PAN-CXSOARESAS Palo Alto Networks: Cortex XSOAR Engineering Security Automation Solutions
The Palo Alto Networks Cortex XSOAR: Engineering Security Automation Solutions course is a four-day instructor-led training with a blend of lectures and hands-on labs. This training will enable students to use Cortex XSOAR to:- Conduct incident investigation and response activities on a phishing campaign
– Create custom dashboards and generate reports
– Install multiple engines and configure a load balancing group
– Use built-in and external integrations to ingest incidents and automate security processes
– Plan and implement an automation use case by building playbooks and automation scripts
COURSE OBJECTIVE:
• Successful completion of this four-day, instructor-led course should enable students to integrate their existing security tools with Cortex XSOAR to streamline security processes, accelerate security outcomes, and automate manual security-oriented tasks.
TARGET AUDIENCE:
– SOC / SIEM / Automation Engineers
– MSSPs and Service Delivery Partners working with XSOAR
COURSE PREREQUISITES:
Participants should have a basic understanding of: • Networking concepts, such as identifying private IPs and domains • Cybersecurity concepts, such as Indicators of Compromise • Navigating Windows and Linux environments using the GUI and CLI
COURSE CONTENT:
Course Modules0 – Course Introduction
1 – XSOAR Overview
2 – Incident Management
3 – Threat Intelligence
4 – Analyst Investigations
5 – Dashboards, Reports, and Timers
6 – Integrations and Content Management
7 – Architecture
8 – Use Case Planning and Implementation
9 – Playbook Development
10 – Automation Scripts
FOLLOW ON COURSES:
Not available. Please contact.
Tilleggsinformasjon
Relaterte produkter
- ARR_JUN_JL3V Junos Layer 3 VPNs (JL3V)Bestill
This three-day course is designed to provide students with MPLS-based Layer 3 virtual private network (VPN) knowledge and configuration examples. The course includes an overview of MPLS Layer 3…
- ARR_F5N_BIG-LTM-CFG-3 Configuring BIG-IP LTM Local Traffic Manager v.17.1Bestill
This 3-day course gives network professionals a functional understanding of BIG-IP Local Traffic Manager, introducing students to both commonly used and advanced BIG-IP LTM features and functionality. Incorporating lecture,…
- ARR_CKT_CCSA_R81_20 Check Point Certified Security Administrator (CCSA) R81.20 (includes 180 days' lab access)Bestill
This core course covers the fundamentals needed to deploy, configure, and manage daily operations of Check Point Security Gateways and Management Software Blades that run on the Gaia operating…