on 2016-07-08 06:39 PM
In order to register for a class, you need to first create a Dell Education account
if you need further assistance, contact us.
Summary
This instructor-led course provides experience using the features and functions of RSA NetWitness Platform to to respond to and investigate incidents.
Overview
This instructor-led classroom-based course provides hands-on experience using the RSA NetWitness Platform to investigate and remediate security incidents. The course consists of about 50% hands-on lab work, following a practical methodology from the incident queue through investigation, event reconstruction, damage assessment, and documentation using real-world use cases.
Audience
Level 1 and Level 2 analysts relatively new to RSA NetWitness Platform, who wish to increase their familiarity with the tool’s features and functions within the context of incident response and analysis.
Duration
2 days
Prerequisite Knowledge/Skills
Students should have familiarity with the basic processes of cybersecurity forensic analysis, including some knowledge of network architecture, the TCP/IP stack, networking protocols, and integrating log & network traffic to perform analysis on network-based security events.
Students should have completed the following courses (or have equivalent knowledge) prior to taking this training:
RSA NetWitness Platform Foundations
Course Objectives
Upon successful completion of this course, participants should be able to:
Course Outline
Analysis Tools and Processes
SOC Analyst
Investigative Methodology
Incident Response Tools
Investigating Metadata
NetWitness Metadata
Identifying Anomalies
Threat Examples
Analysis Use Cases
In order to register for a class, you need to first create a Dell Education account
If you need further assistance, contact us