YoVDO

Incident Investigation with IBM Security QRadar

Offered By: Pluralsight

Tags

IBM Security QRadar Courses Cybersecurity Courses Incident Response Courses

Course Description

Overview

Save Big on Coursera Plus. 7,000+ courses at $160 off. Limited Time Only!
The incident response team is responsible for investigating offenses, determining the impact of incidents, and creating eradication/remediation plans. This course will teach you
how to respond to cyber incidents using the IBM Security QRadar SIEM.

The IBM Security QRadar is a complete SIEM solution that helps you to detect threats and investigate incidents. In this course, Incident Investigation with IBM Security QRadar, you’ll learn how to respond to cybersecurity incidents using the QRadar SIEM solution. First, you’ll explore the overall incident response process and the QRadar investigation best practices. Next, you’ll discover through our demos how to find indicators of compromise and investigate the main incident types using the SIEM. Finally, you’ll learn how to define a proper containment, eradication, and recovery plan. When you’re finished with this course, you’ll have the skills and knowledge of QRadar needed to respond to cyber incidents.

Syllabus

  • Course Overview 1min
  • The Incident Response Process 17mins
  • Incident #1: The Compromised AWS Cloud 45mins
  • Incident #2: The Botnet 40mins

Taught by

Ricardo Reimao

Related Courses

Incident Detection and Investigation with QRadar
Pluralsight
Incident Detection and Investigation with QRadar
Pluralsight
Vulnerability Management with QRadar
Pluralsight
Incident Detection and Investigation with QRadar Apps
Pluralsight
Planning, Deploying, and Maintaining QRadar
Pluralsight