Cyber Security Blue Team: Incident Responder Series - Part 1
In the IR processes, we will develop rules for each MITRE ATT&CK TTP in Suricata, Sysmon, and Splunk and write examples.
4.59 (90 reviews)

4,636
students
2 hours
content
Sep 2023
last update
$19.99
regular price
What you will learn
You will be fully proficient in Cyber Security Incident Response processes.
You will learn to develop advanced rules in SIEM, EDR, and NIDS tools.
During an incident, you will be able to quickly develop analysis and detection rules, allowing for immediate intervention.
You will be able to learn and test the attack and defense commands of almost all the tactics and techniques of MITRE ATT&CK.
Screenshots




5522810
udemy ID
8/26/2023
course created date
9/7/2023
course indexed date
Bot
course submited by