Home Palo Alto Networks Training CoursesPalo Alto Networks Cortex XSIAM for Security Operations & Automation
Palo Alto Networks Cortex XSIAM for Security Operations & Automation
Guaranteed to Run
Price
$3,995.00
Duration
4 Days
Delivery Methods
Virtual Instructor Led Private Group
Delivery
Virtual
ESTDescription
Objectives
Prerequisites
Content
Course Description
This four-day instructor-led training enabled you deploy and manage Cortex XSIAM to collect and ingest various data sources, logs and alerts, to drive machine learning for natively autonomous response actions, such as cross-correlation of alerts and data, detection of highly sophisticated threats, and automated remediation based on native threat intelligence and attack surface data.
Course Objectives
- Deploy and manage Cortex XSIAM
- Collect and ingest various data sources
- Drive machine learning for natively autonomous response actions
- Detect highly sophisticated threats
- Create auto-remediation responses
Who Should Attend?
SOC/CERT/CSIRT/XSIAM engineers, MSSPs and service delivery partners/system integrators, professional-services consultants, and sales engineers, both internal and external, SOC managers, IR, and hunt team members.
Course Prerequisites
Participants must be familiar with enterprise product deployment, networking, and security concepts
Course Content
Module 1: Introduction and Core Concepts
- Overview of Cortex XSIAM platform
- Key elements of modern security operations
- Understanding the SOC maturity model
Module 2: Deployment and Data Ingestion
- Agent deployment and configuration
- Integrating and ingesting data sources for analysis
Module 3: Visibility and Data Modeling
- Achieving full network and endpoint visibility
- Understanding and leveraging the XSIAM data model
Module 4: Analytics, Detection, and Attack Surface Management
- Applying analytics for proactive threat detection
- Configuring alerting mechanisms
- Managing and reducing the attack surface
Module 5: Automation and Incident Handling
- Automating repetitive SOC workflows
- Managing incidents and response operations within the SOC
Do You Need Help? Please Fill Out The Form Below