Skip to main content
Cybersecurity ops

Cyber Threat Analyst

Cyber Threat Analyst. Review available formats, prerequisites, current inclusions and certification terms before booking.

PECBLead5 daysLiveSelf-pacedIn-house
  • Practitioner-led, taught by a working CISO
Christophe Mazzola

Taught by

Christophe Mazzola

Practicing CISO · Founder of Cyber Academy

See full profile →

Right fit if you are.

  • Incident responders and SOC professionals seeking to deepen their threat analysis capabilities
  • IT professionals responsible for securing and managing organizational infrastructure
  • Security managers and directors shaping an organization's security strategy
  • Penetration testers and ethical hackers wanting current threat intelligence and defensive techniques
  • Risk management, compliance, and governance professionals with a cybersecurity remit
  • Aspiring cybersecurity professionals building foundational skills in threat analysis

NOT for. When to skip it.

We'd rather you keep your money than buy the wrong path.

  • Individuals with no prior exposure to cybersecurity concepts, as baseline knowledge is expected before the course begins
  • Professionals seeking a course focused solely on compliance or policy rather than hands-on threat analysis and hunting
  • Those looking for an entry-level security awareness programme with no operational component

What you'll be able to do

  • 1Categorize diverse cyber threat types and assess their potential impact on organizational security
  • 2Construct incident response plans that enable effective management and mitigation of security breaches
  • 3Apply advanced threat hunting techniques and tools to proactively identify threats within a network environment
  • 4Formulate and validate threat hunting hypotheses using data-driven methodologies
  • 5Design and implement a structured threat hunting program within an organization
  • 6Evaluate information security controls and change management processes in the context of ongoing threat operations
  • 7Build a cybersecurity culture that supports sustained threat awareness and continual program improvement
  • 8Measure and report on threat hunting program performance to drive ongoing refinement

Day by day

Day 1Fundamentals of Cyber Threat Analysis and Threat Hunting Frameworks
  • Cyber Threat Landscape and Threat Typology

    This module introduces the categories of cyber threats organizations face, explaining their characteristics and the potential consequences for security posture.

  • Threat Hunting Frameworks and Methodologies

    Participants explore established threat hunting frameworks and learn how structured methodologies guide the systematic search for adversarial activity.

By end of day

  • Categorize threat types and explain their potential organizational impact
  • Select an appropriate threat hunting framework for a given operational context
Day 2Prepare and Execute Phases of a Threat Hunting Program and Incident Management Plan
  • Preparation Phase of Threat Hunting

    This module covers the planning activities required before a hunt begins, including scoping, tool selection, and defining success criteria.

  • Execution Phase and Incident Management Plan Development

    Participants learn how to carry out a threat hunt in practice and how to integrate findings into a broader incident management plan.

By end of day

  • Develop a preparation checklist for launching a structured threat hunt
  • Draft an incident management plan aligned with identified threat scenarios
Day 3Analyze and Knowledge Phases of the Threat Hunting Framework
  • Data Analysis Techniques for Threat Hunting

    This module examines analytical approaches used to interpret collected data and identify indicators of compromise or adversarial behavior.

  • Knowledge Management and Hypothesis Validation

    Participants apply data-driven methods to formulate, test, and validate threat hunting hypotheses, converting findings into actionable intelligence.

By end of day

  • Apply analytical techniques to interpret threat data and surface actionable findings
  • Validate a threat hunting hypothesis using evidence gathered during the hunt
Day 4Building a Cybersecurity Culture, Monitoring and Measurement, and Continual Improvement
  • Operational Security Controls and Change Management

    This module addresses how information security controls and change management processes support the operational effectiveness of a threat hunting program.

  • Cybersecurity Culture Development

    Participants learn strategies for embedding threat awareness across an organization so that cybersecurity becomes a shared responsibility.

  • Monitoring, Measurement, and Program Improvement

    This module introduces metrics and review processes that help teams track program performance and identify opportunities for continual improvement.

By end of day

  • Design a monitoring and measurement approach for evaluating threat hunting program effectiveness
  • Identify actions that promote a sustained cybersecurity culture within an organization
Day 5Review and Certification Exam Preparation
  • Comprehensive Course Review

    This module revisits the five competency domains covered across the week, reinforcing key concepts and addressing participant questions before the exam.

  • Exam Competency Domain Walkthrough

    Participants review the structure of the PECB Certified Cyber Threat Analyst exam domains to understand how course content maps to assessed competencies.

By end of day

  • Consolidate knowledge across all five programme domains in preparation for formal assessment
  • Identify personal knowledge gaps and targeted review areas before sitting the exam

Upcoming public sessions

Open-enrolment cohorts. Pick a date and book your seat. Want a private cohort for your team instead? Request an in-house quote.

No confirmed live cohort right now. You can still:

Everything inside this certification

The detail behind the headline. Read at your own pace. Each section answers a buyer question we get on discovery calls.

  • Domain 1: Fundamental concepts of cyber threat analyst and threat hunting
  • Domain 2: Preparation and execution phase of threat hunting programs and incident management plans
  • Domain 3: Analysis and knowledge phase of threat hunting frameworks
  • Domain 4: Operational aspects of information security controls, incident management, and change management
  • Domain 5: Building a cybersecurity culture, monitoring and measurement, and continual improvement

The requirements for PECB Certified Cyber Threat Analyst certifications are as follows:

  • Certification and examination fees are included in the price of the training course.
  • Participants will be provided with training course materials containing over 400 pages of information, practical examples, exercises, and quizzes.
  • An attestation of course completion worth 31 CPD (Continuing Professional Development) credits will be issued to the participants who have attended the training course.
  • Candidates who have completed the training course but failed the exam are eligible to retake the exam once for free within a 12 month period from the initial date of the exam.

Educational approach

  • The training course incorporates interactive elements, such as multiple-choice quizzes and exercises
  • Participants are strongly encouraged to communicate and engage in discussions and the completion of quizzes and exercises.
  • Practical exercises and hands-on labs designed to reinforce the theoretical knowledge gained and provide opportunities for role-playing and collaborative discourses
  • The quizzes are designed in a manner that closely resembles the format of the certification exam

Building Digital Trust through Cyber Threat Analysis

digital trust

Buyers always ask

What level of cybersecurity experience should I have before attending this course?+

The course requires a fundamental understanding of cybersecurity principles and concepts. This means participants should be comfortable with basic security terminology, threat concepts, and general IT security practices before attending.

The course is not designed to build from zero. Individuals who are entirely new to cybersecurity may find the pace and technical depth challenging without some prior exposure.

Is the certification exam included with this course?+

Exam inclusion depends on the delivery format and commercial option selected. Check the booking summary or ask Cyber Academy for written confirmation before registering.

Completing the training, passing the applicable exam, and meeting the PECB credential requirements are separate steps.

What competency domains does the PECB Cyber Threat Analyst exam cover?+

The exam is organized around five domains: fundamental concepts of cyber threat analysis and threat hunting; preparation and execution phases of threat hunting programs and incident management plans; analysis and knowledge phases of threat hunting frameworks; operational aspects of information security controls, incident management, and change management; and building a cybersecurity culture, monitoring, measurement, and continual improvement.

For exam format, available languages, and scheduling details, refer to the official PECB List of Exams and Examination Rules and Policies.

Is this course useful for someone who currently works in a SOC but has not done formal threat hunting?+

Yes. SOC analysts and incident responders are among the primary intended audiences. The course moves from foundational threat analysis concepts into structured threat hunting program design, making it well suited for practitioners who handle reactive work and want to develop more proactive threat detection capabilities.

Does the programme address soft skills such as communication and organizational culture alongside technical content?+

Day four specifically addresses building a cybersecurity culture and driving continual improvement, recognizing that technical controls alone are insufficient without organizational buy-in. Participants learn strategies for embedding threat awareness across teams and communicating program value to stakeholders.

Ready to get certified?

Taught by a practicing CISO. Prices and exam terms shown up front.