Scaling Your Defenses - Next Level Security Automation for Enterprise
Offered By: RSA Conference via YouTube
Course Description
Overview
Syllabus
Intro
Intro Questions
What do "Automations" Look like today?
How can I measure my organizations Automation Capabilities?
What can Automations look like, and where do we start?
Component One: Alert Ingestion
Component Two: Data Collection
Component Four: Alert Remediation
Component Five: Reporting
The Missing Component: Automated Alert Analysis (Component Three)
Reviewing the Manual Analysis Process for Indicator Scoring
Simple Scoring Use Case: Virustotal File/URL Reputation
Simple Scoring Summary
Implementing Heuristic Analysis
Detailed Scoring Use Case: VirusTotal Domain Reputation
Heuristic Scoring Summary
Uplifting from Heuristic Analysis to Machine Learning Models
Training the Machine Learning
Tuning the Automations
How to Calculate ROI
Real-World Automation Return on Investment
How do I implement this in my environment?
Taught by
RSA Conference
Related Courses
Managing Microsoft Azure SecurityPluralsight Implementing and Administering Azure Sentinel
LinkedIn Learning AWS Certified DevOps Engineer: Get 3 Certifications 2023
Udemy Automating Cisco ASA and Firepower Policies Using APIs
Pluralsight SC-200: Mitigate threats using Microsoft Defender for Endpoint
Microsoft via Microsoft Learn