When you enroll through our links, we may earn a small commission—at no extra cost to you. This helps keep our platform free and inspires us to add more value.

pluralsight logo

Incident Investigation with IBM Security QRadar

The incident response team is responsible for investigating offenses, determining the impact of incidents, and creating eradication/remediation plans. This course will teach you how to respond to cyber incidents using the IBM Security QRadar SIEM.

     0 |
  • Reviews ( 0 )
Free

This Course Includes

  • iconpluralsight
  • icon0 (0 reviews )
  • icon1 hour 44 minutes
  • iconenglish
  • iconOnline - Self Paced
  • iconcore courses
  • iconpluralsight

About Incident Investigation with IBM Security QRadar

The IBM Security QRadar is a complete SIEM solution that helps you to detect threats and investigate incidents. In this course, Incident Investigation with IBM Security QRadar, you'll learn how to respond to cybersecurity incidents using the QRadar SIEM solution. First, you'll explore the overall incident response process and the QRadar investigation best practices. Next, you'll discover through our demos how to find indicators of compromise and investigate the main incident types using the SIEM. Finally, you'll learn how to define a proper containment, eradication, and recovery plan. When you're finished with this course, you'll have the skills and knowledge of QRadar needed to respond to cyber incidents.

What You Will Learn?

  • Course Overview : 1min.
  • The Incident Response Process : 17mins.
  • Incident #1: The Compromised AWS Cloud : 45mins.
  • Incident #2: The Botnet : 40mins.