Security Onion Detection Eng. & Analysis In-Depth, Columbia-Jul 22-25, 2025

Schedule

Tue, 22 Jul, 2025 at 08:00 am to Fri, 25 Jul, 2025 at 05:00 pm

UTC-04:00

Location

IntelliGenesis LLC | Columbia, MD

Advertisement
This in-depth course equips Security Onion analysts and engineers with skills to identify detection gaps and develop technical solutions.
About this Event

About Security Onion

Security Onion is a free and open platform built by defenders for defenders. It includes network visibility, host visibility, intrusion detection honeypots, log management, and case management. Security Onion has been downloaded over 2 million times and is being used by security teams around the world to monitor and defend their enterprises. Our easy-to-use Setup wizard allows you to build a distributed grid for your enterprise in minutes!

For more about Security Onion, please see https://securityonion.com

About the Course

Security Onion Detection Engineering and Analysis In-Depth uses a scenario-based approach to equip analysts, administrators, and security engineers with the skills to identify detection gaps and develop technical solutions which cover those gaps. The course is intended for graduates of the Security Onion Fundamentals class and existing Security Onion practitioners who want to get more out of their Security Onion deployment.
Each student will receive:

  • 4 full days of class instruction from the developers of Security Onion
  • 300+ pages of course material
  • Certificate of Completion

When is the class?

Tuesday, July 22, 2025 through Friday, July 25, 2025

8-hour class with a one hour lunch from 8:00 AM - 5:00 PM (Eastern Time) each day

When does registration close?

Registration closes Monday, July 7, 2025, at 11:59 PM US Eastern Time.

Where is the class being held?

The class is being held at Intelligenesis, 6950 Columbia Gateway Dr., Suite 450, Columbia, MD 21046.

Is there parking at the training venue?

There is free parking at the training venue.

What hardware, etc. will be required for the class?

Security Onion Solutions will provide laptops for use during the course.

Which version of Security Onion will we be using?

We will the latest release of Security Onion 2.4 as of June 23, 2025.

You don't need it for the class, but the latest stable release can be found here: https://securityonion.com/download

What skills/knowledge should students have before attending this course?

Students should attend the free 2-hour Security Onion Essentials course before the first day of class. One topic covered by this course is building a Security Onion VM. Note that students do not need to build a Security Onion VM for this class. We will be using a pre-installed lab.

Students should have an intermediate or higher understanding of networks, TCP/IP, and network application protocols such as DNS, HTTP, etc.

Linux OS and command line knowledge/experience is recommended.

Basic knowledge of Windows operations and investigation artifacts is recommended.

Basic network and host intrusion analysis knowledge/experience is recommended.

Attendance at a previous Security Onion 2 Fundamentals for Analysts and Administrators class is recommended.

What's the cancellation policy?

Security Onion Solutions reserves the right to cancel this class up to one day after registration closes if the class does not meet a minimum number of students. If class is canceled, the training ticket cost will be refunded.

What's the refund policy?

You may log into your Eventbrite account to request a refund up until the last day of ticket sales. Note that the Eventbrite fees of $292.06 are not refundable unless you are refunded due to class cancellation. Please use the "Request a Refund" button as shown here: https://www.eventbrite.com/support/articles/en_US/How_To/can-i-get-a-refund

Are there discounts available?

For this course, we are offering a discount to active duty US military and active US Federal employees. Contact us for more information.

Does the class prepare students to pass the Security Onion Certified Professional (SOCP) exam?

This class is not intended to be a certification prep class.

What topics are covered in this class?

Note: Syllabus is subject to change

  • Advanced deployment architecture and configurations
  • Administration, Optimization, and Troubleshooting
    + Managing Security Onion firewalls
  • Detection Engineering
    + Detection Engineering overview
    + Developing detections with Sigma
    + Filling detection gaps with Zeek
    --- Implementing new Zeek scripts
    --- Managing Zeek file extraction
    + Filling detection gaps with Suricata
    --- Adding custom NIDS rules
    --- Using Suricata to generate network metadata
    --- Managing Suricata file extraction
    --- Filtering network metadata
    + Writing and Implementing custom YARA rules in Strelka
    + Elastic Stack
    --- Creating custom Elastic ingest pipelines
    --- Installing and managing Elastic Agents
    --- Adding and configuring integrations in Elastic Fleet
    --- Building and implementing osquery query packs
    --- Host baselining and anomaly detection using osquery
    + Configuring Security Onion Intrusion Detection Honeypot (IDH) Nodes
  • Security Onion Console (SOC) customizations
    + Saving custom Hunt and Dashboard queries
    + Customizing Cases
    + Adding custom pivots to the SOC context menu
  • Using the Elasticsearch API
    + Querying and filtering Elasticsearch data from the command line
  • Many hands-on labs and case studies
  • Wrap-up/Q&A
Advertisement

Where is it happening?

IntelliGenesis LLC, 6950 Columbia Gateway Drive, Columbia, United States

Event Location & Nearby Stays:

Tickets

USD 4398.00

Security Onion Solutions LLC

Host or Publisher Security Onion Solutions LLC

It's more fun with friends. Share with friends

Discover More Events in Columbia

Rainbow Kitten Surprise - Thanks For Coming Tour
Fri, 25 Jul, 2025 at 06:00 pm Rainbow Kitten Surprise - Thanks For Coming Tour

The Chrysalis At Merriweather Park

Rainbow Kitten Surprise at Chrysalis-Merriweather Park at Symphony Woods
Fri, 25 Jul, 2025 at 08:00 pm Rainbow Kitten Surprise at Chrysalis-Merriweather Park at Symphony Woods

Chrysalis-Merriweather Park at Symphony Woods

CALENDAR
Rainbow Kitten Surprise
Sat, 26 Jul, 2025 at 12:00 am Rainbow Kitten Surprise

The Chrysalis at Merriweather Park

TRIPS-ADVENTURES
Lamkin3 Entertainment Salutes the Golden Years Of Hip-Hop
Sat, 26 Jul, 2025 at 08:00 pm Lamkin3 Entertainment Salutes the Golden Years Of Hip-Hop

The Collective - Encore

DANCE ENTERTAINMENT
Free Notary Training: Six Step Attorney Prospecting Plan - Columbia MD
Sun, 25 Aug, 2024 at 11:00 am Free Notary Training: Six Step Attorney Prospecting Plan - Columbia MD

Virtual via Zoom

WORKSHOPS VIRTUAL
Resume Review & Critique Workshop
Wed, 05 Mar, 2025 at 12:30 pm Resume Review & Critique Workshop

Columbia Workforce Center

WORKSHOPS
POUND Fitness Class Spring Rockout Session 2025
Mon, 10 Mar, 2025 at 04:30 pm POUND Fitness Class Spring Rockout Session 2025

Clarksville Commons Shopping Center

WORKSHOPS HEALTH-WELLNESS
Invest & Grow: DSCR Loan Seminar with Peace of Mind Property Management
Wed, 12 Mar, 2025 at 05:00 pm Invest & Grow: DSCR Loan Seminar with Peace of Mind Property Management

Reckless Shepherd Brewing Co.

WORKSHOPS
New Blooms- Beginners Yoga Series
Sat, 05 Apr, 2025 at 12:00 pm New Blooms- Beginners Yoga Series

Blossom and Grow Wellness Center

HEALTH-WELLNESS WORKSHOPS
Mastering Stress: Techniques for a Healthier Life
Mon, 14 Apr, 2025 at 10:30 am Mastering Stress: Techniques for a Healthier Life

10375 Little Patuxent Pkwy

WORKSHOPS
Outdoor POUND Fitness Class - 4\/14
Mon, 14 Apr, 2025 at 04:30 pm Outdoor POUND Fitness Class - 4/14

Clarksville Commons Shopping Center

WORKSHOPS HEALTH-WELLNESS
Mastering the Teleprompter: Elevate Your Professional Video Presence
Thu, 17 Apr, 2025 at 11:00 am Mastering the Teleprompter: Elevate Your Professional Video Presence

Maryland Innovation Center

WORKSHOPS BUSINESS
Professional Actor Audition & Improv Workshop
Fri, 18 Apr, 2025 at 05:00 pm Professional Actor Audition & Improv Workshop

Maryland Innovation Center (MIC), Columbia Gateway Drive, Columbia, MD, USA

ART THEATRE
FREE First Time Homebuyer Seminar
Sat, 19 Apr, 2025 at 11:00 am FREE First Time Homebuyer Seminar

9256 Bendix Rd suite 208

WORKSHOPS
McArthur Realty Group 1st Time Homebuyers Seminar
Sat, 19 Apr, 2025 at 11:00 am McArthur Realty Group 1st Time Homebuyers Seminar

9256 Bendix Rd

WORKSHOPS BRUNCH
(First)  time home-buyer seminar
Sat, 19 Apr, 2025 at 11:00 am (First) time home-buyer seminar

McArthur Realty Group

WORKSHOPS CALENDAR
Vermicomposting Workshop
Sat, 19 Apr, 2025 at 11:00 am Vermicomposting Workshop

CEI's Freetown Farm

WORKSHOPS
Ovation Dinner Theatre Presents...80s Rewind: A Comedy M**der Mystery
Sat, 19 Apr, 2025 at 08:00 pm Ovation Dinner Theatre Presents...80s Rewind: A Comedy M**der Mystery

The Collective - Encore

ART THEATRE
Easter Sunday Fun Day
Sun, 20 Apr, 2025 at 01:00 pm Easter Sunday Fun Day

6520 Martin Rd

EASTER-SUNDAY EASTER
Candle & Sip Class
Tue, 22 Apr, 2025 at 07:00 pm Candle & Sip Class

Oversea Distillery and Bar

MUSIC WORKSHOPS

What's Happening Next in Columbia?

Discover Columbia Events