// select your role
Blue Team Learning Platform
Hands-on, role-based training for the modern blue team — detection engineers, SOC analysts, threat hunters, incident responders, and CTI analysts. All progress saved locally — no account required.
> choose your track
5 blue-team roles · start anywhereSOC Analyst
Triage alerts, investigate incidents, and escalate confirmed threats.
Explore →Detection Engineer
Build and tune detection rules across SIEM, EDR, and log analytics platforms.
Explore →Threat Hunter
Proactively search for hidden adversaries using hypothesis-driven analysis.
Explore →Incident Responder
Contain, eradicate, and recover from security incidents at speed.
Explore →CTI Analyst
Produce intelligence that drives detection, hunting, and incident response decisions.
Explore →// read & learn
Threat Detection Labs Blog
Detection engineering write-ups, SIGMA rules, MITRE ATT&CK breakdowns, and more — from the same team.