is a backlog currently

  • @zanekoh3473
    @zanekoh34735 ай бұрын

    Is it too late to get into cybersec at age 30?

  • @MyDFIR

    @MyDFIR

    5 ай бұрын

    Not at all, you can definitely get in 🙌 Do expect to take 1.5-2 years though depending on your experience. (More towards the 2 year mark)

  • @user-bz1kr2ig1s
    @user-bz1kr2ig1s8 күн бұрын

    You used to be a bucket?

  • @MyDFIR

    @MyDFIR

    8 күн бұрын

    ??? Now that you mention bucket, kinda feel like some KFC bucket... 🤤

  • @scuffedjays3862
    @scuffedjays38624 ай бұрын

    Great video. I would just add SOC analysts should learn how to use modern EDRs.

  • @MyDFIR

    @MyDFIR

    4 ай бұрын

    Absolutely! 💯

  • @shadrachwilson1211
    @shadrachwilson12117 ай бұрын

    Wow! This is an in-depth video. I’ve got a lot to learn. Thank you for this Sir 🫡

  • @MyDFIR

    @MyDFIR

    7 ай бұрын

    Glad you enjoyed it!