MFE-IT

Claroty CTD Training Course – Active Monitoring and Threat Detection for Industrial Systems

Reference : en2-2ctd
4,670 € excl. VAT
5 days
35 h
1 Feb. 2027
Remote
1 Mar. 2027
Remote
5 Apr. 2027
Remote
3 May 2027
Remote
7 Jun. 2027
Remote
5 Jul. 2027
Remote

Even if you are the only one registered, the session will still take place (except in cases of force majeure).

Claroty CTD training course

Description of the Claroty CTD Training Course

The Claroty CTD training course teaches you how to detect threats, analyse abnormal behaviour and respond quickly in an industrial environment.
With this hands-on approach, you will master the Claroty platform to strengthen the security of your OT and ICS infrastructures without compromising their availability.

OT (Operational Technology) environments are becoming prime targets for cyberattacks.
Industrial systems, which are often isolated or poorly protected, require continuous monitoring to identify anomalies and limit intrusions.
As a result, companies need to equip themselves with tools designed specifically for this context.

Claroty Continuous Threat Detection (CTD) addresses these challenges.
The solution enables you to map industrial assets, monitor network traffic in real time, and detect suspicious behaviour.
This gives you complete visibility into your OT environment while strengthening your organisation’s overall security posture.

Also discover our Training Course Mastering Threat Analysis and Response in Microsoft 365 and Azure.

Format

Remote (recorded sessions). 

GOOD TO KNOW

This training course includes numerous exercises (60% practical) to enhance learning. Even if you are the only one registered, the session will still take place (except in cases of force majeure). A preliminary interview is held between the participant and/or a company representative in order to fully assess the participant’s profile (level, needs, professional context, challenges, etc.).
Assessment : during the training course, the trainer assesses the participants’ progress through multiple-choice questions, role-playing exercises and practical work. Participants receive a certificate of completion at the end of the training course. 

objectives of the Claroty CTD Training Course

By the end, each participant will be able to :

  • Understanding cybersecurity issues specific to industrial OT environments
  • Getting started with the Claroty CTD interface and its key features
  • Automatically mapping and inventorying connected assets
  • Detecting threats, abnormal behaviour, or network intrusions
  • Understanding generated alerts and refining detection rules
  • Integrating CTD into a SOC, SIEM, or defence-in-depth strategy

Prerequisites

  • Basic knowledge of industrial OT architectures (SCADA, PLC, etc.)
  • Basic understanding of network security (firewalls, VLANs, industrial protocols)
  • Experience with a monitoring tool or SIEM is appreciated

Because each participant has a unique background and expectations, a preliminary interview with our expert allows us to precisely identify their objectives, level and professional challenges.
This enables us to tailor the training content to ensure relevant and personalised learning.

Target Audience

Ideal for OT engineers, security managers, industrial CISOs, SOCs, or anyone involved in the cybersecurity of SCADA, PLC, or DCS systems.

Detailed of of the Claroty CTD Training Course

Cybersecurity challenges in OT environments

Specific characteristics of industrial threats, OT/ICS attack surfaces, feedback from critical incidents.

Architecture, network positioning, components, dashboard, and initial indicators.

Passive detection, automatic inventory, equipment classification, supported industrial protocols.

Behavioural analysis, profile or signature alerts, typical scenarios (unauthorised changes, network scanning, etc.)

Incident handling, logging, log export, correlation with a SOC, custom dashboards.

Concrete use cases, security performance indicators, preparation for an inspection or cyber-industrial audit.

This training course :

  • Is specifically focused on OT/ICS, with demonstrations of real industrial environments.
  • Provides comprehensive hands-on training in Claroty CTD.
  • Prepares participants for operational integration with existing SOC/SIEM tools.
  • Emphasises proactive security, automatic mapping and behavioural detection.

FAQ – Claroty CTD Training

Claroty CTD (Continuous Threat Detection) is a cybersecurity platform dedicated to industrial and OT (Operational Technology) environments. It discovers assets, maps communications, and detects anomalies and threats on SCADA/ICS networks. MFE-IT trains CISOs and OT teams in the operational use of Claroty CTD.

IT cybersecurity protects information systems (servers, workstations, applications), while OT protects industrial systems (PLCs, sensors, SCADA) with availability constraints, specific protocols (Modbus, OPC-UA) and long life cycles. Claroty CTD is designed for these environments. MFE-IT clarifies the stakes and practices.

Claroty CTD detects unauthorized scans, configuration changes on PLCs, abnormal communications, CVE vulnerabilities, intrusion attempts and compromises of OT assets. The MFE-IT training shows how to exploit alerts, build playbooks and integrate Claroty with your SIEM.

The training lasts 5 days (35 hours), remote or on-site, with a maximum of 3 participants per session and 30 days of post-training support included.

Would you like to know about upcoming sessions ?

Would you like to schedule this training course on a specific date ? Contact us by email or by filling out the contact form.