CISM 2020: Detecting Security Anomalies
CISM
| Intermediate
- 10 videos | 56m 26s
- Includes Assessment
- Earns a Badge
Information security managers must have the most efficient tools to detect potential security incidents at their disposal. In this course, you'll explore several tools that can be used to detect anomalies and learn how to take action to mitigate these anomalies. You'll learn to differentiate intrusion detection from intrusion prevention, before using Snort for network anomaly detection. You'll then examine how honeypots provide insight related to malicious user techniques. Next, you'll analyze various types of Windows logs, before working with logging in Linux. Lastly, you'll configure data loss prevention in the cloud, view compliance reports, and outline how SIEM and SOAR can be used for incident detection and response. This course is one of a collection of courses that prepares learners for the Certified Information Security Manager (CISM) certification.
WHAT YOU WILL LEARN
-
Discover the key concepts covered in this courseRecognize how security baselines can help identify potential indicators of compromiseIdentify how ipd and ips systems differDeploy snort to detect network anomaliesRecall how honeypots and honeynets provide valuable insight related to attacker methods
-
View and filter windows logsEnable linux logging to a central logging hostIdentify cloud configuration security violationsRecognize how centralized incident and log analysis and correlation are part of an ismsSummarize the key concepts covered in this course
IN THIS COURSE
-
1m 52s
-
5m 21sAfter completing this video, you will be able to recognize how security baselines can help identify potential security risks. FREE ACCESS
-
6m 25sIn this video, you will identify how IPD and IPS systems differ. FREE ACCESS
-
9m 58sDuring this video, you will learn how to deploy Snort to detect network anomalies. FREE ACCESS
-
4m 47sAfter completing this video, you will be able to recall how honeypots and honeynets provide valuable insight related to attacker methods. FREE ACCESS
-
8m 38sIn this video, you will view and filter Windows Event logs. FREE ACCESS
-
6m 50sIn this video, you will learn how to enable Linux logging to a central logging server. FREE ACCESS
-
6m 30sIn this video, you will identify security violations in cloud configurations. FREE ACCESS
-
5m 2sUpon completion of this video, you will be able to recognize how centralized incident and log analysis and correlation are part of an Information Security Management System. FREE ACCESS
-
1m 2s
EARN A DIGITAL BADGE WHEN YOU COMPLETE THIS COURSE
Skillsoft is providing you the opportunity to earn a digital badge upon successful completion on some of our courses, which can be shared on any social network or business platform.
Digital badges are yours to keep, forever.