Cortex XDR 2: Prevention, Analysis, and Response
This course is three days of instructor-led training that will help you to:
Differentiate the architecture and components of the Cortex XDR family
Describe Cortex, Cortex Data Lake, the Customer Support Portal, and the hub
Activate Cortex XDR, deploy the agents, and work with the management console
Work with the Cortex XDR management console, describe a typical management page, and work with the tables and filters
Create Cortex XDR agent installation packages, endpoint groups, policies, and profiles
Create and manage exploit and malware profiles, and perform response actions
Describe detection challenges with behavioral threats
Differentiate the Cortex XDR rules BIOC and IOC, and create and manage them
Describe the Cortex XDR causality analysis and analytics concepts
Triage and investigate alerts and incidents, and create alert starring and exclusion policies
Work with the Causality and Timeline Views and investigate threats in the Query Center
Objetivos
Ciberseguridad
Disponible en formato e-learning
Disponible en formato presencial
Disponible en formato a distancia
Subvención disponible
A través de Fundae, cumpliendo requisitos.
Duración
15 horas
- Dificultad 50%
- Nivel alcanzado 80%
Dirigido a
Cybersecurity analysts and engineers, and security operations specialists
Conocimientos requeridos
Participants must be familiar with enterprise security concepts.
Temario
Course Modules
Cortex XDR Family Overview
Working with the Cortex Apps
Getting Started with Endpoint Protection
Malware Protection
Exploit Protection
Exceptions and Response Actions
Behavioral Threat Analysis
Cortex XDR Rules
Incident Management
Alert Analysis Views
Search and Investigate
Basic Troubleshooting
Comentarios recientes