Dashboard

Welcome back, John

Your investigation activity, scoring, and ATT&CK mastery across the Contoso Global SOC training environment.

Active investigations
12
4 new today
Open cases
8
2 critical
Investigation score
92%
Top 10% of cohort
MITRE ATT&CK coverage
76%
3 new techniques this week
Investigation accuracy
89%
Above cohort average
Evidence collection rate
91%
+6% this month

Investigation performance

Started Completed Avg. scoreFeb – Aug
Investigations started
47
Completed
44
Average score
92%
Time to resolution
34 min

MITRE ATT&CK mastery

76% overall
Initial Access
82%
9/11 techniques
Execution
88%
11/13 techniques
Persistence
64%
12/19 techniques
Privilege Escalation
71%
9/13 techniques
Defense Evasion
66%
27/42 techniques
Credential Access
91%
15/17 techniques
Discovery
74%
22/31 techniques
Lateral Movement
68%
6/9 techniques
Collection
59%
10/17 techniques
Exfiltration
63%
6/9 techniques
Impact
72%
10/14 techniques

Recent investigations

View queue
INV-3182Impossible Travel Investigationhigh
User: kate.morgan@contoso.com · T1078 — Valid Accounts
62% complete
In Progress
4m ago
INV-3181Business Email Compromisecritical
Mailbox: finance@contoso.com · T1114.002 — Remote Email Collection
88% complete
Awaiting Conclusion
22m ago
INV-3180Password Spraying Campaignhigh
Affected users: 18 accounts · T1110.003 — Password Spraying
45% complete
Investigating
1h ago
INV-3179Suspicious OAuth Consentmedium
Application: Contoso Reports · T1528 — Steal App Access Token
12% complete
Open
2h ago
INV-3178Lateral Movement via Admin Sharecritical
Device: FIN-DESK-22 · T1021.002 — SMB Admin Shares
34% complete
Investigating
3h ago
INV-3177Data Exfiltration to Cloud Accounthigh
User: sarah.chen@contoso.com · T1537 — Transfer Data to Cloud
100% complete
Graded · 94%
yesterday

Assigned scenarios

Library
BEC InvestigationAdvanced
88% · 45 minScore 94%
Ransomware ContainmentExpert
34% · 90 minNot graded
Insider Threat CaseIntermediate
100% · 40 minScore 88%
Data Exfiltration InvestigationAdvanced
61% · 60 minNot graded
MFA Fatigue AttackIntermediate
12% · 30 minNot graded
Privileged Account AbuseAdvanced
0% · 55 minNot graded

Cohort leaderboard

Elena Rossi
9,820
148 investigations
2
Marcus Chen
9,414
141 investigations
3
Priya Nair
8,977
133 investigations
4
Yusuf Demir
8,541
129 investigations
5
Amelia Ward
8,102
121 investigations

Skill tracks & certificates

SOC Analyst Track74%
Threat Hunter Track42%
Incident Responder Track88%
Recent certificates
ThreatLens Certified Analyst — L2Jun 24
Identity Attack InvestigationJun 12
Endpoint Forensics FundamentalsMay 30

Case checklist

On INV-3181 you have collected 7 of 9 required artifacts. The message trace and the inbox rule created after sign-in are still missing — both are needed to justify a BEC conclusion under T1114.002.