QRadar SOAR: Foundations
- Código del Curso BQ405G
- Duración 2 días
Otros Métodos de Impartición
Método de Impartición
Este curso está disponible en los siguientes formatos:
-
Clase de calendario
Aprendizaje tradicional en el aula
-
Aprendizaje Virtual
Aprendizaje virtual
Solicitar este curso en un formato de entrega diferente.
Temario
Parte superiorIn this course, you learn about the IBM Security® QRadar® SOAR architecture, and how to position the product in your company's security architecture design. You gain hands-on experience with the SOAR interface, by investigating and managing cases and users with the SOAR Breach Response module, playbooks, and email integration.
Curso Remoto (Abierto)
Nuestra solución de formación remota o virtual, combina tecnologías de alta calidad y la experiencia de nuestros formadores, contenidos, ejercicios e interacción entre compañeros que estén atendiendo la formación, para garantizar una sesión formativa superior, independiente de la ubicación de los alumnos.
Calendario
Parte superiorDirigido a
Parte superior- Security operations center (SOC) Administrator
- SOC Analyst
- Security Analyst
- Incident Responder
- Managed Service Security Provider (MSSP)
Objetivos del Curso
Parte superiorIn this course, you learn about the following topics:
- QRadar SOAR architectural patterns
- Install the product, and configure license and access
- Review the SOAR Console
- Manage cases
- Utilize the concept of artifacts
- Utilize case management capabilities
- Integrate email system for users and case management
- Focus on the Breach Response module
- Gain hands-on experience with the SOAR platform
- Design playbooks
- Integrate IBM and third-party solutions with SOAR
Contenido
Parte superiorGetting started
- Describe architectural patterns
- Install the product and configure license and access
- Review the SOAR Console
- Manage cases and use Breach Response add-on
- Utilize the concept of artifacts
Case management and email integration
- Utilize case management capabilities
- Integrate email system for users and case management
- Focus on the Breach Response module
Playbooks and integrations
- Gain hands-on experience with the SOAR platform
- Design playbooks
- Integrate IBM and third-party solutions with SOAR