LDR551: BUILDING AND LEADING SECURITY OPERATIONS CENTERS (CERTIFIANTE)
Catégorie
TECHNOLOGIE DE L'INFORMATION
Sous-catégorie
Système d'information
Code
SIF009
Objectifs de la formation
Construct a strong SOC foundation based on a clear mission, charter, and organizational goals.
Collect the most important logs and network data .
Build, train, and empower a diverse team.
Create playbooks and manage detection use cases.
Use threat intelligence to focus detection efforts on true priorities.
Apply threat hunting process and active defense strategies.
Implement efficient alert triage and investigation workflow.
Operate effective incident response planning and execution.
Choose metrics and long-term strategy to improve the SOC.
Employ team member training, retention, and prevention of burnout.
Perform SOC assessment through capacity planning, purple team testing, and adversary emulation.
Programme de la formation
SOC Design and Operational Planning. SOC Telemetry and Analysis. Attack Detection, Hunting, and Triage. Incident Response. Metrics, Automation, and Continuous Improvement.
Public cible
Security Operations Center managers or leads • Security directors • New Security Operations team members • Lead/senior SOC analysts • Technical CISOs and security directors
Durée (Jours)
5
Nombre de place min
8
Nombre de place max
12
Formateur
SANS INSTITUTE



