COURSE OBJECTIVE:
• Analyze UBA concepts, such as the senseValue variable, risk scores, and the IBM Sense DSM.
• Identify how QRadar rules are connected to UBA and how user information is imported into the app.
• Install and configure the app, as well as the User Import tool and the the Machine Learning app.
• Tune UBA settings to improve the application's behavior and performance.
• Analyze how UBA can help you detect and investigate insider threats.
• Analyze how to use the UBA Dashboard.
• Investigate how to detect malicious user behavior.
TARGET AUDIENCE:
Security Analyst
COURSE PREREQUISITES:
Not available. Please contact.
COURSE CONTENT:
Unit 1: Architecture and OverviewUnit 2: Setup • Installation • Configuration • User Import • Machine Learning configurationUnit 3: TuningUnit 4: An overview to detecting and investigating insider threatsUnit 5: Student exercise
FOLLOW ON COURSES:
Not available. Please contact.