Threat Intelligence Lab

Defend your infrastructure with intelligence.

Your trusted Threat Intelligence partner

Manticore Manticore Close Up
122
Exams passed
386
Students
Services

Practical support from learning plan to outcome.

Elevate your security posture with our tailored threat intelligence solutions.

Threat Hunting

AI Automation

Streamline your workflows and security operations with intelligent automation.

Threat Hunting

Proactive identification and mitigation of advanced persistent threats within your network.

Incident Response

Rapid analysis, containment, and eradication of active security breaches.

Vulnerability Assessments

Comprehensive evaluation of your infrastructure to identify and prioritize security weaknesses.

Security Training

Empower your team with hands-on training against the latest cyber threats.

TIL Teams

Build security capability you can see.

Give SOC, CTI and security teams one place for guided learning, practical assessments and a clear view of progress and skill gaps.

  • Guide developmentCreate learning paths and schedule assignments.
  • Track progressSee completion and compare assessment outcomes.
  • Focus supportUse competency matrices to find knowledge gaps.

€19.00 per seat/month excluding VAT, with a 5-seat minimum. €114.95/month including 21% VAT for 5 seats.

A team of white Manticores overlooking a city
One team workspaceLearning · Assessments · Skills · Reports
Learning Path

Expand your expertise.

Dive into our comprehensive courses designed to build your knowledge.

Deception Engineering and High-Confidence SignalsEVIDENCE connects to UNDERSTANDING. The course carries one line of reasoning from observation to a bounded claim.Deception Engineering and High-Confidence SignalsEVIDENCEUNDERSTANDINGThe course carries one line of reasoning from observation to a bounded claim.
advanced Detection Engineering

Deception Engineering and High-Confidence Signals

Learn how decoys create controlled security claims, why a rare trigger still needs context, and how deception can produce defensible learning without becoming theatre.

3 Modules View Course →
OT and Cyber-Physical Detection EngineeringEVIDENCE connects to UNDERSTANDING. The course carries one line of reasoning from observation to a bounded claim.OT and Cyber-Physical Detection EngineeringEVIDENCEUNDERSTANDINGThe course carries one line of reasoning from observation to a bounded claim.
advanced Detection Engineering

OT and Cyber-Physical Detection Engineering

Reason about detection in operational technology by starting with physical consequence, operating mode, engineering authority, and the safety limits of evidence and response.

3 Modules View Course →
Detection Engineering for AI and Agentic SystemsEVIDENCE connects to UNDERSTANDING. The course carries one line of reasoning from observation to a bounded claim.Detection Engineering for AI and Agentic SystemsEVIDENCEUNDERSTANDINGThe course carries one line of reasoning from observation to a bounded claim.
advanced Detection Engineering

Detection Engineering for AI and Agentic Systems

Understand how identity, delegated authority, tool use, memory, and data movement create evidence in AI systems that can act on a user's behalf.

3 Modules View Course →
Exam

Assess your knowledge.

Test your knowledge with structured assessments designed to support practical learning.

Detection Engineering Evidence ChainA security question moves through telemetry, analytical reasoning, validation, and operational delivery before supporting a bounded defensive decision.Detection Engineering Evidence ChainSECURITYQUESTIONBOUNDEDEVIDENCEVALIDATEDANALYTICDEFENSIBLEDECISIONFacts remain distinct from assessments, assumptions, and uncertainty.
60 min 24 questions 24 points

Detection Engineering: Evidence, Analytics, and Operations Assessment

Test whether you can reason across the complete detection engineering lifecycle. The assessment covers requirements, hypotheses, telemetry semantics, ATT&CK interpretation, analytic design, validation, health monitoring, alert operations, portable content, cloud and identity systems, endpoint and network evidence, software supply chains, AI agents, deception, and cyber-physical environments.

45 min 8 questions 8 points

Cloud Security Foundations: Applied Decisions Exam

Assess practical cloud-security judgment across responsibility, boundaries, configuration, telemetry, resilience, workload runtime, SaaS governance, and connected applications.

Cloud security decisions connect prevention, evidence, and recoveryA cloud workload is surrounded by eight connected assessment areas from responsibility through SaaS governance.CLOUDsecurity decisionsRESPONSIBILITYBOUNDARIESCONFIGURATIONTELEMETRYRESILIENCEWORKLOADSSAAS TENANTINTEGRATIONS
Trusted release decisions span the full software supply chainA chain of eight checkpoints connects source, inventory, dependencies, build, evidence, response, developer environments, and adoption.Assess the choices that make a release trustworthySOURCEMODELINVENTORYDEPENDSAFELYBUILDIDENTITYEVIDENCERESPONDDEVELOPADOPTNo single artifact or tool proves the whole chain is safe.
45 min 8 questions 8 points

Software Supply Chain Security Foundations: Trusted Release Exam

Assess practical software supply-chain decisions from component inventory and dependency acquisition to build integrity, response, developer environments, and adoption.

Top Performers

Global Leaderboard

See how you stack up against the best.

Rank User Exams Passed Total Score
👑 1st Ayukotsu 10 72
🥈 2nd Bruno Lobo 10 64
🥉 3rd Johannes Schönborn 9 54
#4 Craig Watt 5 50
#5 Shaheer Ul Islam 2 14