SOC Analyst Course
ETC - Enterprise Training Center · 40 UE
Online
The course is dedicated to people who want to learn about Microsoft's cloud environment monitoring tools and framework. At the beginning, we will introduce you to the management of Azure Active Directory, service auditing and logs, roles related to monitoring threats in the cloud and the implementation of PIM and PAM services. In the next module we will walk through cloud security configuration best practices with secure score, Azure Defender for servers or security standards recommendations. During the course you will be able to configure an environment with EDR enabled, where we will try to attack endpoints and user identity and see how EDR behaves. Then we will go through security operations best practices and make hunting queries. The implemented EDR solution and other components of the security stack will be linked within the Microsoft SIEM, which will allow monitoring and implementation of responses to threats.
Target Group
- SOC analysts, Enterprise administrators, infrastructure architects, security professionals, systems engineers, network administrators, IT professionals, security consultants and other people responsible for implementing network and perimeter security.
DigComp – Zuordnung |
Kompetenzstufe | |||||||
---|---|---|---|---|---|---|---|---|
Kompetenzbereich | 1 | 2 | 3 | 4 | 5 | 6 | 7 | 8 |
0. Grundlagen, Zugang und digitales Verständnis | ||||||||
1. Umgang mit Informationen und Daten | ||||||||
2. Kommunikation, Interaktion und Zusammenarbeit | ||||||||
3. Kreation, Produktion und Publikation | ||||||||
4. Sicherheit und nachhaltige Ressourcennutzung | ||||||||
5. Problemlösung, Innovation und Weiterlernen |
Zugeordnet zu: DigComp 2.2 AT