Получить консультацию

QRadar SOAR: Foundations

Код курса
BQ405GUA
Продолжительность
2 Дней, 16 Ак. Часов
Описание курса
Цели
Требования
Программа курса
Описание курса

In this course, you learn about the IBM Security® QRadar® SOAR architecture, and how to position the product in your company’s security architecture design. You gain hands-on experience with the SOAR interface, by investigating and managing cases and users with the SOAR Breach Response module, playbooks, and email integration.

Цели

Objectives

In this course, you learn about the following topics:

— QRadar SOAR architectural patterns

— Install the product, and configure license and access

— Review the SOAR Console

— Manage cases

— Utilize the concept of artifacts

— Utilize case management capabilities

— Integrate email system for users and case management

— Focus on the Breach Response module

— Gain hands-on experience with the SOAR platform

— Design playbooks

— Integrate IBM and third-party solutions with SOAR

Требования

Audience

Security operations center (SOC) Administrator

SOC Analyst

Security Analyst

Incident Responder

Managed Service Security Provider (MSSP)

Программа курса

Topics

Getting started

  • Describe architectural patterns
  • Install the product and configure license and access
  • Review the SOAR Console
  • Manage cases and use Breach Response add-on
  • Utilize the concept of artifacts

Case management and email integration

  • Utilize case management capabilities
  • Integrate email system for users and case management
  • Focus on the Breach Response module

Playbooks and integrations

  • Gain hands-on experience with the SOAR platform
  • Design playbooks
  • Integrate IBM and third-party solutions with SOAR
Регистрация на ближайший курс
QRadar SOAR: Foundations
Код курса:
BQ405GUA
Продолжительность:
2 Дней, 16 Ак. Часов
Зарегистрироваться
Получить консультацию
Свяжитесь со мной
Получить консультацию
Отправить заявку
Регистрация на вебинар
Отправить заявку
Ваша заявка получена!
Мы свяжемся с вами в ближайшее время.