Thank you for sending your enquiry! One of our team members will contact you shortly.
Thank you for sending your booking! One of our team members will contact you shortly.
Duration 21 hours
Course Outline
Introduction to Defensive Cyber Operations
- Overview of Blue Team functions and their critical role in national and organizational cybersecurity.
- Assessing exposure points and the current threat environment.
- Reviewing established security standards and frameworks (MITRE ATT&CK, NIST, CIS).
Security Information and Event Management (SIEM)
- Foundations of SIEM architecture and log management protocols.
- Deployment and configuration of SIEM platforms for operational readiness.
- Interpreting security logs to identify deviations and potential threats.
Network Traffic Analysis
- Principles of network flow analysis and packet inspection.
- Application of Wireshark for detailed packet examination.
- Identifying intrusion attempts and anomalous network behavior.
Threat Intelligence and Indicators of Compromise (IoCs)
- Foundations of strategic and operational threat intelligence.
- Identification, correlation, and analysis of Indicators of Compromise.
- Proactive threat hunting methodologies and operational best practices.
Incident Detection and Response
- Incident response lifecycle, governing frameworks, and accountability standards.
- Evaluation of security breaches and implementation of containment measures.
- Basic principles of digital forensics and malware examination.
Security Operations Center (SOC) and Operational Excellence
- SOC organizational structures, workflows, and communication protocols.
- Automation of security processes through scripting and standardized playbooks.
- Coordinated exercises involving Red Team and Purple Team activities for improved resilience.
Summary and Future Recommendations
Requirements
- Fundamental understanding of cybersecurity principles
- Proficiency in networking fundamentals (TCP/IP, firewalls, IDS/IPS)
- Operational experience with Linux and Windows operating systems
Target Audience
- Security Analysts
- IT Administrators
- Cybersecurity Professionals
- Network Defenders
Testimonials (2)
Clarity and pace of explanations
Federica Galeazzi - Aethra Telecomunications SRL
Course - AI-Powered Cybersecurity: Advanced Threat Detection & Response
It did give me the insight what I needed :) I am starting teaching on a BTEC Level 3 qualification and wanted to widen my knowledge in this area.