Course Summary

This course will help you:

• Gain an advanced understanding of the tasks involved for senior-level roles in a security operations center
• Configure common tools and platforms used by security operation teams via practical application
• Prepare you to respond like a hacker in real-life attack scenarios and submit recommendations to senior management
• Prepare for the 350-201 CBRCOR core exam

Module 1: SOC Operations and Responsibilities
Types of SOC Service Coverage: Learn about different SOC service models, including monitoring, detection, and response.
Operational Responsibilities: Understand the roles and duties within a SOC, including incident handling, forensics, and threat intelligence.

Module 2: Cloud Security Operations
Cloud Security Considerations: Compare security operations across various cloud platforms (public, private, hybrid).
Cloud Platform Challenges: Discuss unique security challenges and solutions specific to cloud environments.

Module 3: SOC Platform Management
SOC Development and Management: Explore methodologies for developing and managing SOC platforms.
Automation in SOC: Understand how automation and orchestration tools enhance SOC efficiency and response capabilities.

Module 4: Asset Controls and Protections
Segmentation and Micro-Segmentation: Describe techniques for asset segmentation, network segregation, and micro-segmentation.
Zero Trust Security: Explain Zero Trust principles and how they apply to asset protection and network security.

Module 5: Incident Investigation and Core Security Technologies
Incident Investigation Tools: Learn to use SIEM and SOAR for effective incident investigation and management.
Core Security Technology Platforms: Understand different security technologies for monitoring, investigation, and response.

Module 6: Threat Detection and Analysis
Threat Detection Strategies: Analyze threat detection approaches and strategies during monitoring and response.
Indicators of Compromise and Attack: Identify and interpret IOCs and IOAs.
Attack Analysis and Anomalous Behavior: Interpret attack sequences and analyze anomalous user and entity behavior (UEBA).

There are no mandatory prerequisites, to fully benefit from this training, you should have the following knowledge: • Familiarity with UNIX/Linux shells (bash, csh) and shell commands. • Familiarity with the Splunk search and navigation functions • Basic understanding of scripting using one or more of Python, JavaScript, PHP or similar. Recommended courses that help you prepare for this training: • Understanding Cisco Cybersecurity Operations Fundamentals (CBROPS) • Implementing and Administering Cisco Solutions (CCNA)

What to expect in the exam: 350-201 Performing CyberOps Using Cisco Security Technologies (CBRCOR) is a 120-minute exam associated with the Cisco CyberOps Professional Certification. The multiple-choice format tests knowledge of core cybersecurity operations including cybersecurity fundamentals, techniques, policies, processes, and automation. The exam will test for knowledge in the following areas: • Monitoring for cyberattacks • Analyzing high volume of data using automation tools and platforms—both open source and commercial • Accurately identifying the nature of attack and formulate a mitigation plan • Scenario-based questions; for example, using a screenshot of output from a tool, you may be asked to interpret portions of output and establish conclusions

Following your booking, a confirmation message will be sent to all participants, ensuring you're well-informed of your successful enrollment. Calendar placeholders will also be dispatched to assist you in scheduling your commitments around the course. Rest assured, all course materials and access to necessary labs or platforms will be provided no later than one week before the course begins, allowing you ample time to prepare and engage fully with the learning experience ahead.

Our comprehensive training package includes all the necessary materials and resources to facilitate a full learning experience. Enrollees will be provided with detailed course content, encompassing a wide array of topics to ensure a thorough understanding of the subject matter. Additionally, participants will receive a certificate of completion to recognize their dedication and hard work. It's important to note that while the course fee covers all training materials and experiences, the examination fee for certification is not included but can be purchased separately.

Questions About This Course?