
Train On-Demand
Choose the training you want from 18,000+ videos of instructor-led content. Watch anywhere.
Learn More<br>The focus of the Practical Incident Handling course is to educate you on the techniques, tactics, and procedures that modern adversaries use, as well as teach you how to detect them. Now, it is time to scale things up… The SOC 3.0 Operations & Analytics Section first introduces you to the world of SIEM so you can become comfortable with working with some of the most effective and open-source SIEM solutions. You will then witness how common protocol analytics can greatly increase your network visibility in an attempt to detect abnormal and probably malicious actions at scale. Endpoint analytics are up next, covering the most important logs/events, correlation strategies and SIEM queries that you can leverage to detect adversaries on your network and endpoints. As usual, modules will be accompanied by hands-on labs, where you will be tasked with detecting real-world attacks and malware. As this section progresses, you will also see how tactical threat intelligence and adversary simulation can help you upgrade your detection capabilities.</br> <br>This course is part of the Incident Handling & Response Professional Learning path which prepares you for the eCIR exam and certification</br>
Instructor for this course
Dimitrios Bougioukas
SIEM Fundamentals & Open Source Solutions - Study Guide
Effectively Using Splunk (Scenario 1)
Effectively Using Splunk (Scenario 2)
Effectively Using the ELK Stack
Logging - Study Guide
SMTP, DNS & HTTP(S) Analytics - Study GUide
Endpoint Analytics - Study Guide
Osquery Fundamentals and Endpoint Analysis
Creating a Baseline & Detecting Deviations - Study Guide
Take your technical training into your own hands and stay engaged with our learn-by-doing platform where you can put your skills to the test with hands-on exercises, quizzes, and labs.
Choose the training you want from 18,000+ videos of instructor-led content. Watch anywhere.
Learn MoreINE quizzes, labs, projects, and exercises help reinforce your knowledge.
Learn MoreOrganized training helps guide you through the most relevant subjects for certification prep.
Learn MoreWe add new courses and learning materials to the platform weekly so you're always up-to-date.
Learn MoreIf you have a question you don’t see on this list, please visit our Frequently Asked Questions page by clicking the button below.
If you’d prefer getting in touch with one of our experts, we encourage you to call one of the numbers above or fill out our contact form.
Do you offer training for all student levels?
Are the training videos downloadable?
I only want to purchase access to one training course, not all of them, is this possible?
Are there any fees or penalties if I want to cancel my subscription?