YoVDO

CompTIA CySA+ (CS0-002) Cert Prep: 5 Security Operations and Monitoring

Offered By: LinkedIn Learning

Tags

CompTIA CySA+ (Plus) Courses Cybersecurity Courses Network Security Courses Information Security Certifications Courses Network Traffic Analysis Courses Endpoint Security Courses Security Operations Courses Security Automation Courses

Course Description

Overview

Learn how to keep the security and overall health of your systems in check as you prepare for the CySA+ (CS0-002) exam.

Syllabus

Introduction
  • Security operations and monitoring
  • What you should know
  • Study resources
1. Security Monitoring
  • Monitoring Log Files
  • Correlating security event information
  • Continuous security monitoring
  • Syslog
  • Network traffic analysis
2. Monitoring System Components
  • Endpoint monitoring
  • Malware prevention
  • File system integrity monitoring
  • Network monitoring
  • Protocol analyzers
  • DNS harvesting
  • Intrusion detection and prevention
  • Web security tools
  • Impact analysis
  • Querying logs
3. Email Analysis
  • Malicious email content
  • Digital signatures
  • DKIM, DMARC, and SPF
  • Analyzing email headers
4. Network Security Techniques
  • Restricting network access
  • Network Access Control
  • Firewall rule management
  • Router configuration security
  • Switch configuration security
  • Data loss prevention
5. Endpoint Security
  • Operating system security
  • Application management
  • Host-based network security
  • File permissions
  • Process analysis with SysInternals
  • Executable analysis
6. Security Automation
  • Workflow orchestration
  • Automating threat intelligence
  • Continuous integration and delivery
Conclusion
  • What's next

Taught by

Mike Chapple

Related Courses

Windows 10 Security Features
Microsoft via edX
Palo Alto Networks Cybersecurity Essentials II
Palo Alto Networks via Coursera
Cybersecurity Compliance Framework & System Administration
IBM via Coursera
Cybersecurity Compliance and Framework
IBM via edX
Securing Microsoft Azure Data Access Endpoints
Pluralsight