Programa del Curso
Introduction & Course Orientation
- Course objectives, expected outcomes, and lab environment setup
- Overview of EDR concepts and OpenEDR platform architecture
- Understanding endpoint telemetry and data sources
OpenEDR Deployment
- Installing OpenEDR agents on Windows and Linux endpoints
- Setting up the OpenEDR server and dashboards
- Configuring basic telemetry and logging
Basic Detection and Alerting
- Understanding event types and their significance
- Configuring detection rules and thresholds
- Monitoring alerts and notifications
Event Analysis & Investigation
- Analyzing events for suspicious patterns
- Mapping endpoint behaviors to common attack techniques
- Using OpenEDR dashboards and search tools for investigation
Response & Mitigation
- Responding to alerts and suspicious activity
- Isolating endpoints and mitigating threats
- Documenting actions and integrating into incident response
Integration & Reporting
- Integrating OpenEDR with SIEM or other security tools
- Generating reports for management and stakeholders
- Best practices for continuous monitoring and alert tuning
Capstone Lab & Practical Exercises
- Hands-on lab simulating real-world endpoint threats
- Applying detection, analysis, and response workflows
- Review and discussion of lab results and lessons learned
Summary and Next Steps
Requerimientos
- An understanding of basic cybersecurity concepts
- Experience with Windows and/or Linux administration
- Familiarity with endpoint protection or monitoring tools
Audience
- IT and security professionals starting with endpoint detection tools
- Cybersecurity engineers
- Small to mid-sized business security staff
Testimonios (4)
El capacitador estaba muy bien informado y se tomó el tiempo para brindar una muy buena visión de los problemas de seguridad cibernética. Muchos de estos ejemplos podrían usarse o modificarse para nuestros alumnos y crear algunas actividades de lección muy atractivas.
Jenna - Merthyr College
Curso - Fundamentals of Corporate Cyber Warfare
Traducción Automática
Habilidades de Pentester que demuestran el profesor
Oleksii Adamovych - EY GLOBAL SERVICES (POLAND) SP Z O O
Curso - Ethical Hacker
Traducción Automática
El instructor tiene una gama muy amplia de conocimientos y está comprometido con lo que hace. Es capaz de interesar al oyente con su curso. El alcance de la capacitación cumplió plenamente con mis expectativas.
Karolina Pfajfer - EY GLOBAL SERVICES (POLAND) SP Z O O
Curso - MasterClass Certified Ethical Hacker Program
Traducción Automática
Todo es excelente
Manar Abu Talib - Dubai Electronic Security Center
Curso - MITRE ATT&CK
Traducción Automática