ARC430 – ArcSight Platform Installing and Configuring ArcSight 2021.1

Course code: ARC430

This instructor-led course teaches you how to install and configure ArcSight Platform 22.1 on-premise with the ArcSight Platform Installation program.

3 860 EUR

4 671 EUR including VAT

The earliest date from 22.07.2024

Selection of dates
onas
Do you have a question?
+420 731 175 867 edu@edutrainings.cz

Professional
and certified lecturers

Internationally
recognized certifications

Wide range of technical
and soft skills courses

Great customer
service

Making courses
exactly to measure your needs

Course dates

Starting date: 22.07.2024

Type: Virtual

Course duration: 5 days

Language: en

Price without VAT: 3 860 EUR

Register

Starting date: 07.10.2024

Type: Virtual

Course duration: 5 days

Language: en

Price without VAT: 3 860 EUR

Register

Starting date: Upon request

Type: Virtual

Course duration: 5 days

Language: en

Price without VAT: 3 860 EUR

Register

Starting
date
Place
Type Course
duration
Language Price without VAT
22.07.2024 Virtual 5 days en 3 860 EUR Register
07.10.2024 Virtual 5 days en 3 860 EUR Register
Upon request Virtual 5 days en 3 860 EUR Register
G Guaranteed course

Didn't find a suitable date?

Write to us about listing an alternative tailor-made date.

Contact

Target group

This course is designed for Security Professionals and SOC Administrators, who are responsible for deploying and administrating the ArcSight Platform within their environment.

Course structure

  • Describing the ArcSight Platform and its Architecture
  • Describing the underlying CDF infrastructure
  • Identifying the ArcSight Platform Capabilities
  • Explaining other related components to the Platform
  • Considerations and Best Practices

Describe the following:

    • System Requirements
    • Host Requirements
    • DNS requirements
    • NFS Requirements
    • ArcSight Database
    • Configuring the ArcSight Platform YAML Files
    • Installing ArcSight Platform
    • Pre-Install
    • Install
  • Recognizing and describing how events are produced
  • Describing event formats: classic (CEF) and AVRO
  • Installing a CEF Producer and AVRO Producer of events
  • Detailed walkthrough of the configuration steps and all parameters Sending Test Alerts Replay Events to Transformation Hub Validating Topics and
  • Transformation Hub Ingestion
  • Defining the difference between a Collector and Connector
  • Listing the advantages of using Collectors
  • Describing what’s needed to perform a Collector Deployment using ArcMC Deploying CTH from ArcMC and route events from th-syslog to other topics
  • Manging Topic and Routes
  • Local vs Global Event Enrichment
  • Types of Stream Processor Instances in Transformation Hub
  • Configuring Topics and Routes – Step by Step Example for Global Event Enrichment
  • Configuring the ESM and SOAR Integration Verifying a Successful Integration
  • Configuring the ESM Admin User for Single Sign-on Enabling Single Sign-on
  • Managing ArcSight Users Overview Managing ESM Users
  • Managing Fusion Users
  • Managing SOAR Users
  • Defining Recon User Permissions and Roles Defining Intelligence User Permissions and Roles

 

Prerequisites

This course assumes a familiarity working with command line tools, have experience deploying applications in Windows and Linux environments, and having computer desktop, browser, and file system navigation skills.

Do you need advice or a tailor-made course?

onas

product support

ComGate payment gateway MasterCard Logo Visa logo