Detail kurzu
FortiAnalyzer Analyst
EDU Trainings s.r.o.
Popis kurzu
In this course (version 7.6), you will gain the practical skills of a SOC analyst using FortiAnalyzer for centralized logging and analytics. You will learn how to examine and manage events, and automate threat response using event handlers and playbooks. You will also learn how to identify current and potential threats through incident analysis and outbreak reports. Finally, you will learn how to incorporate FortiAI in your workflow and generate security reports.
Price of the certification exam is not included in the price of the course. After completing this course, you should be able to:
Describe SOC objectives, responsibilities, and roles
Describe the role of FortiAnalyzer in a SOC
Describe FortiAnalyzer Security Fabric integration
Describe how logging works in a Security Fabric
Describe FortiAnalyzer Fabric deployments
Describe FortiAnalyzer operating modes
Describe how FortiAnalyzer parses and normalizes logs
Validate log parsers
Search logs using normalized fields
View and search for logs in the log view
Create saved filters and dashboards
View summary data in FortiView
View dashboards and widget features
Configure event handlers
Manage events
Configure indicators
Create incidents
Analyze incidents
Configure incident settings
Describe FortiAI operations and use cases
Describe threat hunting
Use the log count chart
Use the SIEM log analytics table
Describe outbreak alerts
Collect log volume statistics
Configure an automation stitch
Configure an event handler with an automation stitch enabled
Run and fine-tune predefined reports
Customize reports with macros, custom charts, and datasets
Configure external storage for reports
Group reports
Import and export reports and charts
Attach reports to incidents
Manage and troubleshoot reports
Create new playbooks
Use variables in tasks
Monitor playbooks
Export and import playbooks
Price of the certification exam is not included in the price of the course. After completing this course, you should be able to:
Describe SOC objectives, responsibilities, and roles
Describe the role of FortiAnalyzer in a SOC
Describe FortiAnalyzer Security Fabric integration
Describe how logging works in a Security Fabric
Describe FortiAnalyzer Fabric deployments
Describe FortiAnalyzer operating modes
Describe how FortiAnalyzer parses and normalizes logs
Validate log parsers
Search logs using normalized fields
View and search for logs in the log view
Create saved filters and dashboards
View summary data in FortiView
View dashboards and widget features
Configure event handlers
Manage events
Configure indicators
Create incidents
Analyze incidents
Configure incident settings
Describe FortiAI operations and use cases
Describe threat hunting
Use the log count chart
Use the SIEM log analytics table
Describe outbreak alerts
Collect log volume statistics
Configure an automation stitch
Configure an event handler with an automation stitch enabled
Run and fine-tune predefined reports
Customize reports with macros, custom charts, and datasets
Configure external storage for reports
Group reports
Import and export reports and charts
Attach reports to incidents
Manage and troubleshoot reports
Create new playbooks
Use variables in tasks
Monitor playbooks
Export and import playbooks
Obsah kurzu
SOC Concepts and Security FabricLog Data Flow and Navigation
Events, Indicators, and Incidents
FortiAI, Threat Hunting, and Troubleshooting
Reports
Playbooks
Cieľová skupina
Security professionals responsible for Fortinet Security Fabric analytics and automating tasks to detect and respond to cyberattacks using FortiAnalyzer should attend this course.
Certifikát
Na dotaz.