ARC430 – ArcSight Platform Installing and Configuring ArcSight 2021.1

Kód kurzu: ARC430

This instructor-led course teaches you how to install and configure ArcSight Platform 22.1 on-premise with the ArcSight Platform Installation program.

3 860 EUR

4 632 EUR s DPH

Najbližší termín od 22.07.2024

Výber termínov

Odborní
certifikovaní lektori

Mezinárodne
uznávané certifikácie

Široká ponuka technických
a soft skills kurzov

Skvelý zákaznicky
servis

Prispôsobenie kurzov
presne na mieru

Termíny kurzov

Počiatočný dátum: 22.07.2024

Forma: Virtuálna

Dĺžka kurzu: 5 dní

Jazyk: en

Cena bez DPH: 3 860 EUR

Registrovať

Počiatočný dátum: 07.10.2024

Forma: Virtuálna

Dĺžka kurzu: 5 dní

Jazyk: en

Cena bez DPH: 3 860 EUR

Registrovať

Počiatočný dátum: Na vyžiadanie

Forma: Virtuálna

Dĺžka kurzu: 5 dní

Jazyk: en

Cena bez DPH: 3 860 EUR

Registrovať

Počiatočný
dátum
Miesto
konania
Forma Dĺžka
kurzu
Jazyk Cena bez DPH
22.07.2024 Virtuálna 5 dní en 3 860 EUR Registrovať
07.10.2024 Virtuálna 5 dní en 3 860 EUR Registrovať
Na vyžiadanie Virtuálna 5 dní en 3 860 EUR Registrovať
G Garantovaný kurz

Nenašli ste vhodný termín?

Napíšte nám o vypísanoe alternatívneho termínu na mieru.

Kontakt

Cieľová skupina

This course is designed for Security Professionals and SOC Administrators, who are responsible for deploying and administrating the ArcSight Platform within their environment.

Štruktúra kurzu

  • Describing the ArcSight Platform and its Architecture
  • Describing the underlying CDF infrastructure
  • Identifying the ArcSight Platform Capabilities
  • Explaining other related components to the Platform
  • Considerations and Best Practices

Describe the following:

    • System Requirements
    • Host Requirements
    • DNS requirements
    • NFS Requirements
    • ArcSight Database
    • Configuring the ArcSight Platform YAML Files
    • Installing ArcSight Platform
    • Pre-Install
    • Install
  • Recognizing and describing how events are produced
  • Describing event formats: classic (CEF) and AVRO
  • Installing a CEF Producer and AVRO Producer of events
  • Detailed walkthrough of the configuration steps and all parameters Sending Test Alerts Replay Events to Transformation Hub Validating Topics and
  • Transformation Hub Ingestion
  • Defining the difference between a Collector and Connector
  • Listing the advantages of using Collectors
  • Describing what’s needed to perform a Collector Deployment using ArcMC Deploying CTH from ArcMC and route events from th-syslog to other topics
  • Manging Topic and Routes
  • Local vs Global Event Enrichment
  • Types of Stream Processor Instances in Transformation Hub
  • Configuring Topics and Routes – Step by Step Example for Global Event Enrichment
  • Configuring the ESM and SOAR Integration Verifying a Successful Integration
  • Configuring the ESM Admin User for Single Sign-on Enabling Single Sign-on
  • Managing ArcSight Users Overview Managing ESM Users
  • Managing Fusion Users
  • Managing SOAR Users
  • Defining Recon User Permissions and Roles Defining Intelligence User Permissions and Roles

 

Predpokladané znalosti

This course assumes a familiarity working with command line tools, have experience deploying applications in Windows and Linux environments, and having computer desktop, browser, and file system navigation skills.

Potrebujete poradiť alebo upraviť kurz na mieru?

pruduktová podpora