CyberDragon Core is live — indigenous SIEM/SOAR with Edge protocol capture. Start a 7-day free trial on your own traffic →
CyberDragon Academy

Hands-on OT/ICS cyber defense training with measurable outcomes.

Per-student K8s namespace + simulated OT (OpenPLC + Modbus). Target: MTTD under 60 seconds for Tier 1 attacks.

Explore Now
Explore Now
Explore Now
Lab scenarios

Students run the same six scenarios the platform is measured on.

Every exercise executes against simulated OT traffic in an isolated namespace, so a mistake costs a lab reset — never a process upset.

Explore Now
Explore Now
Explore Now
Explore Now
Explore Now
Explore Now
Console coverage

Training walks the console the way an analyst does.

Module groupScreens covered
SOC OperationsUnified SOC, Alert Triage, Incident Queue, Workspace, Playbooks, Threat Hunt, UEBA
Edge & OTCollector Status, Protocol Inspector, Purdue Topology, Fleet Management
Risk & Threat IntelRisk Dashboard, FAIR Quant, Threat Ops Queue, TI Fusion Center
Compliance & QuantumQuantum Readiness, Compliance & Audit, Network Assurance, Governance Rollup
Industry VerticalsOT/Energy, Banking, Cloud, IIoT, Healthcare, Unified SOC Queue
ExecutiveCISO Executive, Board Risk Brief, Verticals Overview, Executive Briefing
MSSP & PartnersCross-Tenant Ops, Client Onboarding, Marketplace
FAQ

Frequently asked questions.

What does the lab environment include?
A per-student Kubernetes namespace with simulated OT — OpenPLC and Modbus traffic — so exercises run against real protocol behavior.
Which certification should an analyst start with?
CyberDragon Operator (CDO) for triage, evidence handling, and safe escalation, then CyberDragon Analyst (CDA) for detection engineering.
Is there a measurable outcome?
Yes — the training target is mean time to detect under 60 seconds for tier-1 attack scenarios.

Train on a live tenant.

Start the 7-day free trial, then ask the team about Academy seats.