Investigating Incidents with Splunk SOAR
This 3 hour course prepares security practitioners to use SOAR to respond to security incidents, investigate vulnerabilities, and take action to mitigate and prevent security problems.
Utbildningsformer
Remote
Längd
timmar
Pris
5075 kr
- SOAR concepts
- Investigations
- Running actions and playbooks
- Case management and workflows
Topic 1 - Starting Investigations
- SOAR investigation concepts
- ROI view
- Using the Analyst Queue
- Using indicators
- Using search
Topic 2 - Working on Events
Topic 3 - Cases: Complex Events
Utbildningen levereras i samarbete med: