SOC analyst training
Hands-on training for SOC analysts in alert triage, investigation, escalation, and case documentation, built around your team's tools and run in an isolated lab.

Explore security testing, hands-on training, and private cyber ranges.
Hands-on training for SOC analysts in alert triage, investigation, escalation, and case documentation, built around your team's tools and run in an isolated lab.
Incident response training for technical responders, leadership, and communications staff. It combines tabletop sessions and hands-on lab exercises built around your plan and tools.
Facilitated exercises where an attacking team and a defending team work through agreed scenarios in an isolated lab, followed by a joint debrief on detection and response.
Training for cloud, platform, and security teams on detecting and responding to attacks against cloud identities, configurations, and workloads, run in an isolated cloud lab.
Training built around a threat scenario you choose, written for your systems and teams and run as a tabletop, a hands-on lab exercise, or both.
A private cyber range where an attacking team and your defenders work the same scenario at the same time. Each exercise ends with a debrief that sets every attack step against what your team detected and did.
A private cyber range where your responders work a full incident on systems modelled on yours, from first alert to recovery. Each exercise ends with a debrief on detection, response and areas to improve.
Attack scenarios that run in isolated cloud accounts modelled on your AWS, Azure or Google Cloud setup. Your team investigates identity, control-plane and workload attacks, and each exercise ends with a debrief.
A private cyber range where SOC analysts investigate alerts in a copy of your monitoring stack, from triage to escalation. Each exercise ends with a debrief on what was found, what was missed and what to improve.
Attack scenarios we build for your organization from the threats that concern you, run in a private range modelled on your systems. Each exercise ends with a debrief on detection, response and areas to improve.
A private, isolated cyber range modelled on your infrastructure, security tools and logs. Your team practices against AI-driven attacks such as deepfake calls alongside classic intrusions, and each exercise ends with a debrief.
Security testing for web applications, mobile apps, APIs, and source code, carried out within a scope and rules of engagement agreed with your team.
Security testing for cloud accounts, identity, networks, Kubernetes, and wireless infrastructure, within a scope agreed with your team.
Security testing for AI agents, MCP servers, and LLM applications, covering prompt injection, tool misuse, data exposure, and agent permissions.
Objective-based red teaming and threat-led penetration testing that assess how your organization prevents, detects, and responds to a targeted attack.
Recurring and scheduled security testing for applications and infrastructure that change often, available as a retainer.

Tell us what you're working on, whether it's a deployment, an audit, a security test or a cyber range. You'll speak with an engineer who can help you scope it.