QRadar SOAR: Integrating with SIEM [TDS_BQ430G]

Total time

QRadar SOAR: Integrating with SIEM [TDS_BQ430G]

Global Knowledge Network Training Ltd.
Logo Global Knowledge Network Training Ltd.
Provider rating: starstarstarstarstar_border 7.7 Global Knowledge Network Training Ltd. has an average rating of 7.7 (out of 3 reviews)

Need more information? Get more details on the site of the provider.

Starting dates and places

This product does not have fixed starting dates and/or places.

Description

OVERVIEW

In this couse, you learn about the IBM Security® QRadar® SIEM and QRadar SOAR apps that automate data exchange and improve the security incident investigation. You gain knowledge on how to integrate QRadar SOAR and SIEM. You improve incident response by using the SOAR Plug-in App on SIEM and analyzing SIEM's offense in SOAR's QRadar Offense Details tab. You build a playbook and run a query by configuring the QRadar Integration app in a set of useful functions.

Virtual Learning

This interactive training can be taken from any location, your office or home and is delivered by a trainer. This training does not have any delegates in the class with the instructor, since all delegates are …

Read the complete description

Frequently asked questions

There are no frequently asked questions yet. If you have any more questions or need help, contact our customer service.

Didn't find what you were looking for? See also: Cisco Security, Security, Cisco, CompTIA A+ / Network+ / Security+, and Internet Security.

OVERVIEW

In this couse, you learn about the IBM Security® QRadar® SIEM and QRadar SOAR apps that automate data exchange and improve the security incident investigation. You gain knowledge on how to integrate QRadar SOAR and SIEM. You improve incident response by using the SOAR Plug-in App on SIEM and analyzing SIEM's offense in SOAR's QRadar Offense Details tab. You build a playbook and run a query by configuring the QRadar Integration app in a set of useful functions.

Virtual Learning

This interactive training can be taken from any location, your office or home and is delivered by a trainer. This training does not have any delegates in the class with the instructor, since all delegates are virtually connected. Virtual delegates do not travel to this course, Global Knowledge will send you all the information needed before the start of the course and you can test the logins.

OBJECTIVES

In this course, you learn the following skills:

  • Improve response by analyzing QRadar SIEM Offense details
  • Configure QRadar Integration Apps from X-Force Exchange
  • Build a table and run a query
  • Develop a playbook

AUDIENCE

Security Operations Center (SOC) AdministratorSOC AnalystSecurity AnalystIncident ResponderManaged Service Security Provider (MSSP)

CONTENT

QRadar SOAR Integrating with SIEM

  • Installation of SIEM and SOAR apps from the X-Force Exchange
  • Configuring access to SOAR server on QRadar SIEM
  • Analyzing the QRadar Offense Details tab
  • Building a playbook and analyzing results
There are no reviews yet.
    Share your review
    Do you have experience with this course? Submit your review and help other people make the right choice. As a thank you for your effort we will donate £1.- to Stichting Edukans.

    There are no frequently asked questions yet. If you have any more questions or need help, contact our customer service.