Course Summary
This training is designed to enable a SOC, CERT, CSIRT, or SOAR engineer to start working with Cortex XSOAR integrations, playbooks, incident-page layouts, and other system features to facilitate resource orchestration, process automation, case management, and analyst workflow.
The third module of the course demonstrates a complete playbook-development process for automating a typical analyst workflow to address phishing incidents. This end-to-end view of the development process provides a framework for more focused discussions of individual topics that are covered in subsequent modules.
You will gain skills like:
• Understanding the fundamentals of security orchestration, automation, and response (SOAR) using Cortex XSOAR.
• Designing and implementing automated workflows and playbooks to streamline incident response and security operations.
• Integrating security tools, APIs, and data sources into Cortex XSOAR to enhance automation capabilities.
• Utilizing Cortex XSOAR to orchestrate responses to security incidents, including alert handling and case management.
• Configuring and customizing Cortex XSOAR to meet specific organizational security requirements and use cases.
Module 1: Core Functionality and Feature Sets
Module 2: Enabling and Configuring Integrations
Module 3: Playbook Development
Module 4: Classification and Mapping
Module 5: Layout Builder
Module 6: Solution Architecture
Module 7: Docker
Module 8: Automation Development and Debugging
Module 9: The Marketplace and Content Management
Module 10: Indicators and Threat Intelligence Management
Module 11: Jobs and Job Scheduling
Module 12: Users and Role-Based Access Controls (RBAC)
Module 13: Integration Development
Other Popular Courses
Executive Cyber Risk Certification (ECRC)
- Duration: 2 Days
- Language: English
- Level: Intermediate
- Exam: ECRC
Mastering Communication & Presentation Te...
- Duration: 4 Days
- Language: Danish
- Level: Intermediate
- Exam: MCPT
Next Generation Mindfulness
- Duration: 1 Days
- Language: English
- Level: Foundation
- Exam: NGM