- Видео 249
- Просмотров 2 067 719
MyDFIR
Канада
Добавлен 10 июн 2023
Getting started in Cybersecurity is difficult. Let me help you.
How To Become a SOC Analyst in 2025
Curious about how to kickstart your career as a SOC Analyst in 2025? In this video, I’ll break down the key steps to becoming a successful Security Operations Center (SOC) Analyst, including:
✅ Essential skills you need to master
✅ Free and paid learning resources
✅ Certifications that matter (like CompTIA Security+, CySA+, etc.)
✅ Gaining hands-on experience with labs and platforms (LetsDefend, TryHackMe, etc.)
✅ Tips for landing your first SOC Analyst job
Whether you're new to cybersecurity or looking to make a career switch, this guide will set you on the right path to success.
Training Video: ruclips.net/video/G5sCK6IU3nU/видео.html
GitHub Video: ruclips.net/video/p59B-I67yf8/видео.htmlfeatur...
✅ Essential skills you need to master
✅ Free and paid learning resources
✅ Certifications that matter (like CompTIA Security+, CySA+, etc.)
✅ Gaining hands-on experience with labs and platforms (LetsDefend, TryHackMe, etc.)
✅ Tips for landing your first SOC Analyst job
Whether you're new to cybersecurity or looking to make a career switch, this guide will set you on the right path to success.
Training Video: ruclips.net/video/G5sCK6IU3nU/видео.html
GitHub Video: ruclips.net/video/p59B-I67yf8/видео.htmlfeatur...
Просмотров: 9 607
Видео
Practice KQL for FREE | Cybersecurity Training (KC7)
Просмотров 3,6 тыс.14 дней назад
Practice KQL for FREE with Cybersecurity Training Platform (KC7)! In this video, we introduce you to KC7 and how you can use it to practice your KQL skills to analyze and query data in Microsoft and other platforms. KC7: kc7cyber.com/ Looking to collaborate? Feel free to email me at: Inquiry@mydfir.com THE MYDFIR SOC ANALYST COURSE: With 8 chapters and 30 hands-on labs tailored to security oper...
How To Get Into Cybersecurity in 2025 (ACTION PLAN)
Просмотров 8 тыс.21 день назад
Are you looking to break into cybersecurity in 2025? Whether you’re transitioning from another field or starting fresh, this video will guide you through the essential steps to kickstart your cybersecurity career. Cybersecurity Domains: ruclips.net/video/eRvv-WidX-o/видео.html Free Training: ruclips.net/video/bcq263eZOwk/видео.html Looking to collaborate? Feel free to email me at: Inquiry@mydfi...
Reflection & Goals for 2025
Просмотров 93621 день назад
Personal Channel: @ItsStevenMah THE MYDFIR SOC ANALYST COURSE: With 8 chapters and 30 hands-on labs tailored to security operations, I am focused on transforming you into a standout SOC analyst. Beyond tools, you'll master the investigation process and uncover hidden details. Let's make a real difference together. ▸Enroll here: academy.mydfir.com/p/soc SIGN UP FOR FREE MENTORSHIP Getting starte...
CyberDefenders SOC Analyst Lab - IcedID
Просмотров 2,4 тыс.28 дней назад
Step into the world of cybersecurity with the CyberDefenders SOC Analyst Lab (IcedID), perfect for aspiring SOC analysts and security professionals, this lab will guide you through investigating a file hash related to IcedID activity. CyberDefenders Lab: cyberdefenders.org/blueteam-ctf-challenges/icedid/ THE MYDFIR SOC ANALYST COURSE: With 8 chapters and 30 hands-on labs tailored to security op...
5 FREE Labs You MUST DO (LetsDefend)
Просмотров 3,5 тыс.Месяц назад
Looking to sharpen your skills as a SOC Analyst? In this video, I’ll introduce you to 5 FREE Labs on LetsDefend that you absolutely need to try! These hands-on labs are perfect for building your skills whether you’re a beginner or already working in cybersecurity. Labs: app.letsdefend.io/challenge/phishing-email app.letsdefend.io/challenge/pcap-analysis app.letsdefend.io/challenge/investigate-w...
MyDFIR Community Q&A
Просмотров 986Месяц назад
In this video, I'll answer some of the questions asked by the community. If you have any questions for me that I did not answer in this video, please ask away in the comments! THE MYDFIR SOC ANALYST COURSE: With 8 chapters and 30 hands-on labs tailored to security operations, I am focused on transforming you into a standout SOC analyst. Beyond tools, you'll master the investigation process and ...
CyberDefenders SOC Analyst Lab - Linux Analysis (Hammered)
Просмотров 3,6 тыс.Месяц назад
Welcome to the CyberDefenders SOC Analyst Lab focused on Linux Analysis with the “Hammered” challenge! This lab is designed to give you hands-on experience investigating Linux-based attacks, perfect for SOC analysts, cybersecurity enthusiasts, and professionals aiming to sharpen their skills in threat detection and response. CyberDefenders: cyberdefenders.org/blueteam-ctf-challenges/hammered/ L...
Improve Your Investigations Using ANY.RUN
Просмотров 2,1 тыс.Месяц назад
Enhance your cybersecurity investigations with ANY.RUN! In this video, we dive into the powerful features of ANY.RUN, an interactive malware analysis platform designed to help SOC analysts, threat hunters, and security professionals uncover critical insights. Whether you're tracking malware behavior, analyzing suspicious files, or investigating phishing attacks, ANY.RUN's dynamic sandbox enviro...
Avoid Compromise with Wazuh Active Response
Просмотров 3,2 тыс.2 месяца назад
Discover how Wazuh's robust Active Response feature empowers cybersecurity SOC analysts to take immediate action against threats. In this video, we explore Active Response, a vital component of the open-source Wazuh platform. Whether you're a security professional, system administrator, or IT enthusiast, this guide will show you how Wazuh's automated response capabilities can mitigate risks, bl...
Cybersecurity Tool For Asset Management | Quick Results (RunZero)
Просмотров 1,9 тыс.2 месяца назад
In this video, we dive into RunZero, a powerful cybersecurity tool designed for asset discovery and management. RunZero provides quick and accurate results, helping SOC analysts, IT professionals, and network administrators maintain an up-to-date inventory of all devices within their network. If you're struggling with unmanaged assets or shadow IT, this tool is a game-changer! THE MYDFIR SOC AN...
Gain SOC Experience with LetsDefend
Просмотров 11 тыс.2 месяца назад
Looking to gain hands-on experience as a SOC analyst? In this video, we explore LetsDefend, an interactive platform designed to give aspiring SOC analysts real-world experience in threat detection, investigation, and response. Whether you're just starting in cybersecurity or looking to sharpen your skills, LetsDefend offers SOC simulation labs that will prepare you for the demands of an actual ...
Cybersecurity SOC Analyst Lab - PDF Analysis
Просмотров 4,5 тыс.2 месяца назад
Cybersecurity SOC Analyst Lab session where we are provided with contents from a USB and are tasked to perform analysis. This video is designed for current and aspiring SOC analysts, cybersecurity professionals, and anyone interested in understanding how to investigate suspicious files. Blue Team Labs Online: blueteamlabs.online/home/challenge/suspicious-usb-stick-2f18a6b124 Get started with Re...
Student Discounts for Cybersecurity SOC Analyst Training
Просмотров 3,2 тыс.2 месяца назад
Are you a student passionate about cybersecurity and looking to break into the field as a SOC analyst? We’ve got great news for you! In this video, we highlight student discounts for SOC Analyst Training courses that will help you level up your skills and prepare for a career in cybersecurity without breaking the bank. Tryhackme - help.tryhackme.com/en/articles/6494960-student-discount Cyberdef...
10 FREE SOC Labs To Level Up - CyberDefenders
Просмотров 8 тыс.2 месяца назад
Are you looking to sharpen your SOC analyst skills with hands-on practice? In this video, we dive into 10 FREE SOC labs provided by CyberDefenders that will help you level up your cybersecurity knowledge and real-world experience. These labs are perfect for anyone looking to get into cybersecurity or advance their skills in incident response, threat hunting, and network analysis. Site: cyberdef...
Cybersecurity Tool: How To Install an IDS (Suricata)
Просмотров 4,8 тыс.3 месяца назад
Cybersecurity Tool: How To Install an IDS (Suricata)
Is This The Best Email Security Tool?
Просмотров 3,9 тыс.3 месяца назад
Is This The Best Email Security Tool?
CyberDefenders SOC Analyst Lab - Web Server Analysis (Tomcat)
Просмотров 5 тыс.3 месяца назад
CyberDefenders SOC Analyst Lab - Web Server Analysis (Tomcat)
On-Premise Setup Tutorial 30-Day MyDFIR SOC Analyst Challenge | BONUS
Просмотров 3,2 тыс.3 месяца назад
On-Premise Setup Tutorial 30-Day MyDFIR SOC Analyst Challenge | BONUS
Troubleshooting 30-Day MyDFIR SOC Analyst Challenge | Day 29
Просмотров 1,2 тыс.3 месяца назад
Troubleshooting 30-Day MyDFIR SOC Analyst Challenge | Day 29
Elastic Defend Setup Tutorial | Day 29
Просмотров 1,2 тыс.3 месяца назад
Elastic Defend Setup Tutorial | Day 29
Investigate RDP Brute Force Attack | Day 27
Просмотров 1,3 тыс.3 месяца назад
Investigate RDP Brute Force Attack | Day 27
Investigate SSH Brute Force Attack | Day 26
Просмотров 1,5 тыс.3 месяца назад
Investigate SSH Brute Force Attack | Day 26
osTicket + ELK Integration | Day 25
Просмотров 1,2 тыс.3 месяца назад
osTicket ELK Integration | Day 25
What is a Ticketing System? | Day 23
Просмотров 1,1 тыс.4 месяца назад
What is a Ticketing System? | Day 23
How To Create Alerts and Dashboards in Kibana | Day 22 (4/4)
Просмотров 1,6 тыс.4 месяца назад
How To Create Alerts and Dashboards in Kibana | Day 22 (4/4)
Mythic Agent Setup Tutorial | Day 21
Просмотров 2 тыс.4 месяца назад
Mythic Agent Setup Tutorial | Day 21
Mythic Server Setup Tutorial | Day 20
Просмотров 1,7 тыс.4 месяца назад
Mythic Server Setup Tutorial | Day 20
I want o start my career as a soc analyst. I am Still in learning process.thanks for the tips.
Hi again! I am currently stuck on installing ART. I was wondering if you purposely left out the github link out of your description for us to figure out? If so, I assume that I'm also supposed to download the ART files first before running this command?
Hey! No I didn't leave it out intentionally. RUclips blocked the link :( but correct you gotta download and install ART.
I was able to get through the project, thank you so much for all your help! I had to follow the ART github installation instructions, but it worked perfectly! So happy with everything I've learned.
Lets goo!!! Great job 🙌 super proud of you!
Id recommend downloadin the inputs.config file and the app for splunk as you need an internet connection todo so. If you dont you will need to restart the whole process on kali.
this was great 🥰
Thank you!
Thank you for the video it was inspiring. I've been applying to SOC analyst roles (SOC 1 and internships) and only receive deny notifications. I don't have SOC experience FYI. I've been a Security Analyst for 5 years now, my Security+ expired in 2023, and have a recent certification CompTIA CySA+ (Sept 2024). It seems the SOC positions I've been applying to requires a Bachelors degree, which I'll have in the fall of 2025 (BS Cybersecurity). Since the Security Analyst position I have now (within the IT department) is a different environment than a SOC, would you recommend the Blue Team Level 1 certification to show experience in a SOC? I am considering your training as well. FYI, The Security Analyst position I have now, I have not experience expensive systems such as Splunk, etc...
Thanks a lot for this video. I’m gonna try the SO install this week. I already have V box on another laptop cause my other one is jammed up. I was also considering wazuh install. Thanks!!!!
Great choice, it's a great tool for learning. I'm sure you'll get a lot out of it!
Should I wait until I complete the five steps and then work on projects, or should I solve labs while studying each skill? For example, after studying the OSI model, should I apply labs on Packet Tracer, and then after finishing the entire networking section, create a project for it? Or are the projects supposed to come after completing all five skills?
That is a great question! It really depends on you, do you find it better learning it all then trying to apply it? Or are you the type of person to take it one step at a time? Unfortunately, I can't answer that for you :( - In my opinion when it comes to projects, usually it comes after completing the five skills.
@MyDFIR I am someone who likes to apply what I learn. So, after finishing the networking section, should I solve labs on Packet Tracer and then work on a networking project? Or is there no specific project for networking? Are there labs for each concept, and the projects come after completing the five skills? In summary, is there a project for each skill, or is there just one project after completing the five skills, and not a specific project for the networking section?
If that is the case, yea I would look for labs to do or even create your own network diagram and configure VLANs if you have the option. There are some labs you can find online with packet tracer that should hopefully give you some inspiration. When it comes to projects, you can find a ton online for EACH skill however, on my channel, you will find projects that focus on all the skills combined if that makes sense.
I think that the A+ certification is not very important because it focuses on support and maintenance, which is not relevant for someone specializing in cybersecurity. I think the first thing that should be studied is networking. Am I correct?
It always depends on the individual but I wouldn't say it is not relevant. If they are starting from scratch with no IT background, it is a good idea to start with IT to lay the ground work.
That's a great video and i would like to join the cyber security carrier as i am doing btech cs with specialisation in cyber security could you please help me to identify which carrier should i choose in cyber for jobs in future (and i personally without any expirience thinks about SOC or jr security engineer ) based on 1 or 2 videos that i have watched online . please sir let me know 🙃
Obrigado ótima didática antes eu ficava assistindo seus vídeos legendados, agora não preciso mais.
besides the certifications , do i need a university degree to get a job? I was thinking of taking the cnna then the security + and then a TCM certificate along with self practice on hack the box and tryhackme and then start looking for a job. Is the fact that i dont have a university degree gonna be a disadvantage ? or the above certifications will satisfy most of the the recruiters?
So are we creating Wazah on our host computer? as in are we accessing the site initially on our host computer or are we doing the entire process in a different vm. I understand we are setting up a cloud but WHERE exactly are we setting it up.
Great question, we are setting everything up inside of digital ocean or whichever cloud provider you choose to use. Access the cloud provider on your host and configure the VMs you spin up however you like! I tend to SSH from my host as I find that easiest.
@@MyDFIR I really appreciate you getting back to me, especially becuause this video is "old" thank you very much.
@@MyDFIR I love your videos and i really hope you dont take offense to my critique.
Not at all! In fact, I appreciate the criticism. This is how I grow, so thank you.
A+. Network +. Security +
Hey, your videos are superb, but I want to know if I do it with an AWS EC2 machine, it will make errors. Could you please help me?
Thanks, it should be fine with ec2!
Hi Steven. Your cyber security & EH tutorials are excellent. I’m learning a great deal of CSy study information & career advice from your RUclips channel. Keep up your great work & mission goals. 😊 🙏 ♾️
Great to hear that! 💙 thanks for watching
Good video
Thank you for watching!
I have A+, Net+, and Sec+, and I'm planning to buy your SOC Analyst course. Do you think I'm ready for your course?
Yup you should have a solid base for the course and even if you feel lost or have questions, I’ll always be here to help!
this is an excellent guide subbed
Thank you!
@@MyDFIR yessir
Thanks Steven
Hey, I saw your videos. They're great and informative but your thumbnails are not appealing enough. I think you should hire a Professional Thumbnail Artist for your videos to increase your view count cause every impression matters. I can improve your ctr from 2-3% to 15%. Please acknowledge and share your contact details to get your thumbnail.
thank you so much for giving challenge, and i am accepting challenge. SOC
You got this 💪
Study ccna or N+
Both are great. One is more vendor specific if that is what you want (ccna) but they both will teach you networking 💪 - My opinion? Go with whatever you can find that is cheapest and that is enjoyable…not all trainings are created equal!
@MyDFIR Someone recommended CompTIA Network+ to me instead of CCNA. They said CCNA is for someone specializing in networking, but since I will work in cybersecurity, I should take Network+.
@MyDFIR Someone told me to take N+ instead of CCNA because I’m not specializing in networks, so I should take N+.
N+ is a solid choice! Remember that the certification is optional.
@@MyDFIR Does it mean that N+ is sufficient for the networking part I need as someone specializing in cybersecurity as a SOC analyst?❤️
I finally have enough computing power to set up my own labs and first thing i though to do was search your videos 🦾🤠💻
I was touched by your message on setting up a home lab thank you so much... Please can you be my mentor I will so appreciate it if you say yes thank you so much
It is great to hear you're setting up a home lab! I'm happy to provide some guidance, feel free to reach out! Just note that I do have a bunch of folks in the waiting list but I try my best.
@MyDFIR thank you so much this mean the world to me...
Currently on step 7! Actively still working on certifications and doing tryhackme and hackthebox labs as well on the side but shifting my focus to building out a portfolio.
Thanks for the updated video !
Thanks for watching!
But Google certification is not free?
The cert is not free but the content is on RUclips!
Always love ur content and guidance etc. Ive been receiving interviews after applying for it security, be it as for working student/internship as im still studying. But always got turned down after the interview, the CV could not be the problem as i got the interview, any suggestion or upcoming video on how to wrack an interview?
Thank you and I am sorry to hear that. I’ll definitely create something in the future. There could be various reasons as to why that is: 1) Company already hired internally/have a candidate in mind and just following process. 2) Unreasonable Ask (High salary, not comfortable working x hours, want 100% remote, etc.) 3) Personality- This is actually a big one aside from technical skills. Hiring managers are looking for people to mesh well with their team and Ive seen candidates with amazing technical skills have terrible personalities. Btw I am not saying you have a terrible personality 😂 just thought I would bring this up!
Jeremy's It lab. He is the best free resources on ccna and networking he is unmatched
Excellent! Thanks for sharing 💙
Solid advice as always Steven. Keep up the great work. Thank you
Thanks!
Thank you Steve!
Very welcome!
thanks Can you suggest projects for intermediate level? i have seen your other 5 projects and i have done that, thanks for that too...i want something like real practical world problem projects
Great question. If you have completed all 5, you should be in a good spot to let your creativity build something more intermediate! Perhaps try expanding on those projects? Throw in an EDR, build detections, etc.
Thank you
Thank you Steven🤝
Thank you for watching 💙
Great scoop for SOC wannabes! Hands-on training on platforms like LetsDefend is gold.
Thanks for the video Steve. I'm somewhere between steps two and three and in my second week of training for my first tech job, which is tech support for a local university. I'm definitely going to be coming back to this. I'm doing the CCST Networking and then Google Cybersecurity and Security+, then it's on to step 4
Awesome to hear! Keep pushing, you're on the right track!
This review is coming from a student you're positively impacting from Ghana. I was following the 3rd video on setting up your labs and I was so fascinated by the ability to create a network on a workstation with a host and victim and exploit a malware to retrieve user data. I won't say I totally got the hang of it, but now what I've been reading is no more theory but very practical. Thank you so much.
That is amazing to hear! It is super rewarding to see my content help others in their learning! Thank you for stopping by 💙
Thanks a lot man this helps loads
Glad you found it helpful!
Thanks alot❤
I am glad you found it helpful!
Here's the truth: You don't go into cyber. I've had my sec+, az900, splunk cert since August. Did MyDFIR labs, Josh Madakor labs. Great labs that highlight my certs, not pointless ones either. I have help desk and sys admin experience. 0 call backs. 100's of applications. The recruiters who do reach out to me? Never, ever a cyber job. This industry got ruined by DEI and pushing for every waiter/waitress and other low IQ/agency people who have no business in this line of work oversaturating it. This is the hard truth in 2025.
Have GitHub projects(Active Directory, SOC project, cyber forensics etc, sec+,net+,a+,cysa+, pentest+, project+, Linux LPI, ITILv4, SSCP, CSSP, google IT, BSCSIA and some of my MBA. And still have doesn’t guarantee a desk job position lol.. tech is tough right now. Went into data center integration instead of cyber for now. 🤷🏻♂️
Any opinion on BTL1?
i think he mentioned it on a diff video as one of the labs to try
I think it requires more content to justify the price but their labs are pretty good.
how does one become a help desk pro?
Go for A+ bro....I am at help desk and it helps
@vidursharma3766 I need some guidance please, I'm looking forward to starting a career as a SOC analyst but I need someone pursuing the same thing. If you don't mind, can we get along plsssss
@@vidursharma3766 im about to take the core 2 for A+ this week after that did u do anything else ?
As others have mentioned, A+ is a good starting point to help you with theory. Supplement that with Kevtech IT Support, Jeremy IT Lab and/or Professor Messer.
First comment!!!
I appreciate you!!
Im at the stage of my life where I am working towards changing careers after 10 plus years in loss prevention/security and investigations..starting with building a strong foundation and building up skills. Going the compTIA trifecta route and try hack me. Great advice really speaks to the core of why we are all doing this.. different reasons but those reasons drive us to believe and keep going!
Great background and experience! It will definitely translate over and if you have any questions, I am always happy to help.
Hello, after editing the .ossec config file i cannot restart wahuh-manager service. it staty " wahuh manger service failed because the control process exited with error. "systemctl status wazuh-manager.service" and "journalctl -xeu wazuh-manager.service" for details. root@Wazuh:~/wazuh-install-files# "systemctl status wazuh-manager.service" and "journalctl -xeu wazuh-manager.service Please assist if you can
Hey MyDFIR, I've been working as a L1 for 2 years. Looking into studying so I can become an L2 and get more responsibilities. Stuck on whether I should do vendor certs like MS, CS and Splunk or look into hands-on training. The hands-on training would be labs where I also would document everything. I'd also like to be become more proficient with KQL so I can understand and create detection rules evenually. Been circling around on if multiple choice exams will benefit me or just be great on the CV. Not sure maybe I need a balance of both. Would be nice to hear your thoughts.
Great question. I would do hands on labs and become a better investigator if being an L2 is your next goal. If you want to get into Engineering, that is when I would suggest you look into more vendor based certs.
@ do you think labs are sufficient amount of hands on or would you recommend a hand on cert aswell ?
did anybody do the wazuh part in the VM? like not using the cloud? if yes please help me out.
Thank you always
My pleasure!
Great advice and thank again for your contribution to the Community....
You’re very welcome! 🙏
How did you get the ip address you brute forced with on Mythic? Can't seem to find it :/