Hi Everyone,
In this class I will explain high level architecture of building a security operation center which is very much similar to corporate setup.
Below the Components in the architecture:
We use ELK as SIEM Tool
Wazuh for IDS
MDE for EDR
Cortex for Threatintelligence
TheHive for case Management
Attack Sceniores:
This lab is for performing Red Team attacks and detection using the Blue Team lab.
We have windows and linux machines where the attacks will be performed.
I will run sample malwares or red team attack sceniores and show how the tool is detection the Attacks.
The usecases i show in this class are real time sceniores and the attacks will be performed in the live class.
Who Can attend?
Anyone who wants to change the domain into cyber security or freshers can attend this class.
Anyone who is interested in cyber security can attend the class.
Thanks and Regards
Sai