HOME > IT & Software > ArcSight SIEM A Step-by-Step BootCamp

ArcSight SIEM A Step-by-Step BootCamp

SynopsisArcSight SIEM – A Step-by-Step BootCamp, available at $...
ArcSight SIEM A Step-by-Step BootCamp  No.1

ArcSight SIEM – A Step-by-Step BootCamp, available at $44.99, has an average rating of 3.7, with 52 lectures, based on 158 reviews, and has 879 subscribers.

You will learn about Security Information and Event Management SIEM Micro Focus ArcSight SIEM Micro Focus ArcSight Enterprise Security Manager (ESM) Micro Focus ArcSight Data Platform (ADP) Micro Focus ArcSight SmartConnector Hands-ON Use Cases The course was originally published on 2nd Jan 2020 with 32 videos and more videos are being added since then to cover more topics This course is ideal for individuals who are Network Security Specialists & Administrators or SOC Operators & Analysts or Information Security Sepcialists It is particularly useful for Network Security Specialists & Administrators or SOC Operators & Analysts or Information Security Sepcialists.

Enroll now: ArcSight SIEM – A Step-by-Step BootCamp

Summary

Title: ArcSight SIEM – A Step-by-Step BootCamp

Price: $44.99

Average Rating: 3.7

Number of Lectures: 52

Number of Published Lectures: 52

Number of Curriculum Items: 52

Number of Published Curriculum Objects: 52

Original Price: $199.99

Quality Status: approved

Status: Live

What You Will Learn

  • Security Information and Event Management
  • SIEM
  • Micro Focus ArcSight SIEM
  • Micro Focus ArcSight Enterprise Security Manager (ESM)
  • Micro Focus ArcSight Data Platform (ADP)
  • Micro Focus ArcSight SmartConnector
  • Hands-ON
  • Use Cases
  • The course was originally published on 2nd Jan 2020 with 32 videos and more videos are being added since then to cover more topics
  • Who Should Attend

  • Network Security Specialists & Administrators
  • SOC Operators & Analysts
  • Information Security Sepcialists
  • Target Audiences

  • Network Security Specialists & Administrators
  • SOC Operators & Analysts
  • Information Security Sepcialists
  • Do you want to enter the SIEM field?

    Do you want to learn one of the leaders SIEM technologies? 

    Do you want to understand the concepts and gain the hands-on on Micro Focus ArcSight SIEM?

    Then this course is designed for you.

    Through baby steps you will learn Micro Focus ArcSight SIEM

    New section added for ArcSight Logger that includes

  • Microfocus ArcSight Logger Installation (4 lectures)

  • Microfocus ArcSight Logger GUI Demystified

  • Ingesting Data in Logger and create Dashboards (2 lectures)

  • The course covers the following lessons:

  • Import Brute Force package from ArcSight marketplace

  • Import Sysmon package from ArcSight marketplace

  • What is SIEM

  • ArcSight SIEM

  • ESM Enables Situational Awareness

  • ESM Anatomy

  • SmartConnectors

  • ArcSight Manager & CORR-EngineStorage

  • User Interfaces & Use Cases

  • Interactive Discovery & Pattern Discovery

  • ESM on an Appliance & Logger & ArcSight Solutions

  • Life Cycle of an Event Through ESM

  • Data Collection and Event Processing – Collect & Normalize Event Data

  • Data Collection and Event Processing – Apply Event Categories

  • Data Collection and Event Processing – Look up Customer and Zone in Network Model

  • Data Collection and Event Processing – Filter and Aggregate Events & Managing SmartConnector Configurations

  • Priority Evaluation and Network Model Lookup

  • Workflow

  • Correlation Evaluation – Correlation Overview & Filters & Rules

  • Correlation Evaluation – How Rules are Evaluated & How Rules Use Active & Session Lists

  • Correlation Evaluation – Data Monitors

  • Correlation Evaluation – How Correlation Uses Local and Global Variables & Velocity Templates

  • Correlation Evaluation – Event Types

  • Fixing Time of Log Source

  • Forgotten ESM Account Password and Disabled Account

  • Course Curriculum

    Chapter 1: Security Information and Event Management (SIEM)

    Lecture 1: What is SIEM?

    Lecture 2: Micro Focus ArcSight SIEM – Part1

    Lecture 3: Micro Focus ArcSight SIEM – Part2

    Chapter 2: Micro Focus Security ArcSight ESM 101

    Lecture 1: Get the Material

    Lecture 2: About ArcSight ESM

    Lecture 3: ArcSight ESM – ESM Enables Situational Awareness

    Lecture 4: ArcSight ESM – ESM Anatomy

    Lecture 5: ArcSight ESM – SmartConnectors – Part1

    Lecture 6: ArcSight ESM – SmartConnectors – Part2

    Lecture 7: ArcSight ESM – ArcSight Manager & CORR-EngineStorage

    Lecture 8: ArcSight ESM – User Interfaces & Use Cases

    Lecture 9: ArcSight ESM – Interactive Discovery & Pattern Discovery

    Lecture 10: ArcSight ESM – ESM on an Appliance & Logger & ArcSight Solutions

    Lecture 11: ArcSight ESM – About Resources

    Lecture 12: Hands-ON – Getting The Software + ArcSight Console Simplified

    Lecture 13: Hands-ON – SmartConnector Installation & ESM destination registeration – Part1

    Lecture 14: Hands-ON – SmartConnector Installation & ESM destination registeration – Part2

    Lecture 15: Hands-ON – SmartConnector Installation & ESM destination registeration – Part3

    Lecture 16: Life Cycle of an Event Through ESM

    Lecture 17: Data Collection and Event Processing – Collect & Normalize Event Data

    Lecture 18: Data Collection and Event Processing – Apply Event Categories

    Lecture 19: Hands-ON – Event Categorization Utility

    Lecture 20: Data Collection and Event Processing – Look up Customer and Zone in Network Mode

    Lecture 21: Data Collection and Event Processing – Filter/Aggregate/Managing SmartConnector

    Lecture 22: Hands-ON – Filter and Aggregate Events

    Lecture 23: Priority Evaluation and Network Model Lookup

    Lecture 24: Workflow

    Lecture 25: Correlation Evaluation – Correlation Overview & Filters & Rules

    Lecture 26: Correlation Evaluation – How Rules Evaluated & Use Active/Session Lists

    Lecture 27: Correlation Evaluation – Data Monitors – part1

    Lecture 28: Correlation Evaluation – Data Monitors – part2

    Lecture 29: Correlation Evaluation – Local and Global Variables & Velocity Templates

    Lecture 30: Correlation Evaluation – Event Types

    Chapter 3: Micro Focus ArcSight MarketPlace

    Lecture 1: Brute Force Package From MarketPlace

    Lecture 2: Sysmon Package From Micro Focus MarketPlace, Microsoft and GitHub

    Chapter 4: ESM Installation

    Lecture 1: Part1

    Lecture 2: Part2

    Lecture 3: Part3

    Lecture 4: Part4

    Chapter 5: Appendix A – ESM Console Demystified

    Lecture 1: Micro Focus ArcSight ESM Console

    Lecture 2: Connectors & Active Channels

    Lecture 3: Filters & Field Sets

    Chapter 6: Appendix B – ESM Administration

    Lecture 1: Forgotten ESM Account Password and Disabled Account

    Lecture 2: Fixing Time of Log Source

    Lecture 3: ESM Console Connection Refused Error

    Chapter 7: ArcSight Logger

    Lecture 1: Microfocus ArcSight Logger Installation – part1

    Lecture 2: Microfocus ArcSight Logger Installation – part2

    Lecture 3: Microfocus ArcSight Logger Installation – part3

    Lecture 4: Microfocus ArcSight Logger Installation – part4

    Lecture 5: Microfocus ArcSight Logger GUI Demystified

    Lecture 6: Ingesting Data in Logger and create Dashboards – part1

    Lecture 7: Ingesting Data in Logger and create Dashboards – part2

    Instructors

  • ArcSight SIEM A Step-by-Step BootCamp  No.2
    Hatem Metwally
    Senior Security Consultant
  • Rating Distribution

  • 1 stars: 18 votes
  • 2 stars: 19 votes
  • 3 stars: 38 votes
  • 4 stars: 40 votes
  • 5 stars: 43 votes
  • Frequently Asked Questions

    How long do I have access to the course materials?

    You can view and review the lecture materials indefinitely, like an on-demand channel.

    Can I take my courses with me wherever I go?

    Definitely! If you have an internet connection, courses on Udemy are available on any device at any time. If you don’t have an internet connection, some instructors also let their students download course lectures. That’s up to the instructor though, so make sure you get on their good side!