PPS CLASS · START HERE

Welcome to the SOC Analyst Projects.

Here's what a SOC actually is, what it pays, and how long this track takes. All 10 projects are right below, starting with Project 1.

WHAT IS A SOC?

Where cybersecurity actually happens, day to day

A SOC, short for Security Operations Center, is the team that watches an organization's systems around the clock for signs of an attack. Analysts sit in front of dashboards fed by firewalls, endpoints, and cloud logs, and their job is simple to describe and hard to do well: notice something wrong, figure out what it actually is, and decide what happens next.

Tier 1 is the entry point into that world. You're the first set of eyes on an alert, the one who decides whether it's noise or something a senior analyst needs to see right now. Every project in this track is built to get you ready for exactly that seat.

A security operations team monitoring live alerts. Photo via Pexels

SALARY RANGE FOR SOC ANALYSTS

What the role actually pays

Pay depends on experience, location, and whether you're doing pure Tier 1 work or something broader. Here's the real spread, pulled from the sites employers and analysts actually use to benchmark this role.

Entry Level (Tier 1) $60K to $76K
National Average $100K to $105K
Experienced Analysts $140K+
Reported average pay lands between $99,157 and $105,376 a year across the major salary sites, with a typical total range of about $72,000 to $150,000 depending on experience and location. Entry-level Tier 1 roles usually start near the bottom of that range, and analysts with a few years in usually clear $140,000. Sources: ZipRecruiter, Indeed, and Glassdoor, September 2026.

HOW LONG WILL THIS TAKE

A realistic timeline, not a sprint

Most people work through all 10 projects in about 6 to 10 weeks, putting in a few hours a week alongside a job or Security+ study. Move faster if you already have some hands-on experience, slower if you don't, both are fine. Nothing here is timed. Finish Project 1 well before you worry about Project 10.

THE PROJECTS

Start with Project 1. Each one builds on the last, in order.

1
Foundation

Home SOC Lab Build

Build your own detection environment before touching real alerts. It's the sandbox every later project in this track runs inside.

ToolsWazuhSuricataUTM, VMware, or VirtualBox
Start Project
2
Beginner

Alert Triage & Shift Monitoring

Watch a live SIEM/EDR queue, do the first-pass read on each alert, and decide what actually needs escalation.

ToolsSplunkEDRTicketing
Start Project
3
Beginner

Phishing Mail Investigation

Pull apart headers, links, and attachments on a suspicious email and trace it from inbox to root cause.

ToolsHeader analysisURL sandboxingVirusTotal
Start Project
4
Beginner

Escalation & Incident Documentation

Write the ticket a Tier 2 analyst can act on without redoing your work. It's the most graded, least glamorous Tier 1 skill.

ToolsCase managementSLA tracking
Start Project
5
Easy-Medium

Account Takeover Investigation

Chase an impossible-travel login or MFA bypass back through the identity logs to confirm compromise.

ToolsIAM / Entra ID logsGeo-velocityMFA logs
Start Project
6
Easy-Medium

Log & SIEM Correlation

Build detection rules that actually catch brute-force attempts and PowerShell abuse in real log data.

ToolsSplunk SPLELK / KQL
Start Project
7
Easy-Medium

Threat Intel & IOC Enrichment

Take an indicator from a real investigation and turn it into a short, usable threat brief.

ToolsOSINTVirusTotalMITRE ATT&CK
Start Project
8
Medium

Endpoint Monitoring

Catch credential dumping, persistence, and processes launching from temp folders before they spread.

ToolsSysmonWazuh
Start Project
9
Medium

Network Traffic & IDS Analysis

Correlate IDS alerts against raw packet captures and map the traffic to real attacker techniques.

ToolsSnort / SuricataWiresharkMITRE ATT&CK
Start Project
10
Medium

Malware Triage in a Sandbox

Detonate a suspicious file safely, pull the IOCs, and document it the way you'd hand it to Tier 2.

ToolsStatic analysisDynamic analysis
Start Project