LER.me

Make All Learning Count.

Get Connected

  • What is a LER?
  • FAQs (opens in new tab)
  • Partner with Us
  • Visit EBSCOed (opens in new tab)

View our Policies

  • Accessibility (opens in new tab)
  • Standards (opens in new tab)
  • Terms of Use (opens in new tab)
  • Privacy Policy (opens in new tab)
  • Opt out (opens in new tab)

Get the app

Get it on Google PlayDownload on the App Store

© 2026 All rights reserved.

Powered by EBSCOed

Skip to main contentSkip to footer
  • Live Data
My LER
My LER
  1. Programs
  2. EC-Council Certified SOC Analyst (CSA)

EC-Council Certified SOC Analyst (CSA)

EC Council

Certification

Become a contributor for free to openly demonstrate student outcomes, industry alignment & eligibility criteria.

The EC-Council Certified SOC Analyst (CSA) program equipslearners with essential skills in security operations, threatintelligence, and incident response. It covers the processes,technologies, and techniques used to detect, investigate, andrespond to threats while covering attack vectors, SIEM deployment(with 350 use cases), and SOC development.

Format

Online

Eligibility Calculator

Which aid programs apply to this program?

Record QualityEligibility Calculators
Loading Skills & Competencies
Program Pathways

Credentials this program stacks toward

No program pathways.

Loading What You'll Learn
Program Details

Detailed information about this program

Students gain proficiency in Centralized Log Management, incident triaging, investigating loCs, and applying the cyber kill chain. They also learn to create effective reports and leverage Al-enabled tools and platforms to enhance SIEM capabilities, automate threat detection, prioritize alerts, and support threat hunting-critical skills for building a successful SOC analyst career. • Build job-ready skills with 50 labs and 120 tools • Earn a globally recognized, in-demand certification • Learn flexibly without leaving your current job The CSA exam is designed to test and validate a candidate's comprehensive understanding of the job tasks required as a SOC analyst. Thereby, validating their comprehensive understanding of a complete SOC workflow. • Exam Code: 312-39 • Number of Questions: 100 • Exam Title: Certified SOC Analyst • Test Duration: 3 Hours • Test Format: Multiple Choice • Availability: EC-Council Exam Portal Exam Eligibility Requirement: The CSA program requires a candidate to have one year of work experience in the Network Admin/Security domain and should be able to provide proof of the same as validated through the application process unless the candidate attends official training.

Requirements

What you need to earn this credential

No requirements listed.

Financial Aid

Eligible funding programs

No funding information available.

Scholarships

No scholarships listed.

Visit Program Website
Locations

Where this program is offered

No locations specified.

Loading Student Outcomes
Related Programs

Programs related to this one

No related programs.

Skills & Competencies

Skills developed through this program

  • Understand SOC processes, procedures, technologies, and workflows in security operations environments
  • Develop understanding of security threats, attacks, vulnerabilities, attacker behavior, and the cyber kill chain
  • Identify attacker tools, tactics, and procedures to recognize indicators of compromise for investigations
  • Monitor and analyze logs and alerts across IDS/IPS, endpoint protection, servers, and workstations
  • Understand centralized log management processes and their role in security operations
  • Collect, monitor, and analyze security events and logs in SOC environments
Career Pathways

Occupations this program prepares you for

  • Information Security Analysts15-1212.00
What You'll Learn

Key competencies developed through this program

Auto-populated·from NSX Competency Framework

Mastery: developing (Level 2)(based on Certification)

  • Multi-source alert investigations — correlate across SIEM, EDR, identity, and network with reduced oversight.
  • Routine incident response — execute tier-2 containment and eradication on familiar threat types.
  • Vulnerability prioritization — assess CVSS, exploitability, and asset context to drive patching decisions.
  • Threat-intel ingestion and operationalization — turn IOCs and TTPs into detection rules.
  • Cloud-security configuration (AWS, Azure, GCP IAM and network controls) — review and remediate in routine cases.
  • Detection engineering (basic SIEM queries, custom rules) — write and tune for the SOC's standard threats.
  • Junior analysts on alert triage — coach during their first 90 days.
  • On-call shifts in the SOC rotation — handle independently with senior backstop.
  • Compliance audit evidence collection — produce for SOC 2 / ISO 27001 cycles without manager involvement.
  • Tabletop exercises — participate substantively in SOC and broader-IR drills.

Some details on this page are auto-populated from public workforce data sources: O*NET (opens in new tab), BLS (opens in new tab), College Scorecard (opens in new tab), DOL Training Provider Results (opens in new tab), NSX (opens in new tab). Provided in partnership with LER.me Career Intelligence.

Student Outcomes

Performance metrics for this program

Completion Rate
Not reported
Placement Rate
Not reported