Skip to content
All security projects
Security projectDemo readySOC training

SOC Simulation Lab

End-to-end SOC workflow simulator — maps attack scenarios to collected logs, runs detections, identifies visibility gaps to practice analyst triage and detection engineering.

Describe attack scenarios in YAML (what an attacker did, what telemetry should appear), feed in collected logs, and the lab runs login / scan / shell detection modules against them. Output is an end-to-end SOC scorecard: which scenarios were detected, which slipped through, and where coverage is weakest.

PythonCLIYAML scenariosSOC scorecard

Catalog entry only — a full write-up lands closer to release.

Related across catalogs

Want a heads-up when SOC Simulation Lab releases?

Subscribe via blog