Detection Engineer and Threat Hunter
Move from telemetry and adversary models into detection development, exposure prioritization, and proactive hunting.
Detection engineers, SOC analysts, Threat hunters
Move from telemetry and adversary models into detection development, exposure prioritization, and proactive hunting.
Courses in this path
Open course in the Explainers catalog: What Is Detection Engineering?.
Launch Course Telemetry FundamentalsOpen course in the Detection Engineering catalog: Telemetry Fundamentals.
Launch Course What is SIEM?Open course in the Detection Engineering catalog: What is SIEM?.
Launch Course What is EDR?Open course in the Detection Engineering catalog: What is EDR?.
Launch Course What is Cyber Kill ChainOpen course in the Explainers catalog: What is Cyber Kill Chain.
Launch Course Threat Intelligence FundamentalsA practical introduction to turning threat information into defensive decisions, security operations, and measurable action.
Launch Course Detection EngineeringOpen course in the Detection Engineering catalog: Detection Engineering.
Launch Course Writing Detection RulesOpen course in the Detection Engineering catalog: Writing Detection Rules.
Launch Course Detection Lifecycle ManagementOpen course in the Detection Engineering catalog: Detection Lifecycle Management.
Launch Course What Is Threat Hunting?Open course in the Explainers catalog: What Is Threat Hunting?.
Launch Course Threat Hunting FundamentalsA practical course on structured, defensive threat hunting: questions, hypotheses, telemetry, behavior mapping, querying, validation, outcomes, and detection improvement.
Launch Course What is Threat Hunting?Open course in the Threat Hunting catalog: What is Threat Hunting?.
Launch Course Known Exploited VulnerabilitiesOpen course in the Infrastructure and Cloud Security catalog: Known Exploited Vulnerabilities.
Launch CourseContinue from here
Establish an incident-response workflow and investigate evidence across desktop, mobile, browser, removable-media, and malware sources.
View Path Cloud Security OperationsOperate cloud defenses across identity, containers, exposure management, resilience, and incident response.
View Path OSINT FoundationsDevelop a disciplined public-information investigation workflow from digital-footprint concepts through technical collection and verification.
View Path