...

Download Our Latest Course Catalog | Download Now

[woo_multi_currency_layout10]

Fortinet SOC Analyst

In this advanced course, you will learn to design, deploy, and operate a Fortinet SOC solution using FortiAnalyzer. You will also analyze security incidents, investigate adversary behavior, and respond to cyberthreats using industry-aligned SOC practices and frameworks.

Overview

Overview

In the Fortinet SOC Analyst course, you will gain hands-on experience designing and managing a Fortinet-based Security Operations Center using FortiAnalyzer. 

You will learn how to detect, investigate, and respond to security incidents, analyze attacker behavior, reduce attack surfaces, and apply industry frameworks to classify and respond to threats. 

The course focuses on SOC operations, automation, threat hunting, and incident response using advanced FortiAnalyzer capabilities.

Prerequisites

To get the most out of this course, you should have an understanding of the topics covered in:

  • FCP – FortiAnalyzer Analyst
  • FCP – FortiAnalyzer Administrator

or equivalent hands-on experience.

Scope

Topics include:

  • SOC concepts and security frameworks
  • FortiAnalyzer architecture and operation modes
  • SOC operations and automation
  • Attack surface analysis and attack vectors
  • Event analysis and incident management
  • Threat hunting dashboards and IOCs
  • Outbreak alerts and traffic flow analysis
  • Playbooks, automation stitches, and connectors
  • FortiAnalyzer Fabric deployments and ADOM management
  • Reporting and report customization
Target Audience

Ideal for:

  • Security professionals designing and operating SOC environments
  • Analysts responsible for incident detection, investigation, and response
  • Teams implementing Fortinet SOC solutions based on FortiAnalyzer
Best Practices

You will learn these skills as part of this course:

  • Applying industry frameworks for incident handling
  • Reducing organizational attack surface
  • Using automation and playbooks to improve response time
  • Performing structured threat hunting and IOC analysis
  • Designing scalable FortiAnalyzer-based SOC deployments
Certification

After completing this course, you will be able to prepare for the FCSS – Security Operations Analyst exam, which is part of the FCSS Security Operations certification track

FAQs

Q: Is this course focused on SOC operations rather than administration?
A: Yes, the course focuses on SOC workflows, incident response, and threat analysis using FortiAnalyzer.

Q: Does the course include automation and playbooks?
A: Yes. SOC automation, playbooks, and integrations are included.

Q: Is industry threat framework mapping covered?
A: Yes. The course covers identifying and categorizing adversary behavior using widely adopted frameworks.

Exam Resources

Datasheet

Credits Guide

Credits Datasheet

Credits FAQ

Objectives

After completing this course, you should be able to:

  • Describe the main functions and roles within a SOC
  • Identify common security challenges that Fortinet SOC solutions address
  • Analyze simulated attacks and categorize attacker tactics using industry frameworks
  • Analyze and respond to security incidents according to industry best practices for incident handling
  • Describe basic FortiAnalyzer SOC concepts, definitions, and features
  • Manage administrative domains (ADOM)
  • Describe FortiAnalyzer operation modes
  • Configure FortiAnalyzer collectors and analyzers
  • Design and deploy FortiAnalyzer Fabric deployments
  • Manage Fabric groups
  • Analyze and manage events, and customize event handlers
  • Analyze and create incidents
  • Analyze threat hunting dashboards
  • Analyze indicators of compromise (IOCs) information from compromised hosts
  • Manage outbreak alerts
  • Identify playbook components
  • Describe trigger types and their properties
  • Create and customize playbooks from a template
  • Create new playbooks
  • Use variables in tasks
  • Configure connector actions
  • Monitor playbooks
  • Export and import playbooks
  • Configure automation stitch integrations between FortiAnalyzer and FortiGate
  • Identify the attack surface
  • Describe how to reduce the attack surface
  • Identify common attack vectors
  • Capture traffic flows
  • Configure new reports
  • Customize reports
Note : A representative from Datacipher will contact you with further details

Training Credits/Participant: 30

Payment Methods

At DataCipher, we provide a range of payment options for our Palo Alto courses. Here’s what you can choose from:

Palo Alto Networks Training Credits and Vouchers – We accept both training credits and training vouchers issued by Palo Alto Networks. To enroll in a course using your credits or vouchers, please click the Register button. You’ll have the opportunity to apply these credits during the final step of the registration process.

Purchase Order (PO) – If your organization prefers using a purchase order, begin the registration by clicking the Register button. At the conclusion of the registration form, choose the option “My company will pay for it, please send an invoice with the payment details.” Our training team will then provide an official quote and any necessary additional information that your accounts department might need to issue the PO.

Bank Transfer – DataCipher maintains bank accounts in both the US and Europe, accommodating all standard bank transfer methods such as IBAN/BIC, Swift, ACH, or wire transfer. To make a payment via bank transfer, simply use the Register button to sign up for your selected course.

Credit Card Payments – We accept payments from all major credit cards, including Mastercard, VISA, American Express, Discover & Diners, and Cartes Bancaires. Payments can be made directly through the registration link or by requesting an invoice that includes a web link for online payment. All transactions are secure, and DataCipher does not store any credit card information.

These methods are designed to make the registration process as smooth and flexible as possible for all participants.

Status

Guaranteed to Run – DataCipher is committed to running this class unless unforeseen events such as an instructor’s accident or illness occur.

Guaranteed on Next Booking – The course will proceed once an additional student registers.

Scheduled Class – We have scheduled this course and rarely cancel due to low enrollment. We offer a “Cancel No More Than Once” guarantee, ensuring that if a class is canceled due to insufficient enrollment, the next session will run regardless of the number of attendees.

Sold Out – If the class is fully booked, please use our contact form to join the waiting list or to inquire about additional sessions. We’re here to accommodate your training needs and keep you informed of new opportunities.

Half and Full-Day Training

At DataCipher, we offer our training courses in both traditional full-day and convenient half-day formats. Our half-day classes are specifically designed for IT professionals who cannot be away from their workplaces for consecutive full days. This flexible schedule allows participants to dedicate a few hours to learning and then return to their regular work responsibilities.

The curriculum for both the full-day and half-day formats is identical. The primary difference is that the half-day classes spread the coursework over a more extended period, providing a balanced approach to professional education. DataCipher has been successfully running these half-day training sessions for several years, receiving consistently positive feedback from our customers. They appreciate the flexibility and report that the extended timeframe facilitates a deeper understanding of the material, as it gives them more time to absorb and reflect on the information learned.

In the Fortinet SOC Analyst course, you will gain hands-on experience designing and managing a Fortinet-based Security Operations Center using FortiAnalyzer. 

You will learn how to detect, investigate, and respond to security incidents, analyze attacker behavior, reduce attack surfaces, and apply industry frameworks to classify and respond to threats. 

The course focuses on SOC operations, automation, threat hunting, and incident response using advanced FortiAnalyzer capabilities.

REQUEST CUSTOM DELIVERY

REQUEST a Quote

Become An Expert By Practice – Get Your Hands On Labs

Don’t let your tech outpace the skills of your people

TRUSTED BY TOP COMPANIES LIKE IBM, DELOITTE, ERICSSON, AND MORE.
DISCOVER OUR CUSTOMER PORTFOLIO.

Dedicated to excellence, we cultivate strong partnerships with worldwide technology innovators.

Testimonials

What Our Clients Say

You’re all set!

Thanks for registering. Our training team will be in touch soon to confirm your class schedule and help you get started.