Security Operations and Management
-
Understand the SOC Fundamentals
-
Discuss the Components of SOC: People, Processes and Technology
-
Understand the Implementation of SOC
Pelatihan Certified SOC Analyst (CSA) berdurasi 3 hari ini adalah langkah pertama yang krusial untuk bergabung dengan Security Operations Center (SOC). Program… Pelatihan Certified SOC Analyst (CSA) berdurasi 3 hari ini adalah langkah pertama yang krusial untuk bergabung dengan Security Operations Center (SOC). Program intensif ini dirancang khusus bagi analis SOC Tier I dan Tier II agar mahir dalam operasional dasar hingga menengah, termasuk log management, penerapan SIEM, dan incident response.
Membangun lini pertahanan siber yang kuat membutuhkan talenta yang sigap dalam menganalisis dan merespons ancaman di garis depan. Program Certified SOC Analyst (CSA) adalah pelatihan dan kredensial yang memfokuskan peserta untuk memperoleh keterampilan teknis yang sedang tren dan sangat diminati di industri keamanan siber.
Pelatihan intensif selama 3 hari ini akan membahas tuntas fundamental operasi SOC, sebelum masuk lebih dalam ke manajemen dan korelasi log (log management and correlation), deployment SIEM (seperti Splunk, AlienVault, OSSIM, ELK), deteksi insiden lanjutan, serta penanganan insiden (incident response). Anda juga akan diajarkan cara mengidentifikasi Indicators of Compromise (IOCs), mengelola proses triaging peringatan, hingga berkolaborasi dengan Computer Security Incident Response Team (CSIRT).
Program CSA akan membekali Anda dengan pengetahuan ekstensif dan cermat untuk berkontribusi secara dinamis di dalam tim SOC, sekaligus membuka peluang karir yang luas sebagai analis keamanan siber.
Analis SOC tingkat L1/L2.
Administrator Jaringan/Keamanan, Engineer, dan Teknisi Pertahanan Jaringan.
Analis Cybersecurity dan profesional cybersecurity tingkat pemula (entry-level).
Untuk melamar sertifikasi ini, pengalaman kerja 1 tahun di bidang Admin Jaringan/Keamanan adalah wajib.
Namun, jika peserta mengikuti pelatihan resmi ini, syarat pengalaman kerja tersebut tidak diperlukan.
Setelah mengikuti pelatihan ini, peserta diharapkan mampu:
Rincian 6 modul kurikulum resmi CSA yang mencakup operasi SOC, pemahaman metodologi serangan, teknik deteksi berbasis SIEM, hingga integrasi threat intelligence dan respons insiden.
Understand the SOC Fundamentals
Discuss the Components of SOC: People, Processes and Technology
Understand the Implementation of SOC
Describe the term Cyber Threats and Attacks
Understand the Network Level Attacks
Understand the Host Level Attacks
Understand the Application Level Attacks
Understand the Indicators of Compromise (IoCs)
Discuss the Attacker’s Hacking Methodology
Understand the Fundamentals of Incidents, Events, and Logging
Explain the Concepts of Local Logging
Explain the Concepts of Centralized Loggings
Understand the Basic Concepts of Security Information and Event Management (SIEM)
Discuss the Different SIEM Solutions
Understand the SIEM Deployment
Learn Different Use Case Examples for Application Level Incident Detection
Learn Different Use Case Examples for Insider Incident Detection
Learn Different Use Case Examples for Network Level Incident Detection
Learn Different Use Case Examples for Host Level Incident Detection
Learn Different Use Case Examples for Compliance
Understand the Concept of Handling Alert Triaging and Analysis
Learn Fundamental Concepts on Threat Intelligence
Learn Different Types of Threat Intelligence
Understand How Threat Intelligence Strategy is Developed
Learn Different Threat Intelligence Sources from which Intelligence can be Obtained
Learn Different Threat Intelligence Platform (TIP)
Understand the Need of Threat Intelligence-driven SOC
Understand the Fundamental Concepts of Incident Response
Learn Various Phases in Incident Response Process
Learn How to Respond to Network Security Incidents
Learn How to Respond to Application Security Incidents
Learn How to Respond to Email Security Incidents
Learn How to Respond to Insider Incidents
Learn How to Respond to Malware Incidents