A Guide to Security Information and Event Management - SIEM

Gain hands-on Tool insights using Splunk Enterprise and FortiSIEM. Interview preparation case study, hints and tips

4.16 (414 reviews)
Udemy
platform
English
language
Network & Security
category
A Guide to Security Information and Event Management - SIEM
10,897
students
43.5 hours
content
Nov 2023
last update
$79.99
regular price

What you will learn

In this course you will go through an Introduction to SIEM, its Key Objectives, Defence in Depth, Corporate environment, Log Management

You will get an introduction to Splunk's user interface and will be conversant with the UI post this session.

Start using Splunk's basic transforming commands and create reports, dashboards and alerts.

You will start using Splunk Enterprise Security

You will learn the different types of viruses: Boot sector, Program, Macro

You will also learn types other than viruses: Virus Hoaxes, Trojan Horses, Worms, Spam, Adware, Spyware

You will have clarity on what an Anti-Virus is, types of Anti-Virus products, how does Anti-virus work and examples of Anti-virus software's

Learn more on Security Devices, Encryption, Reliable passwords, use of anti-virus software and modern advanced network security devices.

Email: SMTP, Email system, webmail architecture - IMAP4 based, Email based attacks - social engineering, proxy server

Cyber security incidence response: what is it?, examples, purpose of incident response, cyber security incidents, meantime to resolution etc

Understand and Manage Vulnerabilities

Gain Insights from a case study of how to prepare for an Interview for SOC Roles

Learn hints & tips of cracking interviews

Why take this course?

In this course you will go through an Introduction to SIEM, its Key objectives, Defence in depth, Corporate environment, Log management, Why siem is necessary, Use cases, Elements of siem, Big 3 for siem, SIEM process flow, Typical features of siem, Event life cycle, Soc controls and Management, SIEM Architecture, 8 critical features of SIEM and SIEM Deployment options. You will also get an introduction to Splunk's user interface and will be conversant with the UI. You can start using the Splunk's basic transforming commands, can create reports and dashboards, you will know how to save and share reports and also can create alerts.

Section 1

You will gain real time insights on Security information and event management and Security event manager


Section 2

You will identify threats and possible breaches and collect audit logs for security and compliance. You will be able to conduct investigations and provide evidence.


Section 3

You will learn that Defense in Depth (DiD) is an approach to cybersecurity in which a series of defensive mechanisms are layered in order to protect valuable data and information.


Section 4

You can understand how an attacker can come in and tries to understand how a corporate environment is setup of a target.


Section 5

You will learn what SIEM and Log Management mean for businesses & how to use them more effectively to mitigate risk for your company.


Section 6

You will learn that SIEM is necessary because of the rise in data breaches and to meet stringent compliance requirements


Section 7

Learn the right approach to building SIEM use cases, how to organize and prioritize use cases effectively.


Section 8

You will learn the SIEM elements, Big 3, Process flow, Features, Event life cycle, SOC controls and mgmt, SIEM architecture, Dashboards and Use cases


Section 9

You will revisit features of SIEM and learn SIEM deployment options like self-hosted, self-managed to Hybrid-model, Jointly-managed. You will understand the business benefits of SIEM.


Section 10

SIEM Essentials Quiz


Section 11

Security Operations Center - SOC with Splunk & FortiSIEM


Section 12

Network Concepts Refresher, OSI, TCPIP Protocol Suite


Section 13

Cyber Security Attacks, Ethical Hacking, DoS, DDoS, SYN Flooding, Metasploit


Section 14

Maltego, Cyber Killchain methodology, Information security vectors, Ransomware


Section 15

You will understand Splunk's user interface -UI. You will be able to navigate UI features on your own: Navigating splunk web: splunk home, splunk bar, splunk web,getting date into splunk, how to specify data inputs, where splunk stores data, getting tutorial data into splunk, using splunk search, search actions and modes, search results tools, events, what are fields, extracted fields, find and select fields,run more targeted searches, use the search language, learn with search assistant

Section 16-21

You can start using the Splunk's basic transforming commands, can create reports and dashboards, you will know how to save and share reports and also can create alerts after completing these sections.

Section 22

You will go through a live case study on how Fortinet's FortiSIEM works right from the foundation.

Section 23-27

Learn the types of viruses, security devices, incidence response, IMAP4 based Email & vulnerability management


Section 28

Interview Preparation for Cyber Security Roles & SOC Roles!

  • Gain Insights from this Live Case study of how to prepare for an Interview for a SOC Role. You will find the Subject matter expert guiding the Interviewee to crack an Interview.

  • Understanding the Cyber Security Role using a sample Job Description

  • Risk Based Approach Insights

  • Interview Questions, NIST 863-53 & NIST 800-171

  • A Guide to Malware Incident Prevention and Handling

  • Practical Interview Technical Hints & Tips


Testimonials:

Good content delivered by very knowledgeable individual  Sifiso

Excellent course for the professionals who want to enter/know SIEM or to improve their existing skill set.. Lecturer is a real time professional who has in-depth knowledge of what he is teaching and making sure that it reaches to listeners... Also for the guys who want to learn Splunk  Ram

This course lays the foundation for SIEM, the instructor is a working professional and gave real time examples which made it easier to understand. Expecting more sections to be added, Highly recommend to Beginners!  Souha Djim

It has in-depth knowledge of Splunk and is very insightful  Megha Sahai

One of the Best Mehedi Hasan

Yes.I got a very good understanding of SIEM and way to go further. Thanks Udemy for this wonderful course. WIll subscribe to new courses in future as and when my need increases.  Chandrasekaran Lakshmanan

It is a very good one because I am in the cyber Security field. I would recommend it to my friends. Jeffery Osuya

This is very very important Tutorial series for those who are seeking to increase their skillset and knowledge. This very valuable for me and my carrier. Thank you.  Yes, Its a perfect match according to my career, as i want to become the SOC analyst. It is a right course for me. Syed Ali Hassnain

It is a great learning session & useful for learners & professionals , thank u for given wonderful opportunity to learn

Madupalli Satheesh

Going good. Excited to go thorough the remaining course. Sumanta Banerjee


Screenshots

A Guide to Security Information and Event Management - SIEM - Screenshot_01A Guide to Security Information and Event Management - SIEM - Screenshot_02A Guide to Security Information and Event Management - SIEM - Screenshot_03A Guide to Security Information and Event Management - SIEM - Screenshot_04

Reviews

Herman
February 15, 2023
Great content, really learned a lot! Presenter is very knowledgeable regarding the different topics. Presentation from time to time poor (children on the background, presenter for 10 min on hold during presentation, not always prepared / different outcome than expected).
Aseem
September 25, 2022
The person is unprepared for the training. It seems like he has just done a little bit of work and then got the slide deck handed to give the training. He fumbles in a lot of places, tries to think of the definition from his head which he should have put into notes from official documentation, does not know what the result will be of a specific action and just says we will see what happens and sometimes looks surprised with the outcome. I don't know how good/bad the other SIEM + Splunk courses here are but this one is kind of useless.
Madupalli
September 15, 2022
It is a great learning session & useful for learners & professionals , thank u for given wonderful opportunity to learn ...
Richard
February 22, 2021
This course is the worst ever, there are more hesitations that cut your understanding that key information. Checking just the introduction is a nightmare. THE WORST COURSE EVER…. And I’ve bought so far over 50 courses…
Paul
January 13, 2021
The person narrating the course, even though knowledgeable is not professional enough to be doing this. It is way to unpolished and hard to follow.
Jym
December 27, 2020
Instructor explains concepts clearly. However there should be practical demos. example how to detect a brute force attack in real time
Karl
July 8, 2020
Instructor clearly just copy/pasted his seminar into this, so videos are longer than they need to be. Additionally instructor speaks very quickly. Information is great though.
Chandrasekaran
July 8, 2020
Yes.I got a very good understanding of SIEM and way to go further. Thanks Udemy for this wonderful course. WIll subscribe to new courses in future as and when my need increases.
Thariya
June 3, 2020
This is very very important Tutorial series for those who are seeking to increase their skillset and knowledge. This very valuable for me and my carrier. Thank you.
Mahmudul
May 27, 2020
the splunk videos are long with less content in it...it seems like a recording from a class...the instructor should have edited these videos before uploading it here.
Syed
May 12, 2020
Yes, Its a perfect match according to my career, as i want to become the SOC analyst. It is a right course for me.
Erfan
May 9, 2020
Personally, I believe that this course is very useful based on its syllables but I would prefer better quality of voice and video.
Syed
February 29, 2020
The instructor mumbling and he is not able to present the lecture clearly and efficiently. Udemy should look at the video before approval to add in sale.
Ram
January 29, 2020
Excellent course for the professionals who want to enter/know SIEM or to improve their existing skill set.. Lecturer is a real time professional who has in-depth knowledge of what he is teaching and making sure that it reaches to listeners... Also for the guys who want to learn Splunk..
Souha
January 10, 2020
This course lays the foundation for SIEM, the instructor is a working professional and gave real time examples which made it easier to understand. Expecting more sections to be added, Highly recommend to Beginners!

Charts

Price

A Guide to Security Information and Event Management - SIEM - Price chart

Rating

A Guide to Security Information and Event Management - SIEM - Ratings chart

Enrollment distribution

A Guide to Security Information and Event Management - SIEM - Distribution chart

Related Topics

2741966
udemy ID
1/6/2020
course created date
1/28/2020
course indexed date
Bot
course submited by