OffSec

Foundational Threat Hunting (OSTH)

TH-200

Offsec TH-200 Badge

Foundational Threat Hunting (OSTH)

TH-200 is a foundational threat hunting course designed to equip individuals with essential skills for proactively detecting and investigating cyber threats. This course focuses on behavioral analysis, threat actor profiling, and the use of network and endpoint indicators. Learners will gain proficiency in using common tools like CrowdStrike Falcon and Splunk to identify Indicators of Compromise (IoCs) and respond to threats. Upon passing the exam, learners can earn the OffSec Threat Hunter (OSTH) certification.

Training at a glance

Level

Beginner

Duration

5 Days

Experience

Basic Networking

Average Salary

$84,347

Labs

Yes

Level

Intermediate

Duration

5 Days

Experience

2 years: Pentesting

Average Salary

$123,486

Labs

Yes

Training Details

OffSec’s Foundational Threat Hunting (TH-200) equips cybersecurity professionals with the practical skills and knowledge needed to effectively detect and respond to threats. This course covers core threat hunting concepts, exploring the methodologies used by enterprises to track and mitigate adversaries. Key areas include understanding the threat actor landscape, with a focus on ransomware and Advanced Persistent Threats (APTs) and utilizing both network and endpoint Indicators of Compromise (IoCs) for proactive threat detection.

Upon successfully completing the rigorous hands-on exam, participants earn the OSTH – OffSec’s threat hunting certification. This credential demonstrates proficiency in foundational threat hunting practices, positioning certified professionals as valuable assets for roles in threat hunting, SOC analysis, and incident response teams.

The TH-200 course is designed for individuals looking to build a strong foundation in threat hunting.

It’s ideal for:

  • Security Operations Center (SOC) analysts
  • IT security specialists
  • Professionals aiming to transition into specialized cybersecurity roles
  • Module 1: Threat Hunting Concepts and Practices

  • Module 2: Threat Actor Landscape Overview

  • Module 3: Communication and Reporting for Threat Hunters

  • Module 4: Hunting with Network Data

  • Module 5: Hunting on Endpoints

  • Module 6: Threat Hunting without IoCs

While there are no formal prerequisites, it’s strongly recommended that you have:

  • A solid foundation in TCP/IP networking
  • Familiarity with Linux and Windows operating systems
  • Basic understanding of cybersecurity concepts

All of the above can be found in the OffSec Security Operations Essentials Learning Path, available in Learn Enterprise, Learn Unlimited, Learn One, Learn Fundamentals or a Course & Certification Bundle.

Instructor Led Training Immersive – 5 Day Immersive – $6,495

  • Instructor Led Training with Expert OffSec Certified Instructors
  • 5 Weeks of Guided Self Study Pre-Work
  • 5 Day Immersive Live Training
  • Six (6) follow on Online Live Mentoring sessions
  • OffSec Learn One PEN-200 Course License
  • 365 Days of Lab Access
  • Two (2) exam attempts
  • 1 Year of unlimited access to all OffSec Fundamental and Curated course content
  • PEN-103 + 1 KLCP exam attempt
  • PEN-210 + OSWP exam attempt
  • Proving Grounds Practice Labs
  • Downloadable Course material

OR

Instructor Led Training Immersive – 10 Day Immersive – $7,995

  • Instructor Led Training with Expert OffSec Certified Instructors
  • 5 Weeks of Guided Self Study Pre-Work
  • 10 Day Immersive Live Training
  • Six (6) follow on Online Live Mentoring sessions
  • OffSec Learn One PEN-200 Course License
  • 365 Days of Lab Access
  • Two (2) exam attempts
  • 1 Year of unlimited access to all OffSec Fundamental and Curated course content
  • PEN-103 + 1 KLCP exam attempt
  • PEN-210 + OSWP exam attempt
  • Proving Grounds Practice Labs
  • Downloadable Course material

OR

Course & Cert Exam Bundle – $1,649

  • One course
  • 90 days of lab access
  • One exam attempt

Upcoming Classes

PROUD OFFSEC PARTNERSHIP

We are proud to be an OffSec Learning, Government, and Channel Partner. We pride
ourselves on providing award winning boot camps and direct mentoring in our classrooms,
Online Live or at your location. The only immersive Authorized Instructor-Led OffSec
training available – join us today!

We Offer More Than Just OffSec Training

Our successful training results keep our corporate and military clients returning.
That’s because we provide everything you need to succeed. This is true for all of our courses.

Strategic Planning & Project Management

From Lean Six Sigma to Project Management Institute Project Management Professional, Agile and SCRUM, we offer the best-in-class strategic planning and project management training available. Work closely with our seasoned multi-decade project managers.

IT & Cybersecurity

ATA is the leading OffSec and Hack the Box US training provider, and a CompTIA and EC-Council award-winning training partner. We offer the best offensive and defensive cyber training to keep your team ahead of the technology skills curve.

Leadership & Management

Let us teach your team the high-level traits and micro-level tools & strategies of effective 21st-century leadership. Empower your team to play to each others’ strengths, inspire others and build a culture that values communication, authenticity, and community.

From Lean Six Sigma to Project Management Institute Project Management Professional, Agile and SCRUM, we offer the best-in-class strategic planning and project management training available. Work closely with our seasoned multi-decade project managers.
ATA is the leading OffSec and Hack the Box US training provider, and a CompTIA and EC-Council award-winning training partner. We offer the best offensive and defensive cyber training to keep your team ahead of the technology skills curve.
Let us teach your team the high-level traits and micro-level tools & strategies of effective 21st-century leadership. Empower your team to play to each others’ strengths, inspire others and build a culture that values communication, authenticity, and community.