root@thehacksparrow:~/writeups$ SYSTEM ONLINE
root@sparrow:~/writeups$ cat defensive-security-intro.md
// Blue Team & SOC

Defensive Security Intro

5 Feb 2024 · 6 min read · user access
This room introduces the fundamentals of defensive security (Blue Team operations): protecting and monitoring networks and systems. It walks through the role of the SOC, digital forensics (DFIR), incident response, and SIEM tooling, and closes with a hands-on exercise that simulates a SOC analyst's job to identify and respond to a security alert.
PlatformTryHackMe
CategoryBlue Team & SOC
DifficultyEasy
RoomIntro to Defensive Security

Task 1 — Introduction to Defensive Security

Offensive security is about breaking into systems; defensive security is the opposite: preventing intrusions and, when they happen, detecting and responding to them. This is the work of the Blue Team, responsible for protecting, detecting, and responding to threats within an organization.

Q: Which team focuses on defensive security?
A: Blue Team

🔒 Free account required

This is USER ACCESS content — free to unlock, no payment. The rest of the write-up (and everything else at this level) opens up once you're signed in.

Create a free account