Cisco - Performing CyberOps Using Cisco Security Technologies (CBRCOR) v1.0

Dauer

Dauer:

Nur 5 Tage

Methode

Methode:

Klassenraum / Online / Hybrid

nächster Termin

nächster Termin:

10.2.2025 (Montag)

Overview

The accelerated Performing CyberOps Using Cisco Security Technologies (CBRCOR) v1.0 course, guides you through cybersecurity operations fundamentals, methods, and automation. The knowledge you gain in this training will prepare you for the role of Information Security Analyst on a Security Operations Center (SOC) team. You will learn foundational concepts and their application in real-world scenarios, and how to leverage playbooks in formulating an Incident Response (IR).

This course teaches you how to use automation for security using cloud platforms and a SecDevOps methodology. You will learn the techniques for detecting cyberattacks, analyzing threats, and making appropriate recommendations to improve cybersecurity. This training will help you: Gain an advanced understanding of the tasks involved for senior-level roles in a security operations center Configure common tools and platforms used by security operation teams via practical application Prepare you to respond like a hacker in real-life attack scenarios and submit recommendations to senior management

In just 5 days, you’ll also learn how to:

  • Describe the types of service coverage within a SOC and operational responsibilities associated with each.
  • Compare security operations considerations of cloud platforms.
  • Describe the general methodologies of SOC platforms development, management, and automation.
  • Explain asset segmentation, segregation, network segmentation, micro-segmentation, and approaches to each, as part of asset controls and protections.
  • Describe Zero Trust and associated approaches, as part of asset controls and protections.
  • Perform incident investigations using Security Information and Event Management (SIEM) and/or security orchestration and automation (SOAR) in the SOC.
  • Use different types of core security technology platforms for security monitoring, investigation, and response.
  • Describe the DevOps and SecDevOps processes.
  • Explain the common data formats, for example, JavaScript Object Notation (JSON), HTML, XML, Comma-Separated Values (CSV).
  • Describe API authentication mechanisms.
  • Analyze the approach and strategies of threat detection, during monitoring, investigation, and response.
  • Determine known Indicators of Compromise (IOCs) and Indicators of Attack (IOAs).
  • Interpret the sequence of events during an attack based on analysis of traffic patterns.
  • Describe the different security tools and their limitations for network analysis (for example, packet capture tools, traffic analysis tools, network log analysis tools).
  • Analyze anomalous user and entity behavior (UEBA).
  • Perform proactive threat hunting following best practices.

At the end of this course, you’ll sit the Cisco exam, and achieve your Performing CyberOps Using Cisco Security Technologies (CBRCOR) v1.0 certification. Through Firebrand’s Lecture | Lab | Review methodology, you’ll get certified at twice the speed of the traditional training and get access to courseware, learn from certified instructors, and train in a distraction-free environment.

 

Audience

This course is ideal for:

  • Cybersecurity engineer
  • Cybersecurity investigator
  • Incident manager
  • Incident responder
  • Network engineer
  • SOC analysts currently functioning at entry level with a minimum of 1 year of experience 

Benefits

In einem Firebrand Intensiv-Training profitieren Sie von folgenden Vorteilen:

  • Zwei Optionen - Präsenz- oder Onlinetraining
  • Ablenkungsfreie Lernumgebung
  • Eigene Trainings- und Prüfungszentren (Pearson VUE Select Partner)
  • Effektives Training mit praktischen Übungseinheiten und intensiver Betreuung durch unsere Trainer
  • Umfassendes Leistungspaket mit allem, was Sie benötigen, um Ihre Zertifizierung zu erhalten, inklusive unserer Firebrand Leistungsgarantie.

Curriculum

Lab Outline:

  • Module 1: Explore Cisco SecureX Orchestration
  • Module 2: Explore Splunk Phantom Playbooks
  • Module 3: Examine Cisco Firepower Packet Captures and PCAP Analysis
  • Module 4: Validate an Attack and Determine the Incident Response
  • Module 5: Submit a Malicious File to Cisco Threat Grid for Analysis
  • Module 6: Endpoint-Based Attack Scenario Referencing MITRE ATTACK
  • Module 7: Evaluate Assets in a Typical Enterprise Environment
  • Module 8: Explore Cisco Firepower NGFW Access Control Policy and Snort Rules
  • Module 9: Investigate IOCs from Cisco Talos Blog Using Cisco SecureX
  • Module 10: Explore the ThreatConnect Threat Intelligence Platform
  • Module 11: Track the TTPs of a Successful Attack Using a TIP
  • Module 12: Query Cisco Umbrella Using Postman API Client
  • Module 13: Fix a Python API Script
  • Module 14: Create Bash Basic Scripts
  • Module 15: Reverse Engineer Malware
  • Module 16: Perform Threat Hunting
  • Module 17: Conduct an Incident Response

Exam Track

At the end of this accelerated course, you’ll sit the following exam at the Firebrand Training centre, covered Certification Guarantee:

Performing CyberOps Using Cisco Security Technologies (CBRCOR) v1.0 Exam 350-201

  • Duration: 120-minutes
  • Format: The multiple-choice format tests knowledge of core cybersecurity operations including cybersecurity fundamentals, techniques, policies, processes, and automation.
  • Domains:
    • Monitoring for cyberattacks
    • Analyzing high volume of data using automation tools and platforms—both open source and commercial
    • Accurately identifying the nature of attack and formulate a mitigation plan
    • Scenario-based questions; for example, using a screenshot of output from a tool, you may be asked to interpret portions of output and establish conclusions

What's Included

Prerequisites

Before attending this accelerated course, you should have:

  • Familiarity with UNIX/Linux shells (bash, csh) and shell commands.
  • Familiarity with the Splunk search and navigation functions
  • Basic understanding of scripting using one or more of Python, JavaScript, PHP or similar.

 

  • Recommended Cisco offering that may help you prepare for this training:
    • Understanding Cisco Cybersecurity Operations Fundamentals (CBROPS)
    • Implementing and Administering Cisco Solutions (CCNA)

  • Recommended third-party resources:
    • Splunk Fundamentals 1 Blue Team Handbook: Incident Response Edition by Don Murdoch
    • Threat Modeling- Designing for Security y Adam Shostack
    • Red Team Field Manual by Ben Clark
    • Blue Team Field Manual by Alan J White
    • Purple Team Field Manual by Tim Bryant
    • Applied Network Security and Monitoring by Chris Sanders and Jason Smith

Sind Sie sich unsicher, ob Sie die Voraussetzungen erfüllen? Wir besprechen gerne mit Ihnen Ihren technischen Hintergrund, Erfahrung und Qualifikation, um herauszufinden, ob dieser Intensivkurs der richtige für Sie ist.

Erfahrungsberichte

Bereits 134561 Kursteilnehmer haben seit 2001 erfolgreich einen Firebrand-Kurs absolviert. Unsere aktuellen Kundenbefragungen ergeben: Bei 94.70% unserer Teilnehmer wurde die Erwartungshaltung durch Firebrand übertroffen!


"Top Team aus Experten. Organisation und Ablauf sind großartig. Man sollte inhaltlich wissen, was einen Erwartet. Dozenten und Support sind jederzeit ansprechbereit."
Mathias Passmann, UNIKA. (9.10.2023 (Montag) bis 14.10.2023 (Samstag))

"Organisation, Freundlichkeit, professioneller Ansatz und vor allem ein guter Lehrer."
Anonym (5.6.2023 (Montag) bis 10.6.2023 (Samstag))

"Firebrand organisiert Unterbringung, Verpflegung und Training sehr gut. Wer es gewohnt ist, abends nochmal zurückzuschauen und eventuell Inhalte erneut durchzugehen, der wird feststellen, dass nach einem so langen Tag die Luft raus ist. Man muss tagsüber alles klären."
Ralf Bruckmann. (14.9.2020 (Montag) bis 19.9.2020 (Samstag))

"Es ist beeindruckend, wie viel Wissen man in kürzester Zeit vermittelt bekommen kann. Das Rundum-sorglos-Paket mit einem klaren Fokus."
M.R.. (14.9.2020 (Montag) bis 19.9.2020 (Samstag))

"Ich kann den Bootcamp für CCNA schwerstens empfehlen! Für jeden, der als Netzwerktechniker tätig ist und die Zertifizierung noch nicht hat, sollten dies umbedingt bei Firebrand machen. Sehr kompetente und erfahrene Trainer!"
B.A.. (3.2.2020 (Montag) bis 8.2.2020 (Samstag))

Kurstermine

Start

Ende

Verfügbarkeit

Standort

Anmelden

26.8.2024 (Montag)

30.8.2024 (Freitag)

Kurs gelaufen - Hinterlasse Kommentar

-

 

 

10.2.2025 (Montag)

14.2.2025 (Freitag)

Einige Plätze frei

Überregional

 

24.3.2025 (Montag)

28.3.2025 (Freitag)

Einige Plätze frei

Überregional

 

5.5.2025 (Montag)

9.5.2025 (Freitag)

Einige Plätze frei

Überregional

 

16.6.2025 (Montag)

20.6.2025 (Freitag)

Einige Plätze frei

Überregional

 

Neueste Rezensionen von unseren Kursteilnehmern