QRadar SIEM provides deep visibility into network, user, and application activity. It provides collection, normalization, correlation, and secure storage of events, flows, assets, and vulnerabilities. Suspected attacks and policy breaches are highlighted as offenses.
This 2-day instructor-led course walks you through various advanced topics about QRadar such as custom log sources, reference data collections and custom rules, X-Force data and the Threat Intelligence app, UBA and QRadar Advisor, tuning and custom action scripts. The course also discusses integration with IBM SOAR. Hands-on exercises reinforce the skills learned.
The lab environment for this course uses the IBM QRadar SIEM 7.5 platform.
Virtual Learning
This interactive training can be taken from any location, your office or home and is delivered by a trainer. This training does not have any delegates in the class with the instructor, since all delegates are virtually connected. Virtual delegates do not travel to this course, Global Knowledge will send you all the information needed before the start of the course and you can test the logins.
Unit 1: Custom log sources
Unit 2: Reference data collections and custom rules
Unit 3: IBM X-Force Threat Intelligence in QRadar
Unit 4: User Behavior Analytics and Advisor with Watson
Unit 5: Tuning
Unit 6: Custom action scripts
Unit 7: IBM SOAR integration
Students should be knowledgeable about the following topics:
This course is designed for security administrators and security analysts.
COURSE CONTENT: DAY 1 Course Introduction Juniper Connected Security โข Identify the high-level security challenges in todayโs network โข Describe basic network security design โข Identify the key factors…
This 5 day bundle course covers the following two Check Point training courses:Check Point Certified Security Administrator (CCSA) R81.x – 3 daysandCheck Point Certified Troubleshooting Administrator (CCTA) R81.x -…
COURSE CONTENT: Course Topics: โข Multi-Domain Installation and Configurationย โข Multi-Domain Security Management โข Multi-Domain Log Management โข Multi-Domain High Availabilityย โข Global Domain โข Global Policy Managementย โข…