הקורסים המוזמנים לארגונים מותאמים באופן אישי ומלא לצרכי הארגון, מערכי הלימוד גמישים וניתן לשלב בהם תכנים רלוונטיים וייעודיים.
מרצים מומחים ומנוסים מהתעשייה
למידה מתקדמת בהתאמה אישית
התפתחות ושדרוג מקצועי
חוויית למידה חדשנית ומקיפה
ליווי וייעוץ מקצועי
חומרי לימוד ייחודיים ובלעדיים
על הקורס בקצרה
SOC Analyst, הוא תפקיד מרכזי בתחום אבטחת סייבר. הוא הגורם האחראי על ניטור וזיהוי איומים ברשת הארגונית. הוא פועל במרכז ניהול האבטחה (SOC) – מרכז שליטה ובקרה שתפקידו להגן על המידע הארגוני מפני התקפות סייבר.
הקורס יכשיר את המשתתפים לתפקיד SOC Analyst.
מטרות הקורס
להקנות למשתתפים יכולת לנהל ולנטר רשתות דומיין של Windows, להפעיל מערכות אבטחה מתקדמות ולצוד איומים פוטנציאליים בצורה יזומה.
למי מיועד הקורס
תכנית הלימודים
תכני הקורס
This focused module centers on Sysmon, a powerful Windows system monitoring tool. It teaches learners how to use Sysmon for comprehensive event logging, contributing to a deeper understanding of Windows domain operations.
Windows Server
Installing Windows Server
Configuring Windows Server
Managing Features
Windows Events
Sysmon
Windows Domain
Installing AD DS
Configuring AD DS
Managing Domain Protocols
Working with Group Policy
Working with Wireshark
This module includes the Firewalls configuration and management using pfSense, including the creation of firewall and NAT rules. It involves real-time system monitoring and explores Intrusion Detection and Prevention Systems (IDS/IPS). Participants gain hands-on experience with Snort, understanding rule structures, configuration, and advanced traffic analysis using the NAT feature.
Firewalls
pfSense Installation
Configuring FW Rules
Configuring NAT Rules
Installing and Managing Packages
Real-Time Monitoring
IDS/IPS
Working with Snort
Snort Rules Structure
Setting and Configuring Rules
Passing Traffic using the NAT Feature
Analyzing Advanced Rules
This module guides participants through the essential components of Security Information and Event Management (SIEM). It initiates with the exploration of ELK stack, covering event monitoring, search methods, custom queries, and alert settings. The latter part delves into Splunk, teaching how to monitor events, the fundamentals of Search Processing Language (SPL).
ELK
Monitoring Events
Different Search Methods
Custom Queries
Setting Alerts
Splunk
Monitoring with Splunk
Splunk Alerts
This module immerses participants into advanced aspects of cybersecurity. It begins with comprehensive log analysis, incorporating advanced filtering and threat hunting via events and MITRE ATT&CK. Participants work with Sysmon and its configuration, followed by exploring YARA for rule creation and threat hunting.
באתר זה נעשה שימוש בטכנולוגיות איסוף מידע כגון Cookies, לרבות על ידי צדדים שלישיים, כדי לספק לך חווית גלישה טובה יותר וכן למטרות סטטיסטיקה, אפיון ופרסום.
המשך הגלישה באתר מהווה את הסכמתך לכך. מידע נוסף ואפשרויות לניהול השימוש באמצעים אלה נכללים במדיניות הפרטיות.
פונקציונליות
Always active
האחסון הטכני או הגישה הכרחיים באופן מוחלט למטרה הלגיטימית של לאפשר שימוש בשירות ספציפי שביקש המנוי או המשתמש באופן מפורש, או למטרה הבלעדית של ביצוע העברת תקשורת ברשת תקשורת אלקטרונית.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
סטטיסטיקה
האחסון הטכני או הגישה משמשים אך ורק למטרות סטטיסטיות אנונימיות.The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
שיווק
האחסון הטכני או הגישה נדרשים ליצירת פרופילי משתמשים כדי לשלוח פרסום מותאם אישית, או כדי לעקוב אחרי המשתמש באתר זה או במספר אתרים למטרות שיווק דומות.