OffSec - SOC200

SOC-200: Foundational Security Operations and Defensive Analysis(線上課程及認證考試方案)

SOC-200: Foundational Security Operations and Defensive Analysis
  • 時數:0小時
  • 費用:NT$ 57,570
  • 點數:不適用企業點數

選擇查詢分區開課時間

地點 班號 日期 時間 預約

目前查無開課時段

詳細開課時間請洽詢業務
新竹、台中、高雄如有上課需求,請參考台北開課日期,洽當地服務人員依需求加開遠距開課日期

聯絡恆逸

教材

原廠電子教材

課程目標

Learn the foundations of cybersecurity defense with Foundational Security Operations and Defensive Analysis (SOC-200), a course designed for job roles such as Security Operations Center (SOC) Analysts and Threat Hunters. Learners gain hands-on experience with a SIEM, identifying and assessing a variety of live, end-to-end attacks against a number of different network architectures. Learners who complete the course and pass the exam earn the OffSec Defense Analyst (OSDA) certification, demonstrating their ability to detect and assess security incidents.

線上課程方案介紹 (恆逸金銀卡會員另有優惠)

● Course & Cert Exam Bundle:NT57,570/一次性(含90天Lab與1次考試)

● Learn One: NT90,490/一年(含365天Lab與2次考試)

● Learn Unlimited:NT200,000/(含365天Lab與無限次考試)

適合對象

  1. Job roles like: Security Operations Center (SOC) Tier 1, Tier 2 and Tier 3 Analysts, Jr. roles in Threat Hunting and Threat Intelligence Analysts, Jr. roles in Digital Forensics and Incident Response (DFIR)
  2. Anyone interested in detection and security operations, and/or committed to the defense or security of enterprise networks

預備知識

  1. SOC-100: Linux Basics 1 & 2
  2. SOC-100: Windows Basics 1 & 2
  3. SOC-100: Networking Basics

課程內容

  1. Attacker Methodology
  2. Windows Endpoint Introduction
  3. Windows Server Side Attacks
  4. Windows Client Side Attacks
  5. Windows Privilege Escalation
  6. Linux Endpoint Introduction
  7. Linux Server-Side Attacks
  8. Linux Privilege Escalation
  9. Windows Persistence
  10. Network Detections
  11. Antivirus Detections
  12. Active Directory Enumeration
  13. Network Evasion and Tunneling
  14. Windows Lateral Movement
  15. Active Directory Persistence
  16. SIEM Part One: Intro to ELK
  17. SIEM Part Two: Combining the Logs

學會技能

  1. Recognize common methodologies for end-to-end attack chains (MITRE ATT&CK® framework)
  2. Conduct guided audits of compromised systems across multiple operating systems
  3. Use a SIEM to identify and assess an attack as it unfolds live

備註事項

推薦課程