Security Onion Analysts & Threat Hunters Colorado Springs - Apr 21-24, 2026

Tue, 21 Apr, 2026 at 08:00 am to Fri, 24 Apr, 2026 at 05:00 pm UTC-06:00

5420 New Car Dr | Colorado Springs

Security Onion Solutions LLC
Publisher/HostSecurity Onion Solutions LLC
Security Onion Analysts & Threat Hunters Colorado Springs - Apr 21-24, 2026
Advertisement
Learn core analyst techniques and how to apply them with Security Onion in this 4-day course, April 21-24, 2026.
About this Event

About Security Onion

Security Onion is a free and open platform built by defenders for defenders. It includes network visibility, host visibility, intrusion detection honeypots, log management, and case management. Security Onion has been downloaded over 2.5 million times and is being used by security teams around the world to monitor and defend their enterprises. Our easy-to-use Setup wizard allows you to build a distributed grid for your enterprise in minutes!

For more about Security Onion, please see https://securityonion.com

About the Course

Security Onion Fundamentals for Analysts and Threat Hunters is a hands-on course geared for security analysts and threat hunters using the Security Onion platform. Students will learn core analyst techniques and how to apply them using real-world case studies covering major analyst workflows, with very light coverage of administrative tasks in the platform.

What is included in the price of this class?

  • 4 full days of class instruction from the developers of Security Onion
  • 300+ pages of course material
  • Certificate of Completion
  • Laptop to use during class time

When is the class?

Tuesday, April 21, 2026 through Friday, April 24, 2026

8-hour class (with a one hour lunch on your own) from 8:00 AM - 5:00 PM (Mountain Time) each day

When does registration close?

Registration closes April 2, 2026, at 11:59 PM Eastern

Where is the class being held?

The class will be held at Staybridge Suites NE Powers, 5420 New Car Drive, Colorado Springs, CO 80923

Is there parking at the training venue?

There is free parking at the training venue.

What hardware, etc. will be required for the class?

Security Onion Solutions will provide laptops for use during the course.

Which version of Security Onion will we be using?

We'll be using the latest Security Onion 2.4 release as of March 23, 2026.

You don't need it for the class, but the latest stable release can be found here: https://securityonion.net/download

What skills/knowledge should students have before attending this course?

Students should attend the free 2-hour Security Onion Essentials course before the first day of class. One topic covered by this course is building a Security Onion VM. Note that students do not need to build a Security Onion VM for this class. We will be using virtual machines on the class laptops provided by Security Onion Solutions.

Students should have a basic understanding of networks, TCP/IP, and standard protocols such as DNS, HTTP, etc. Some Linux knowledge/experience is recommended, but not required.

What's the cancellation policy?

Security Onion Solutions reserves the right to cancel this class up to one day after registration closes if the class does not meet a minimum number of students. If class is canceled, the training ticket cost will be refunded.

What's the refund policy?

You may log into your Eventbrite account to request a refund up until the last day of ticket sales. Note that the Eventbrite fees of $252.46 are not refundable unless you are refunded due to class cancellation. Please use the "Request a Refund" button as shown here: https://www.eventbrite.com/support/articles/en_US/How_To/can-i-get-a-refund

What if my organization would like to use a purchase order?

Please contact us for further details.

What if my organization is exempt from sales tax in Colorado?

Please contact us for further details.

Are there discounts available?

For this course, we are offering a discount to active duty US military and active US Federal employees. Contact us for more information.

Does the class prepare students to pass the Security Onion Certified Professional (SOCP) exam?

In this class, students will use the interfaces in Security Onion to hunt for and respond to alerts on malicious activity. It is not intended to be a certification prep class.

What topics are covered in this class?

Note: Syllabus is subject to change

  • Security Onion Console Overview
  • Security Onion Grid Architecture
  • Basic Administrative Tasks
    + Manage User Accounts
    + Validate Grid Health
  • Crucial Network Protocols and Host-Based Datasets (HTTP, SSL, DNS, Windows, Sysmon, etc.)
  • Correlate Network and Host Data with Security Onion Console
  • Discuss SOC Analyst Methodologies
    + Key Elements of the Security Event Management Process
    + Incident Escalation and Resolution
    + Understanding the Analysis & Investigation Process
    + Leveraging the MITRE ATT&CK Framework to Improve Threat Hunting
  • Security Onion Analyst Workflows
    + Alert Triage & Case Creation with Alerts and Cases
    + Threat Hunting with Hunt and Dashboards
    + Detection Engineering
  • Searching for Data in Security Onion
    + Lucene
    + Onion Query Language (OQL)
  • Analyst Techniques
    + Analyzing and Reconstructing Obfuscated Executables from Packets
    + Finding Malicious Activity in Encrypted Traffic
    + Detecting Hostile DNS Traffic (DNS tunneling, C2 over DNS, etc.)
    + Tracking Adversary Activity Using Process Command Lines
    + Identifying Anomalies Utilizing Network and Host Baselines
  • Examining Data with CyberChef
  • Visualizing Enterprise Data
  • Capstone Capture the Flag Event
  • Multiple Labs and Case Studies
Advertisement

Event Venue & Nearby Stays

5420 New Car Dr, 5420 New Car Drive, Colorado Springs, United States

Tickets

USD 3798.00

Icon
Concerts, fests, parties, meetups - all the happenings, one place.

Ask AI if this event suits you:

More Events in Colorado Springs

Slomosa - Breaking Ice Tour 2026 - CO Springs
Mon, 20 Apr at 07:00 pm Slomosa - Breaking Ice Tour 2026 - CO Springs

2106 E Platte Ave, Colorado Springs, CO, United States, Colorado 80909

Slomosa at Black Sheep
Mon, 20 Apr at 08:00 pm Slomosa at Black Sheep

Black Sheep

Slomosa
Tue, 21 Apr at 02:00 am Slomosa

Black Sheep

Passport to Italy - April Wine Club Night
Tue, 21 Apr at 07:00 pm Passport to Italy - April Wine Club Night

7715 Dublin Blvd Unit 160, Colorado Springs, CO, United States, Colorado 80923

Devotchka
Wed, 22 Apr at 05:00 pm Devotchka

Black Sheep

Sand Creek Zone Partners Meeting
Wed, 22 Apr at 05:30 pm Sand Creek Zone Partners Meeting

Sand Creek High School

Snow Tha Product
Thu, 23 Apr at 05:00 pm Snow Tha Product

Sunshine Studios - CO

DeVotchKa in Colorado Springs
Thu, 23 Apr at 07:00 pm DeVotchKa in Colorado Springs

Black Sheep

DeVotchKa in Colorado Springs
Thu, 23 Apr at 07:00 pm DeVotchKa in Colorado Springs

Black Sheep

Colorado Springs is Happening!

Never miss your favorite happenings again!

Explore Colorado Springs Events