A qui s'adresse cette formation
This course is intended for SOC/CERT/CSIRT/XSIAM analysts and managers, MSSPs and service delivery partners/system integrators, internal and external professional-services consultants and sales engineers, incident responders and threat hunters.
Pré-requis
Participants should have foundational understanding of cybersecurity principles and experience with analyzing incidents and using security tools for investigation.
Contenu
Course Modules:
- 1- Introduction to Cortex XSIAM
- 2- Endpoints
- 3- XQL
- 4- Alerting and Detection
- 5- Forensics
- 6- Threat Intel Management
- 7- Automation
- 7- Case Management
- 9- Dashboards and Reports