Defense & Security Operations
Intermediate Online
Available now
eCTHP — Threat Hunting
INEInternationally recognized accreditation body
🧪
Hands-on trainingReal-world labs & simulations
🏅
Internationally accreditedBy global bodies
📝
International examOfficially recognized certificate
🎯
Job-market readyIn-demand skills
About the certification
🛡️ Start your career in advanced Threat Hunting with INE's eCTHP certification
The eCTHP (Certified Threat Hunting Professional) certification is an advanced professional certification in the field of Threat Hunting, and focuses on developing threat detection skills within real corporate environments by analyzing networks, systems, and security data in a fully practical manner.
Following the official INE curriculum, the certification is designed to measure your ability to think like a threat analyst and not just use tools.
Certification content & modules
🧭Threat Hunting Methodology (10–15%)
- Apply security hunting methodologies
- Use frameworks such as MITRE ATT&CK and Cyber Kill Chain
- Assess the maturity of security hunting environments within organizations
🎯Threat Hunting Strategies (10–15%)
- Analyze the methods of potential attackers
- Building hypotheses-driven hunting.
- Choosing the best hunting techniques according to the security context
🧠Cyber Threat Intelligence (10–15%)
- Using Threat Intelligence (CTI) sources
- Analyze and evaluate indicators of compromise (IOCs)
- Understand and share threat information effectively
🌐Network Threat Hunting (25–30%)
- Analyze network traffic and detect suspicious activities
- Use Wireshark and tcpdump
- Packet Analysis to detect attacks
💻Endpoint Threat Hunting (30–40%)
- Analyze Windows and Linux logs and systems
- Use SIEM tools like Splunk and ELK
- Detect suspicious operations and movement within the network
- Tracking attacks across the stages of the Cyber Kill Chain
👨💻Who is this certificate for?
- SOC Analysts
- Threat Hunters
- Cybersecurity Engineers
- Incident Responders
- Security Analysts
- Those wishing to move to a professional level in the Blue Team
What you'll learn
- Network packet/traffic analysis
- Memory analysis/digital forensics
- Enrich and connect data
- Scan for threats using indicators of compromise
Quick details
LevelIntermediate
Delivery MethodOnline
Official certificate information
🎟️
Voucher validity
180 days from the date of purchase (regular voucher)
🔁
Exam retake
One free retake is included upon failure, to be performed within 14 days, and within the validity of the voucher (180 days).
📅
Certificate validity
3 years from the date of grant (renewable)