A security information and event management system (SIEM) allows cyber attacks on one's own IT landscape to be actively detected in order to be able to respond to them appropriately. Thus, a SIEM is a central component of a cyber security strategy.
1 Introduction to SIEM
2 Setting up a SIEM
3 SIEM in use
This workshop will use and look at Elastic's free solution.
Interactive face-to-face instruction with live demos and hands-on exercises in a lab environment
This course is designed for IT security managers, IT staff, IT directors, security officers, security architects, security analysts, cyber threat investigators, and those working to implement continuous security monitoring or networking.
Solid knowledge of networking and TCP/IP protocols is required. Furthermore, experience in dealing with common operating systems (Windows and Linux), preferably on command line level, as well as experience in setting up computer systems and networks, is an advantage.