Carian Kursus

[ KCA0085 ] Kursus Security Information and Event Management (SIEM) Menggunakan Micro Focus Sentinel [ Siri 1/2023 ]

Sinopsis Kursus

Kursus ini bertujuan untuk memberikan pendedahan tentang pemantauan dan pengendalian insiden keselamatan siber menggunakan Perisian Micro Focus Sentinel Enterprise. 

Objektif Kursus
  1. Meningkatkan kemahiran pemantauan keselamatan siber dengan menggunakan perisian Micro Focus Sentinel Enterprise (SIEM).
  2. Mengenalpasti dan mengendali ancaman keselamatan siber dengan menggunakan perisian Micro Focus Sentinel Enterprise (SIEM).
  3. Memahami cara menggunakan perisian Micro Focus Sentinel Enterprise (SIEM) secara terperinci melalui latihan amali di dalam kelas.
Syarat Tambahan

Peserta perlu mempunyai pengetahuan asas berkaitan pengoperasian komputer dan rangkaian. 

Modul/Topik
Hari Pertama | 25/09/2023 | Isnin
Masa/Sesi Topik
SESI 1 : 08.30 Pagi - 10.30 Pagi
: Topic 1: Introduction to Sentinel • SIEM Approach • Introduction to Sentinel Component • Installation Overview
SESI 2 : 11.00 Pagi - 01.00 Petang
: Topic 2: Sentinel Installation • Operating System • Uninstallation Sentinel • Sentinel Port Requirements
SESI 3 : 02.30 Petang - 04.30 Petang
: Topic 3: Sentinel Administrative Setup II • Integration • Plug-ins • Appliance | Topic 4: Sentinel Administrative Setup I • Configuring Roles and Users • Managing Collector and Event Source • Control Centre • Storage
Hari Ke-2 | 26/09/2023 | Selasa
Masa/Sesi Topik
SESI 1 : 08.30 Pagi - 10.30 Pagi
: Topic 5: Security Intelligence • SI Functionality • Create SI • Abnormal Spike/Anomaly
SESI 2 : 11.00 Pagi - 01.00 Petang
: Topic 6: Device Health Check • Device Last Trigger Log Alert • No Data Alert (Record Purposes) • Troubleshooting | Topic 7: Report • Create report • Customize report
SESI 3 : 02.30 Petang - 04.30 Petang
: Technical Support and Configuration I & II (hands-on)
Hari Ke-3 | 27/09/2023 | Rabu
Masa/Sesi Topik
SESI 1 : 08.30 Pagi - 10.30 Pagi
: Topic 8: Correlation Rules • Use Case Manager • Create rules
SESI 2 : 11.00 Pagi - 01.00 Petang
: Topic 9: Alerts & Filter • Use Case Manager • Create rules & filter | Topic 10: Report & Escalation • Analyse based on alerts • Report to respective team • Mitigation
SESI 3 : 02.30 Petang - 04.30 Petang
: Technical Support and Configuration III & IV (hands-on)