SOAR360L – ArcSight SOAR-3.2 Configuring ArcSight SOAR for Effective Threat Response-L3xx

Course code: SOAR360L

This course teaches you how to configure ArcSight SOAR to receive alerts, integrate with other products, and create Playbooks.

2 412 EUR

2 919 EUR including VAT

The earliest date from 08.07.2024

Selection of dates
onas
Do you have a question?
+420 731 175 867 edu@edutrainings.cz

Professional
and certified lecturers

Internationally
recognized certifications

Wide range of technical
and soft skills courses

Great customer
service

Making courses
exactly to measure your needs

Course dates

Starting date: 08.07.2024

Type: Virtual

Course duration: 3 days

Language: en

Price without VAT: 2 412 EUR

Register

Starting date: Upon request

Type: In-person/Virtual

Course duration: 3 days

Language: en

Price without VAT: 2 412 EUR

Register

Starting
date
Place
Type Course
duration
Language Price without VAT
08.07.2024 Virtual 3 days en 2 412 EUR Register
Upon request In-person/Virtual 3 days en 2 412 EUR Register
G Guaranteed course

Didn't find a suitable date?

Write to us about listing an alternative tailor-made date.

Contact

Target group

This course is designed for Security Content Developers, who may be Analysts or Administrators.

Course structure

  • Challenges faced by Organizations
  • What is the ArcSight SOAR?
  • ArcSight SOAR Features.
  • Deployment Overview of ArcSight SOAR. Accessing ArcSight SOAR
  • Install a Forwarding Connector on ESM
  • Configure a Forwarding Connector User and Web User on ESM Configure Pre-persistent rule to Tag the Events Forwarded to SOAR Add an ESM
  • Alert Source on SOAR
  • Add an ESM Integration on SOAR

Understanding the SOAR Workflow Processing ESM Alerts with SOAR

  • Rule Name Filters
  • Classification
  • Consolidation
  • Dispatching Cases
  • Automating case Handling using Playbooks
  • SOAR Integrations Overview
  • SOAR Integrations Capabilities
  • Use Cases & Benefits
  • Integrating SOAR with MISP
  • Integrating SOAR with VirusTotal
  • What are Playbooks?
  • Working with Playbooks
  • Workflow Playbooks
  • Scheduled Playbooks
  • Managing Triggers
  • Handling Manual Processes Through Tasks Out of The Box Workflows
  • Alerts
  • Action and Rollback Queues Action History
  • Enrichment History
  • Process Queues Troubleshooting
  • Reports in Fusion
  • ArcSight SOAR Standard Content Resources Schedule and Export Reports
  • Running SOAR Legacy Reports (Jasper Reports)

Prerequisites

This course assumes a familiarity working with ArcSight ESM but it is not required.

Do you need advice or a tailor-made course?

onas

product support

ComGate payment gateway MasterCard Logo Visa logo