Alert Triage Queue
Classify incoming SIEM-style alerts as true or false positive and assign the right priority under the clock.
Enterprise Incident Response Simulator
Learn practical enterprise security operations by doing it. Triage a SIEM-style alert as true or false positive, read raw logs to spot the real attack pattern, walk a live incident through containment, and assign the right severity tier and notification chain.
Small business owners standing up their first security processes, and new graduates entering SOC analyst, IT, or security operations roles who want hands-on reps before the stakes are real.
Classify incoming SIEM-style alerts as true or false positive and assign the right priority under the clock.
Read raw auth and network log excerpts to identify the real attack pattern hiding in them.
Pick the correct response at each stage of the identify, contain, eradicate, and recover lifecycle.
Assign the right severity tier and choose the correct stakeholder notification chain.
40 quiz questions across alert triage, log analysis, incident response lifecycle, and severity communication.
Earn Triage Analyst, Forensics Investigator, Incident Commander, and Severity Strategist badges, then unlock a certificate at 100%.
Completely self-contained sandbox โ no internet required when run locally.
Educational simulation only โ all alerts, logs, and incidents are fictional and simulated locally. No real systems or data are ever involved.
Every session pairs with a quick 15โ20 min real-world task that turns the simulator into a habit.
Turn on multi-factor authentication on one account you use daily, and write down what a "SEV1" incident would look like for your own household or small business (what's the worst-case scenario, and who would you tell first?).
SecOps is part of our Business & Workforce Track.
No payment required to apply. We'll contact you to confirm access options.