FortiSIEM Analyst (FORT-SIEM)

 

Who should attend

Security professionals responsible for the detection, analysis, and remediation of security incidents using FortiSIEM should attend this course.

Prerequisites

You must have an understanding of the topics covered in the following courses, or have equivalent experience.

Course Objectives

After completing this course, you should be able to:

  • Describe how FortiSIEM solves common cybersecurity challenges
  • Describe the main components and the unique database architecture on FortiSIEM
  • Perform real-time and historical searches
  • Define structured search operators and search conditions
  • Reference the CMDB data in structured searches
  • Add display fields and columns
  • Build queries from search results and events
  • Build nested queries and lookup tables
  • Build rule subpatterns and conditions
  • Identify critical interfaces and processes
  • Create rules using baselines
  • Analyze a profile report
  • Analyze anomalies against baselines
  • Analyze the different incident dashboard views
  • Refine and tune incidents
  • Clear an incident
  • Export an incident report
  • Create time-based and pattern-based clear conditions
  • Configure automation policies
  • Configure remediation scripts and actions
  • Differentiate between manual and automatic remediation
  • Configure notifications

Detailed Course Outline

  • 1. Introduction to FortiSIEM
  • 2. Analytics
  • 3. Nested Queries and Lookup Tables
  • 4. Rules and Subpatterns
  • 5. Performance Metrics and Baselines
  • 6. Incidents
  • 7. Clear Conditions and Remediation

Prices & Delivery methods

Online Training

Duration
2 days

Price
  • US $ 1,900
Classroom Training

Duration
2 days

Price
  • United States: US $ 1,900

Click on town name or "Online Training" to book Schedule

Instructor-led Online Training:   This is an Instructor-Led Online (ILO) course. These sessions are conducted via WebEx in a VoIP environment and require an Internet Connection and headset with microphone connected to your computer or laptop. If you have any questions about our online courses, feel free to contact us via phone or Email anytime.

United States

Online Training Time zone: Central Daylight Time (CDT) This course is being delivered by a partner Enroll
Online Training Time zone: Eastern Daylight Time (EDT) This course is being delivered by a partner Enroll