Master defensive cybersecurity - SOC operations, SIEM, threat hunting, digital forensics, and incident response at Coding Now (Near Wazirpur Metro). Batch July 2026.
A 4-month, project-first program. Build real skills near Wazirpur, Delhi.
SOC Tier 1/2/3 operations, Splunk SPL queries, IBM QRadar, Microsoft Sentinel, and alert triage.
MITRE ATT&CK framework, threat intelligence feeds, IOC analysis, and threat hunting techniques.
Disk imaging (Autopsy, FTK Lite), memory forensics (Volatility), network forensics, chain of custody.
NIST 800-61 lifecycle, containment, eradication, recovery, forensic timeline, post-incident report.
Static/dynamic malware analysis, PE file structure, strings, Wireshark, Ghidra disassembly basics.
AWS GuardDuty, Azure Defender, CloudTrail log analysis, and cloud security posture management.
Complete syllabus near Wazirpur. 4 months | Classroom + Online | Batch July 2026.
| Module | Topics Covered | Duration |
|---|---|---|
| Module 1 Blue Team Fundamentals | Security operations concepts, SOC tiers, MSSP vs in-house SOC, SOC analyst career path | 1 Wk |
| Module 2 SOC Operations | Alert lifecycle, escalation procedures, false positive tuning, threat categorization, shift handover | 2 Wks |
| Module 3 SIEM - Splunk and Sentinel | Splunk SPL (search, stats, eval, rex), IBM QRadar rules, Microsoft Sentinel KQL queries, dashboards | 2 Wks |
| Module 4 Threat Intelligence | MITRE ATT&CK, threat intel platforms (MISP, OpenCTI), IOC types, threat hunting queries in SIEM | 1 Wk |
| Module 5 Digital Forensics | Autopsy, FTK Lite, file system forensics, timeline analysis, artifact recovery, report writing | 2 Wks |
| Module 6 Memory and Network Forensics | Volatility for memory analysis, Wireshark for network forensics, PCAP analysis, protocol reconstruction | 1 Wk |
| Module 7 Incident Response | NIST 800-61 IR phases, runbook development, tabletop exercises, CSIRT team roles, post-mortem | 2 Wks |
| Module 8 Malware Analysis | Cuckoo sandbox, dynamic analysis, PE header analysis, strings extraction, Ghidra for static analysis | 2 Wks |
| Module 9 Cloud Security Monitoring | AWS GuardDuty, CloudTrail analysis, Azure Defender alerts, GCP Chronicle, CSPM tools | 1 Wk |
Our Cybersecurity Blue Team institute is in Pitampura - reachable from Wazirpur via Delhi Metro Red Line.
2nd Floor, Kapil Vihar, Opp. Metro Pillar No.354,
Pitampura, New Delhi - 110034
+91-7464099059 | +91-9667708830
Everything about the best Cybersecurity Blue Team course near Wazirpur, Delhi.
Join 3,200+ students. Next batch starts July 2026. Students from Wazirpur welcome!
2nd Floor, Kapil Vihar, Opp. Metro Pillar No.354, Pitampura, New Delhi - 110034
Explore Cybersecurity Blue Team across Delhi, or find other courses near Wazirpur.
Coding Now — 2nd Floor, Kapil Vihar, Opp. Metro Pillar No.354, Pitampura, New Delhi 110034 | +91-7464099059
Insights on AI, Data Science, Full Stack & Career
Have you ever wondered how AI can understand that "puppy" and "dog" are related, or that "king" and …
Read More →
If you have used a recommendation engine, searched for something online, or chatted with an AI assis…
Read More →
Rank on Google's first page in 30 days? Yes—if you're strategic. This realistic guide covers low-c…
Read More →