Home | Back to Courses
Threat Hunting and Defending 300-220 CBRTHD

Partner: Udemy
Affiliate Name:
Area:
Description: Course Description: Conducting Threat Hunting and Defending using Cisco Technologies for CyberOps v1.0 (300-220)This course prepares candidates for the CyberOps Professional Certification (300-220) exam, focusing on advanced threat hunting and defense using Cisco technologies. It covers:Threat Hunting Fundamentals (20%): Explore the Threat Hunting Maturity Model, understand threat modeling with standards like MITRE ATT&CK, and analyze the effectiveness of automation in SOC operations. Delve into differentiating advanced persistent threats through log analysis and threat intelligence.Threat Modeling Techniques (10%): Learn to select appropriate threat modeling approaches, apply MITRE ATT&CK tactics, and prioritize attacks based on the Cyber Kill Chain. Gain expertise in structured and unstructured threat hunting.Threat Actor Attribution Techniques (20%): Develop skills in identifying attack tactics, techniques, and procedures using logs. Recognize artifacts crucial for detecting advanced threats and distinguishing between threat actors and penetration testers.Threat Hunting Techniques (20%): Utilize scripting languages for detection, perform cloud-native hunts, and analyze endpoint artifacts for undetected threats. Learn to identify C2 communications and use code-level analysis tools for vulnerability assessment.Threat Hunting Processes (20%): Understand memory-resident attacks, reverse engineering for compromises, and identify detection gaps. Construct effective runbooks, recommend tools and configurations, and suggest remediation strategies based on assessments.Threat Hunting Outcomes (10%): Enhance data visibility through multiproduct integration, diagnose analytical gaps, and recommend mitigation strategies. Use presentation resources to convey findings and drive environmental chang
Category:
Partner ID:
Price: 19.99
Commission:
Source: Impact
Go to Course