Companies Home Search Profile

Incident Detection and Investigation with QRadar Apps

Focused View

Ricardo Reimao

1:53:08

51 View
  • 0101.Course Overview.mp4
    02:08
  • 0201.Investigating Incidents with QRadar Apps.mp4
    04:00
  • 0202.The QRadar App Framework and the App Node.mp4
    04:18
  • 0301.The Pulse App.mp4
    04:13
  • 0302.Using Out-of-the-box Dashboards.mp4
    04:03
  • 0303.Creating a Custom Dashboard - AQL Language.mp4
    03:51
  • 0304.Demo Creating a Custom Dashboard.mp4
    07:53
  • 0401.The QRadar Assistant.mp4
    01:57
  • 0402.Creating an Assistant Dashboard.mp4
    03:26
  • 0403.Troubleshooting an Issue.mp4
    05:27
  • 0404.Customizing the Assistant Widgets.mp4
    02:58
  • 0501.The QRadar Advisor App with Watson.mp4
    03:42
  • 0502.Manual Incident Investigation with Watson.mp4
    02:11
  • 0503.Automated Incident Investigation with Watson.mp4
    06:15
  • 0601.The User Behaviour Analytics.mp4
    11:03
  • 0602.Investigating a Suspicious Employee.mp4
    06:23
  • 0603.Creating Watchlists.mp4
    05:01
  • 0604.Customizing Rules.mp4
    04:47
  • 0701.The QRadar Operations App.mp4
    03:12
  • 0702.Troubleshooting Performance Issues.mp4
    05:37
  • 0703.Investigating a Compromised QRadar Account.mp4
    04:43
  • 0801.The QRadar Deployment Intelligence (QDI) App.mp4
    05:30
  • 0802.Identifying System Health Issues.mp4
    05:57
  • 0803.Course Closure.mp4
    04:33
  • Description


    This course will teach you about the main QRadar apps and how you can improve your incident investigation with them. You learn not only the technical aspect of each app, but also the investigation step-by-step of the main incident types using apps.

    What You'll Learn?


      One of the major features introduced in QRadar is the ability to install apps, which expands the SIEM features and helps on incident investigation. In this course, Incident Detection and Investigation with QRadar Apps, you will learn about the most interesting QRadar apps for a SOC analyst. First, you will learn how to create interactive dashboards with the Pulse app. Next, you will discover about the use of artificial intelligence for incident investigation using the QRadar Advisor with Watson app. Finally, you will explore how to detect internal threats using the User Behaviour Analytics (UBA) app. You also will explore other interesting apps that will help you to monitor QRadar system health. The course is filled with demos showing the QRadar apps being used in several incident investigations, such as malware outbreaks, rouge employees, internal threats, and compromised accounts. When you're finished with this course, you will have the skills and knowledge of the main QRadar apps needed to improve your incident investigation game.

    More details


    User Reviews
    Rating
    0
    0
    0
    0
    0
    average 0
    Total votes0
    Focused display
    Ricardo Reimao
    Ricardo Reimao
    Instructor's Courses
    Ricardo is a Cybersecurity Consultant based in Toronto (Canada). He has 14+ years of IT experience, 10 of them in the IT Security field. His main interests are: SIEM solutions (IBM QRadar), Enterprise Security Risk, Penetration Testing, Security processes/procedures and Network Security.
    Pluralsight, LLC is an American privately held online education company that offers a variety of video training courses for software developers, IT administrators, and creative professionals through its website. Founded in 2004 by Aaron Skonnard, Keith Brown, Fritz Onion, and Bill Williams, the company has its headquarters in Farmington, Utah. As of July 2018, it uses more than 1,400 subject-matter experts as authors, and offers more than 7,000 courses in its catalog. Since first moving its courses online in 2007, the company has expanded, developing a full enterprise platform, and adding skills assessment modules.
    • language english
    • Training sessions 24
    • duration 1:53:08
    • level average
    • Release Date 2023/10/11