CompTIA CASP+: Monitoring & Incident Response
CompTIA
| Intermediate
- 15 videos | 1h 27m 43s
- Includes Assessment
- Earns a Badge
Enterprise IT monitoring is crucial in detecting potential security incidents. In this course, you'll explore various monitoring methods for hosts, devices, and networks. Next, you'll learn to configure log forwarding and work with logs through PowerShell. Moving on, you'll learn to recognize when to use honeyfiles, honeypots, and honeynets, as well as SIEM and SOAR solutions. You'll then examine intrusion detection and prevention and how they are used to secure a network. Lastly, you'll explore the use of tools such as Snort, tcpdump, nmap, and Wireshark for analyzing networks and network traffic. This course is one of a collection of courses that prepares learners for the CompTIA Advanced Security Practitioner (CASP+) CAS-004 exam.
WHAT YOU WILL LEARN
-
Discover the key concepts covered in this courseIdentify the various levels of it monitoringEnable syslog forwarding in linuxManage windows logs using the guiManage cloud-based loggingDifferentiate between honeynets, honeypots, and honeyfilesDescribe how ids and ips are used to secure a networkInstall snort ids
-
Test snort ids rulesRecognize reasons for using siem and soar solutionsUse tcpdump to capture network trafficUse wireshark to filter captured network trafficUse nmap to discover hosts and network servicesUse packettotal.com to analyze packetsSummarize the key concepts covered in this course
IN THIS COURSE
-
1m 37s
-
9m 25s
-
6m 14s
-
5m 21s
-
7m 10s
-
4m 51s
-
9m 22s
-
5m 52s
-
4m 11s
-
5m 31s
-
5m 34s
-
7m 27s
-
6m 40s
-
7m 22s
-
1m 5s
EARN A DIGITAL BADGE WHEN YOU COMPLETE THIS COURSE
Skillsoft is providing you the opportunity to earn a digital badge upon successful completion on some of our courses, which can be shared on any social network or business platform.
Digital badges are yours to keep, forever.